About the Team
Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity.
The Threat Intelligence team protects OpenAI’s technology, people, research, and infrastructure by proactively identifying and disrupting adversaries who seek to compromise our systems or misuse our models. We investigate sophisticated threats, build tooling to scale and augment analysis, and deliver intelligence that shapes security strategy and equips leadership with timely, risk-aware insights. We combine technical depth, investigative rigor, and strong cross-functional partnerships to uncover threats and drive impact across OpenAI’s security and research organizations.
About the Role
As a Technical Threat Investigator at OpenAI, you will help defend the company from a full spectrum of threats — from nation-state actors and cybercrime groups to adversaries attempting to misuse our models.
In this role, you’ll conduct deep investigations into adversary operations. You’ll track sophisticated threat actors, produce high-signal reporting, build agentic workflows, and collaborate across the security org and wider company. Your work will directly inform our security strategy and shape how threat intel teams operate in the future.
This is a remote role with close collaboration required across teams in the US and UK. While the role is remote, regular in-person engagement with our San Francisco (SF) headquarters will be expected. Relocation assistance is available for candidates who wish to relocate to SF.
In this role, you will:
Track, disrupt, analyze, and deeply understand sophisticated adversaries targeting OpenAI.
Conduct investigations using security telemetry, internal safety systems, and a variety of enrichment sources.
Build lightweight tooling, automations, agentic workflows, and leverage our models to scale investigation capabilities for the company.
Produce high-quality, actionable threat intelligence reports for internal stakeholders.
Collaborate closely with Detection & Response, Infrastructure Security, Insider Risk, and other investigative teams.
Evolve threat models and investigative approaches across software, infrastructure, and hardware layers as adversaries adapt and innovate.
Identify gaps in telemetry or tooling and propose scalable improvements.
You might thrive in this role if you have:
Significant experience tracking and investigating sophisticated adversaries (e.g., APTs, cybercrime groups).
Strong scripting ability (e.g., Python, Bash) to accelerate investigations.
Familiarity with hardware-level threats and infrastructure-focused attack surfaces (e.g., firmware, BMCs, supply chain risks).
Practical experience with SIEMs, telemetry pipelines, and threat enrichment platforms.
Familiarity with modern adversary tactics, techniques, and procedures across infrastructure, cloud, and endpoint environments.
Ability to independently drive investigations from low-fidelity leads to finished intelligence products.
Strong written and verbal communication skills, especially translating technical investigations into actionable intelligence for diverse stakeholders.
Comfortable navigating ambiguity and driving forward independently in high-pressure or uncertain situations.
About OpenAI
OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity.
We are an equal opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other applicable legally protected characteristic.
For additional information, please see OpenAI’s Affirmative Action and Equal Employment Opportunity Policy Statement.
Qualified applicants with arrest or conviction records will be considered for employment in accordance with applicable law, including the San Francisco Fair Chance Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act. For unincorporated Los Angeles County workers: we reasonably believe that criminal history may have a direct, adverse and negative relationship with the following job duties, potentially resulting in the withdrawal of a conditional offer of employment: protect computer hardware entrusted to you from theft, loss or damage; return all computer hardware in your possession (including the data contained therein) upon termination of employment or end of assignment; and maintain the confidentiality of proprietary, confidential, and non-public information. In addition, job duties require access to secure and protected information technology systems and related data security obligations.
We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made via this link.
OpenAI Global Applicant Privacy Policy
At OpenAI, we believe artificial intelligence has the potential to help people solve immense global challenges, and we want the upside of AI to be widely shared. Join us in shaping the future of technology.
If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.
Become a Developer Experience Engineer at OpenAI, crafting inspiring demos, content, and tools that enable developers globally to harness the power of cutting-edge AI technologies.
A senior Construction Manager role at OpenAI leading high-impact infrastructure projects in West Texas with responsibility for site relationships and vendor coordination.
Seeking an experienced SIP Engineer to enhance our college's Unified Communication systems while managing Microsoft Teams functionalities remotely.
Seeking a ServiceNow Lead/Architect for a New York-based W2 contract role to lead and mentor teams while driving platform enhancements and integrations.
Manage and maintain critical application and network ecosystems for a Manhattan client in a mostly remote Application & Network Administrator II role.
Network Engineer opportunity at Kentro to implement and secure advanced network infrastructure on-site for a critical DoD Zero Trust initiative.
Become a leader in technology architecture at Truist, focusing on innovative infrastructure solutions across the organization.
Hadoop Administrator role requiring Java expertise and Hadoop development experience in a fast-paced environment.
Lead SEI’s Enterprise Data Platform team as Senior IT Manager to architect and deliver scalable, cloud-based data solutions with a focus on innovation, quality, and team development.
Spry Methods requires a skilled Cybersecurity Analyst to manage security protocols and assessments for federal information systems, primarily within the Department of Interior.
Join Crosby as a Lead Infrastructure Engineer and play a crucial role in building the future of legal-tech.
Cooper University Health Care is on the lookout for a Beacon certified Application Analyst III to enhance and support our application systems.
Take on a key Site Reliability Analyst role at the Federal Reserve Bank of St. Louis, supporting mission-critical Treasury cloud systems and ensuring operational excellence.
The University of Chicago seeks an Application Support Analyst to manage and support Alumni Relations development systems, including Salesforce and other technology tools, in a hybrid work environment.
Experienced system administrator needed to manage and integrate critical IT infrastructure in a secured, onsite environment in Norfolk, VA.
OpenAI is a US based, private research laboratory that aims to develop and direct AI. It is one of the leading Artifical Intellgence organizations and has developed several large AI language models including ChatGPT.
775 jobsSubscribe to Rise newsletter