← Back to jobs
Ethoslife
Ethoslife

AI Red Team Security Engineer

engineeringfull-timeRemote US
SALARY
Not listed
WORK TYPE
remote
JOB TYPE
full-time
INDUSTRY
fintech
Apply for this position
✦ AutoApply Let us apply to roles like this on your behalf.
Learn more

About the role

About the role

We are looking for a skilled and creative AI Red Team Engineer to join our offensive security team. In this role, you will simulate real-world adversaries, exploit vulnerabilities across applications, cloud infrastructure, and AI/ML systems using both traditional penetration testing techniques and cutting-edge AI-augmented attack tooling.

You will operate across the full attack surface: web apps, APIs, mobile, internal networks, and AI-powered products including LLM pipelines, model APIs, agents, and RAG systems. You will help us find the flaws before the adversaries do, and work closely with engineering and product teams to close those gaps.

Duties and Responsibilities

AI & LLM Security Testing

  • Design and execute adversarial attacks against large language model (LLM)-powered products including prompt injection, jailbreaking, goal hijacking, and context manipulation.
  • Test retrieval-augmented generation (RAG) pipelines for data exfiltration, poisoning, and unauthorized knowledge extraction.
  • Assess AI agent systems and agentic workflows for unsafe tool-use, privilege escalation, and indirect prompt injection via environment feedback.
  • Conduct model extraction, membership inference, and adversarial example attacks against deployed ML models.
  • Evaluate AI guardrails, safety filters, and content moderation layers for bypass techniques.

Penetration Testing & Ethical Hacking

  • Perform full-scope penetration tests across web applications, REST/GraphQL APIs, mobile apps (iOS/Android), cloud environments (AWS, GCP, Azure), and internal networks.
  • Conduct red team exercises simulating advanced persistent threat (APT) actors using MITRE ATT&CK and AI-augmented techniques.
  • Exploit vulnerabilities across the OWASP Top 10 and beyond: SSRF, IDOR, XXE, SSTI, authentication bypasses, and logic flaws.
  • Perform social engineering and phishing simulations as part of combined red team campaigns.
  • Conduct cloud and Kubernetes security assessments including IAM misconfigurations, container escapes, and privilege escalation paths.

AI-Augmented Attack Operations

  • Design and deploy AI-augmented attack tooling to automate reconnaissance, vulnerability discovery, and exploitation.
✦ Let us apply for you
We find roles like this and apply on your behalf. Cover letter written for each one. Plans from $14.99/mo. Cancel anytime.
Join waitlist
Apply now
AI Red Team Security Engineer at Ethoslife — Remote