OpenAI Logo

OpenAI

Data Scientist, Cybersecurity

Posted One Month Ago
In-Office or Remote
Hiring Remotely in San Francisco, CA, USA
Senior level
In-Office or Remote
Hiring Remotely in San Francisco, CA, USA
Senior level
Senior data scientist role focused on measuring and improving AI-agent security. Define metrics and evaluations, build data foundations, strengthen detection and response, run experiments, and translate analysis into product and security improvements across engineering, product, and research teams.
The summary above was generated by AI
About the Team

OpenAI’s Agentic Data Science team helps shape how AI agents are built, deployed, and improved across our products. We partner with product, engineering, research, and security teams to define meaningful measures of success, understand how our systems behave in the real world, and translate evidence into better decisions.
As AI agents become more capable, they can write and execute code, access sensitive systems, and complete increasingly complex tasks with greater autonomy. These capabilities create powerful opportunities to improve cybersecurity, but they also introduce risks that traditional security tools and processes were not designed to address. Meeting this moment requires new ways to measure security, evaluate defenses, and distinguish genuine risk reduction from friction that slows users down.


About the Role

We are looking for a senior data scientist to help define what effective cybersecurity looks like in the age of AI agents.
You will work across OpenAI’s Security organization and cybersecurity product teams to measure emerging risks, improve internal security controls, and shape AI-powered security products. The problems are foundational: How do we know whether an agent’s security controls are effective? Which safeguards meaningfully reduce risk, and which create unnecessary friction? When an AI system identifies a potential vulnerability, how do we determine whether the finding is accurate, actionable, and ultimately resolved? How do we detect anomalous behavior or risky access when the systems themselves are changing rapidly?
You will report into Data Science while partnering closely with Security, Cyber Product, Engineering, and Research. This is a high-ownership role for someone who can establish a new analytical discipline, operate across organizational boundaries, and turn ambiguous security challenges into measurable improvements.


In This Role You Will
  • Define how we measure AI-agent security. Establish metrics and evaluation frameworks for security-control coverage, agent behavior, sensitive actions, access patterns, detection quality, and emerging risks.

  • Improve security controls without introducing unnecessary friction. Quantify the effectiveness and operational costs of safeguards, including false positives, blocked actions, escalations, approval delays, and recovery paths. Help teams make controls safer, more precise, and easier to use.

  • Build the data foundations for security decisions. Partner with engineering and data teams to improve instrumentation, connect fragmented telemetry, establish trusted datasets, and surface important coverage and data-quality gaps.

  • Strengthen detection and response. Identify meaningful signals of anomalous behavior, risky access, sensitive-data exposure, and other security-relevant activity. Evaluate whether interventions improve detection quality, response times, and real-world security outcomes.

  • Shape AI-powered cybersecurity products. Partner with product, engineering, and research teams to assess how effectively AI systems identify security issues, support developer and enterprise workflows, and create measurable customer value.

  • Develop evaluation systems for security findings. Define quality measures for findings, including accuracy, severity, actionability, duplication, resolution, and downstream impact. Connect model behavior and product changes to outcomes such as triage, remediation, and vulnerability reduction.

  • Understand the complete security workflow. Measure how users discover, investigate, validate, prioritize, and resolve security issues. Identify opportunities to improve activation, adoption, retention, and enterprise value across customer-facing cybersecurity products.

  • Design rigorous measurement and experimentation strategies. Evaluate new models, security controls, product features, and workflows through controlled experiments, staged rollouts, observational analyses, and other methods appropriate for high-stakes environments.

  • Translate analysis into security and product strategy. Identify the highest-value decisions, clarify tradeoffs, recommend where teams should invest, and communicate findings clearly to technical partners and senior leadership.

  • Help establish a new security data science capability. Build a focused roadmap, create durable operating rhythms across Data Science and Security, and help shape how this discipline grows over time.

You Might Thrive in This Role If You Have
  • 5+ years of experience in data science, applied research, analytics, or a related quantitative field, with a track record of owning ambiguous, high-impact problems.

  • Experience in cybersecurity, trust and safety, fraud or abuse prevention, privacy, platform integrity, or another domain involving adversarial behavior and difficult-to-measure risks.

  • Strong proficiency in SQL and Python, including experience investigating complex datasets, working through incomplete instrumentation, and building reproducible analytical workflows.

  • Experience defining meaningful metrics and evaluation frameworks when ground truth is limited, outcomes are delayed, or important risks cannot be observed directly.

