What we're looking for Strong technical background — Must. Engineering, security research, or equivalent hands-on technical role. You can read a stack trace, reason about request flow through a service, and have a point of view on why existing AppSec categories under-deliver. Security research background — Must. Application security, vulnerability research, offensive security, or a technical military intelligence role. Comfortable going deep on CVE classes, exploitation patterns, and runtime signals. Product experience. Formal PM, founding engineer with product instincts, or a tech lead who shaped what shipped. We care about evidence you delivered things customers actually used — not the title on your last business card. AI-native operator. You've built something with modern AI tooling — an agent, an eval harness, a workflow — not just used it. Hands-on by default. Comfortable in fast-paced startup environments where there's no one to hand the work off to. Clear writer in English. Slack messages, specs, customer notes. Compression matters. Two questions we'd like you to answer Skip the cover letter. Send us: The most technical thing you've shipped or researched — and what you'd have done differently. One detection, vulnerability, or AppSec product on the market that you think gets it wrong — and why.