Jobs · Information Technology · California

Security Research Engineer, AI Safety and Security Engineering

NVIDIA AI · Santa Clara, CA · 1 mo ago
Information TechnologyFull-time

NVIDIA, widely recognized as one of the world’s most desirable employers, believes open-weight models are foundational to American AI leadership, cybersecurity, and defense through broad scientific scrutiny. As part of this mission, our AI Safety & Security Engineering team builds and evaluates AI-powered tooling that finds, validates, and patches software vulnerabilities, recognizing that finding a bug is only the beginning.

About the role

We are seeking a Security Research Engineer to advance our Validate and Patch capabilities by establishing what counts as a confirmed vulnerability and defining what constitutes a truly correct, safe fix. In this critical role, you will apply rigorous security judgment to well-defined categories of vulnerabilities affecting NVIDIA-internal targets. You will turn complex analysis into repeatable methods that improve software people rely on daily.

Validation requires meticulous care to confirm reports are real and reachable rather than noise, while patching requires ensuring fixes repair flaws, protect existing behavior, and hold up under strict revalidation. Working alongside harness and evaluation engineers, you will establish high engineering standards, document your reasoning for independent security reviews, and ensure your methods run reliably with fully traceable evidence. AI-assisted workflows are integral, but so is maintaining disciplined skepticism about their outputs.

Beyond immediate fixes, your work will teach the entire program what trustworthy patching looks like while actively helping decide which vulnerability classes the team tackles next. We hold our results to an exceptionally high bar and value specific, verifiable proof of technical expertise—such as CVEs, advisories, or original security tools—over polished phrasing.

Responsibilities

  • Develop techniques that confirm vulnerabilities are real and reachable (validation methods).
  • Advance approaches for generating and verifying safe fixes (patch methods).
  • Define correctness, regression, and revalidation standards with reviewers (quality standards).
  • Work bounded vulnerability classes against internal targets (applied research).

Requirements

  • Bachelor's degree (or equivalent experience) with 5+ years in security research or software engineering.
  • Hands-on vulnerability research, fuzzing, program analysis, or secure development in C, C++, or Python (security foundations).
  • Rigor about what makes a fix correct and safe, including regression and behavior preservation (fix quality).
  • Comfort using AI-assisted tools for analysis and development (AI-assisted workflows).

Qualifications

Ways to stand out from the crowd:

  • Public research: CVEs, advisories, or publications in vulnerability research.
  • Analysis tooling: Experience building or extending fuzzers, static analyzers, or symbolic-execution tools.
  • Agentic ML: Familiarity with LLM-based coding or analysis agents.

Benefits

With competitive salaries and a generous benefits package, NVIDIA is widely considered one of the technology industry’s most desirable employers. We have some of the most forward-thinking and versatile people in the world working with us, and our engineering teams are growing fast in impactful fields like Confidential Computing and Data.

Pay

Your base salary will be determined based on your location, experience, and the pay of employees in similar positions. The base salary range is $152,000–$241,500 USD. You will also be eligible for equity and benefits.

Similar jobs