depthfirst Logo

depthfirst

Security Researcher

Posted 20 Days Ago
Be an Early Applicant
In-Office
San Francisco, CA, USA
Mid level
In-Office
San Francisco, CA, USA
Mid level
Conduct vulnerability research and exploit development, build techniques to find novel vulnerabilities at scale, generate PoC exploits and reduce false positives, collaborate with AI researchers and engineers, and contribute technical reports and advisories.
The summary above was generated by AI

About depthfirst

We believe that software is the foundation of modern civilization - yet vulnerabilities threaten its integrity, security, and resilience. We are on a mission to solve security.

depthfirst is building intelligence to detect and remediate critical software vulnerabilities. We are training and scaling security AI agents to discover zero-days vulnerabilities across large customer codebases and popular open source software.

Our founding team includes deep expertise in data, infrastructure, security and LLMs with technical leaders from DeepMind, Databricks, Square, and Faire. We are looking for strong technical people who are interested in working at the intersection of AI, Security, and Infrastructure.

About this role

We’re seeking an experienced Security Researcher to join our effort in building and training AI agents for vulnerability discovery and exploitation.

We are building a technology capable of finding the next Log4J at scale, finding and remediating vulnerabilities in customer and open source codebases.

We are looking for strong security researchers with strong intuition to identify, analyze, and investigate application vulnerabilities. You’ll collaborate with AI researchers and engineers to uncover novel attack vectors and contribute to the development of advanced detection and defense capabilities. Your work will play a crucial role in building a product that aims to redefine how companies do security.

You’re excited about this role because you will…

  • Build a technology capable of finding novel vulnerabilities at scale both in open source and proprietary codebases

  • Develop techniques to reduce false positives leveraging automated exploitation, proof of concept generation and context inference

  • Work closely with engineers to understand limitations and design new methodologies to improve our system

  • Publish internal technical reports and contribute to security advisories as needed.

  • Work on a Product that Solves a Critical Problem - and we already have a handful of customers who have found it valuable in fixing some eye-opening vulnerabilities within the first few days of using our product.

Qualifications

  • 3+ years of full-time experience in security research, offensive security, or related fields.

  • Experience with finding vulnerabilities in source code

  • Experience creating PoC exploits for vulnerabilities

  • Programming experience in Python

  • A bachelor's degree in Computer Science/Software Engineering or equivalent industry experience

  • A love for technology, and an insatiable curiosity for new tools to tackle real problems

  • Capable of solving complex problems with simple solutions. Building reliable and scalable products, making right trade-offs along the way

  • A tendency to leave things in a better way than you found it

What We Offer

  • Competitive Salary with meaningful equity

  • Health, Vision, and Dental Insurance

  • Office lunch (when working from our San Francisco office)

depthfirst is an equal opportunity employer and does not discriminate on the basis of race, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition, or any other basis protected by law.

To all recruitment agencies: depthfirst does not accept agency resumes. Please do not forward resumes to depthfirst employees. depthfirst is not responsible for any fees related to unsolicited resumes and will not pay fees to any third-party agency or company that does not have a signed agreement with the Company.

HQ

depthfirst San Francisco, California, USA Office

San Francisco, California, United States

Similar Jobs

6 Days Ago
Remote or Hybrid
USA
70K-95K Annually
Senior level
70K-95K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Conduct advanced OSINT and operational tradecraft to collect, track, and report on hacktivist and state-sponsored threat actor activity across South Asia, Latin America, and North Africa. Produce contextual internal reports, collaborate on analytical products, and employ secure methods to support threat intelligence operations.
Top Skills: Ai TechnologiesDeep/Dark Web ToolsHidden ServicesOsintSocial Media Platforms
17 Days Ago
Remote or Hybrid
2 Locations
85K-120K Annually
Senior level
85K-120K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Analyze in-the-wild exploits and perform deep reverse engineering to track adversaries. Build detection, automation, and classification frameworks; develop host/network signatures and tooling. Produce high-quality intelligence reports and briefings, collaborate across teams, and contribute to mitigation and large-scale hunting efforts.
Top Skills: Ai-Assisted ToolsDebuggersDecompilersDisassemblersDynamic Analysis FrameworksLinuxLlmsWindowsPythonSnortStatic Analysis FrameworksYara
17 Days Ago
Remote or Hybrid
3 Locations
85K-120K Annually
Senior level
85K-120K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Lead OSINT and engagement-driven investigations into Russian-language eCrime actors across surface, deep, and dark web. Collect actionable intelligence, produce contextual internal reports, collaborate with analytic teams, employ secure virtual OPSEC tradecraft, and leverage AI to accelerate research and decision-making under tight deadlines.
Top Skills: Ai TechnologiesOsint

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account