# Senior Security Engineer, Research & Engineering

**Company:** [Trail of Bits](https://hotfix.jobs/companies/trail-of-bits)
**Location:** Remote
**Role:** Security Engineering
**Experience:** 5+ years
**Skills:** Red Teaming, Formal Methods, Lean, Rocq, F*, Dafny, Verus, Python, C++, Rust, Fuzzing, Symbolic Execution, Binary Analysis, Zero-Knowledge Proofs, AI Infrastructure
**Posted:** 2026-09-02

> Senior security engineer who red teams formally verified systems, assesses proof and threat-model boundaries, and builds AI-driven vulnerability discovery and exploit-generation tooling. Requires hands-on offensive security, formal methods, systems expertise, software development, and rigorous technical reporting.

## Job Description

## Responsibilities
- Conduct red-team evaluations of systems supported by formal specifications and machine-checked proofs.
- Analyze specifications, designs, proof artifacts, threat models, trusted computing bases, and deployment assumptions to determine what has—and has not—been established.
- Find and demonstrate exploitable vulnerabilities, including memory corruption, weaknesses in threat models, and failures of deployment assumptions.
- Build and extend AI-driven vulnerability discovery and triage tooling, including agentic harnesses, automated exploit generation, and cyber reasoning systems.
- Prepare for fixed one-week red-team sprints within defined acceptance criteria and external schedules.
- Produce rigorous security assessment reports for expert audiences, documenting findings, attempted approaches, and unsuccessful efforts.
- Collaborate in small teams with third parties and domain leads across applied cryptography, proof systems, operating system internals, applications, hardware, and AI infrastructure.
- Publish tooling and methodology, write technical blog content, present internally, and carry lessons between engagements.
- Report vulnerabilities ethically through established disclosure practices.

## Requirements
- Direct hands-on experience red teaming production software and proving exploitable vulnerabilities.
- Experience building AI-driven vulnerability-discovery tooling, such as agentic harnesses, LLM-assisted triage pipelines, or automated exploit-generation systems.
- Experience applying formal methods to system designs and code implementations, including interpreting specifications and machine-checked proof artifacts.
- Ability to read at least one of Lean, Rocq, F*, Dafny, or Verus/Rust.
- Deep vulnerability research experience in at least one systems domain, such as network protocol implementations, operating system internals, open-source software, cryptographic implementations, or AI inference infrastructure.
- Software development experience with Python, C++, and/or Rust.
- Experience writing security assessment findings for expert readers.
- Experience delivering work to fixed external schedules with defined acceptance criteria.
- Experience with ethical vulnerability disclosure.

## Nice-to-haves
- Published vulnerability research, including CVEs, advisories, or talks at security conferences.
- Experience auditing or contributing to formally verified codebases such as HACL*, EverCrypt, seL4, CompCert, or CakeML.
- Experience building automated bug-finding infrastructure at scale, including cyber reasoning systems, fuzzing fleets, or symbolic execution engines.
- Experience with zero-knowledge proof systems, proof-checking kernels, or SMT-backed tooling.
- Experience attacking AI inference infrastructure, including weight confidentiality and integrity, tenant isolation, or output mediation.
- Participation in CTF competitions, Pwn2Own, DARPA's AI Cyber Challenge, or similar programs.
- Experience with compiler technology, program analysis, or binary analysis.
- Experience reading, writing, and publishing academic papers.

## Compensation and Benefits
- Competitive compensation with performance-based bonuses.
- $1,000 working-from-home stipend.
- $750 annual learning and development stipend.
- Company-sponsored all-team celebrations, including travel and accommodation.
- Philanthropic contribution matching up to $2,000 annually.

## Similar jobs

- [Senior Security Engineer, Offensive Security](https://hotfix.jobs/jobs/e6f5289c-9cb8-4a13-b321-e0ecc9a54c96) - Docker - Remote - €119k – €170k/yr
- [Security Engineer, Detection and Response](https://hotfix.jobs/jobs/02ff0cde-e8e1-4f38-9c48-d8149d22a95b) - Writer - London, United Kingdom
- [Senior Security GRC Analyst](https://hotfix.jobs/jobs/b54fb115-3bb7-4d88-8fdc-b7901d26d90d) - Monarch - Remote - $180k – $215k/yr
- [Senior Security Engineer, Security Incident Response Team - EMEA](https://hotfix.jobs/jobs/33cbe57c-bb91-44ff-8901-3cde1ac976a7) - GitLab - Remote
- [Senior Cyber Security Engineer - Red Team](https://hotfix.jobs/jobs/49d3ed74-daec-4a29-a1f1-654dc76c4b81) - Immersive - Remote

**Apply:** https://hotfix.jobs/jobs/f9156020-d99c-45aa-8dba-fcd0035e45b4
**Canonical:** https://hotfix.jobs/jobs/f9156020-d99c-45aa-8dba-fcd0035e45b4