  • Strong judgment in experimentation, causal inference, observational analysis, and the practical limitations of different measurement approaches.

  • The ability to partner effectively with security engineers, product managers, software engineers, researchers, data engineers, and senior leaders.

  • A demonstrated ability to translate technical analysis into concrete improvements in products, systems, controls, or organizational priorities.

  • Comfort operating independently, defining a roadmap, and bringing structure to a domain without established processes or industry standards.

You Could Be an Especially Great Fit If You Have
  • Experience with detection engineering, threat research, security operations, insider risk, identity and access management, or privacy-preserving security analytics.

  • Familiarity with AI agents, large language models, model evaluations, automated code review, or AI-powered cybersecurity products.

  • Experience evaluating security findings, vulnerability detection, remediation workflows, or developer-facing security tools.

  • Experience balancing security effectiveness against user experience, including false positives, approval flows, operational burden, and recovery behavior.

  • Experience building automated monitoring, anomaly detection, production-oriented data assets, or systems that connect model outputs to real-world outcomes.

  • A track record of building new cross-functional measurement programs or establishing analytical capabilities from the ground up.

About OpenAI

OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity. 

We are an equal opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other applicable legally protected characteristic.

For additional information, please see OpenAI’s Affirmative Action and Equal Employment Opportunity Policy Statement.

Background checks for applicants will be administered in accordance with applicable law, and qualified applicants with arrest or conviction records will be considered for employment consistent with those laws, including the San Francisco Fair Chance Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act, for US-based candidates. For unincorporated Los Angeles County workers: we reasonably believe that criminal history may have a direct, adverse and negative relationship with the following job duties, potentially resulting in the withdrawal of a conditional offer of employment: protect computer hardware entrusted to you from theft, loss or damage; return all computer hardware in your possession (including the data contained therein) upon termination of employment or end of assignment; and maintain the confidentiality of proprietary, confidential, and non-public information. In addition, job duties require access to secure and protected information technology systems and related data security obligations.

To notify OpenAI that you believe this job posting is non-compliant, please submit a report through this form. No response will be provided to inquiries unrelated to job posting compliance.

We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made via this link.

OpenAI Global Applicant Privacy Policy

At OpenAI, we believe artificial intelligence has the potential to help people solve immense global challenges, and we want the upside of AI to be widely shared. Join us in shaping the future of technology.

HQ

OpenAI San Francisco, California, USA Office

San Francisco, CA, United States

Similar Jobs

3 Hours Ago
Remote or Hybrid
USA
75K-150K Annually
Mid level
75K-150K Annually
Mid level
Machine Learning • Payments • Security • Software • Financial Services
Perform technical security evaluations, investigate incidents and data loss, review logs, recommend corrective actions, and support security posture improvements with forensic analysis and controls review.
Top Skills: Computer ForensicsData Loss PreventionDigital ForensicsExaminer MachinesForensic ExaminationInformation SecurityNetwork SecuritySecurity Technologies
5 Hours Ago
Remote or Hybrid
United States
161K-172K Annually
Senior level
161K-172K Annually
Senior level
Fintech • Information Technology • Insurance • Financial Services • Big Data Analytics
Develop and deploy customer-focused web, mobile, and backend applications across the full software stack. Design major features, contribute to architecture decisions, conduct code reviews, and ensure secure, high-quality implementations. Collaborate with stakeholders and cross-functional teams using Agile and SDLC practices. Manage version control, CI/CD, environments, and releases; maintain automated test coverage and perform root-cause analysis. Build and optimize relational data solutions using SQL Server, including complex queries, stored procedures, and performance tuning.
Top Skills: .NetAgileC#Ci/CdGitJavaScriptJestNode.jsNunitReactSdlcSQL ServerTypescriptWeb Apis
7 Hours Ago
Remote
United States
158K-238K Annually
Senior level
158K-238K Annually
Senior level
Artificial Intelligence • Productivity • Software • Automation
Provides practical legal advice on commercial contracts, regulatory compliance, data privacy, employment matters, and vendor and sales agreements. Drafts and negotiates SaaS, technology, consulting, and service contracts; supports procurement, sales, and HR teams; monitors global legal developments; and advises on compliance. Leads adoption of automation, AI, and legal technology to improve legal operations and supports scalable processes for a fully remote technology company.
Top Skills: Ai ToolsAutomationClm ProductsZapier

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account