Cybersecurity Research Expert – Offensive Security, Vulnerability Research
Posted 7hrs ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Cybersecurity research expert evaluating frontier AI systems’ exploit analyses and vulnerability reasoning. Providing structured feedback and benchmarks for advanced AI security capabilities.
Responsibilities:
- Evaluate AI-generated analyses of complex cybersecurity scenarios, exploits, and vulnerability reports
- Review technical writeups for correctness, exploitability, and mitigation quality
- Validate vulnerability root-cause analysis across software, operating systems, networking, cloud, and web applications
- Provide structured feedback on security reasoning, exploit chains, and defensive recommendations
- Contribute to benchmark development for advanced AI security capabilities
- Work on frontier AI models tackling real-world cybersecurity problems
- Collaborate with leading researchers on advanced security evaluation tasks
- Help shape the next generation of AI systems for cybersecurity
Requirements:
- Highly accomplished cybersecurity research expertise
- Strong track record in offensive security research and publicly recognised technical contributions
- Multiple qualifying credentials, such as top-ranked CTF team membership, CVE discovery or co-authorship, recognised bug bounty research, security laboratory or academic research experience, or high-quality security research publications and technical writeups
- Strong understanding of exploit development, reverse engineering, binary analysis, vulnerability research, operating systems, networks, web security, or cryptography
- Professional experience in offensive security, application security, vulnerability research, product security, or security engineering preferred
- Experience with reverse engineering tools such as IDA Pro, Ghidra, Binary Ninja, or Radare2 preferred
- Familiarity with fuzzing, symbolic execution, static analysis, or dynamic analysis frameworks preferred
- Experience with Linux internals, Windows internals, browser security, cloud security, embedded security, or mobile security preferred
- Strong programming skills in C/C++, Rust, Python, Go, or Java preferred
- Excellent written communication and ability to explain complex security concepts clearly preferred
- Hall of Fame recognition from major bug bounty programs nice to have
- Black Hat, DEF CON, USENIX Security, IEEE S&P, ACM CCS, NDSS, or similar conference presentations/publications nice to have
- Maintainer or significant contributor to well-known open-source security tools nice to have
- Offensive Security certifications such as OSCP, OSEP, OSCE3, GIAC certifications, or equivalent credentials nice to have
- Unable to support H1-B or STEM OPT candidates
Benefits:
- Fully remote role
- Flexible schedule / work on your own schedule
- Weekly payments via Stripe or Wise based on services rendered
- Projects may be extended, shortened, or concluded early depending on needs and performance
- Competitive pay
- Collaboration with leading researchers
- Referral rewards of 20% of a referral's earnings across all their projects on Mercor, subject to restrictions and an earnings cap



















