Summary
10a Labs is the safety and threat-intelligence layer trusted by frontier AI labs and leading global technology platforms. They are seeking a Cybersecurity Engineer to build secure infrastructure and tooling for AI security evaluations, focusing on cloud infrastructure, security automation, and offensive security testing.
Responsibilities
- Build tools, automation, and infrastructure that support scalable adversarial testing of AI systems and applications
- Build and maintain realistic, repeatable, security test environments using cloud infrastructure and automation tools such as Terraform
- Collaborate with red teamers and engineers to reproduce, investigate, and remediate vulnerabilities uncovered during AI security assessments
- Develop and automate attack simulations to validate security controls, identify potential failure modes, and improve the resilience of AI-powered systems
- Conduct threat modeling and security design reviews for new systems and features
- Collaborate closely with software engineers to integrate security throughout the development lifecycle
Skills
- 3–5 years of professional experience in Cybersecurity, Security Engineering, Software Engineering, or a related field
- Bachelor's degree in Computer Science, Cybersecurity, Computer Engineering, or a closely related topic
- Professional experience with Python
- Experience using git/github in a collaborative environment
- Experience building or securing cloud environments using Amazon Web Services (AWS) or Google Cloud Platform (GCP)
- Strong understanding of Linux systems, networking, and modern web technologies
- Experience automating cloud infrastructure using an Infrastructure as Code tool (Terraform preferred)
- Familiarity with Docker, Kubernetes and various virtualization technology stacks
- Familiarity with large language models (LLMs), AI systems, or AI security concepts
- Demonstrated hands-on experience conducting penetration tests, red team assessments, adversary emulation, or comparable offensive security work
- Strong understanding of authentication, authorization, and common web security vulnerabilities
- Excellent debugging and problem-solving skills
- Strong written and verbal communication skills
- Experience translating offensive-security findings into repeatable attack simulations, evaluation tooling, detections, or security-control improvements
- Experience with CI/CD security and DevSecOps practices
- Knowledge of OWASP Top 10 and common cloud attack techniques
- Experience with detection engineering or SIEM platforms
- Experience building internal developer tools or security platforms
- Security certifications such as GSEC, OSCP, or cloud security certifications
- Contributions to open-source security projects or participation in Capture the Flag (CTF) competitions are a plus
- Experience working in fast-paced, high-growth, or start-up environments
Qualifications
Must Haves
- 3–5 years of professional experience in Cybersecurity, Security Engineering, Software Engineering, or a related field
- Bachelor's degree in Computer Science, Cybersecurity, Computer Engineering, or a closely related topic
- Professional experience with Python
- Experience using git/github in a collaborative environment
- Experience building or securing cloud environments using Amazon Web Services (AWS) or Google Cloud Platform (GCP)
- Strong understanding of Linux systems, networking, and modern web technologies
- Experience automating cloud infrastructure using an Infrastructure as Code tool (Terraform preferred)
- Familiarity with Docker, Kubernetes and various virtualization technology stacks
- Familiarity with large language models (LLMs), AI systems, or AI security concepts
- Demonstrated hands-on experience conducting penetration tests, red team assessments, adversary emulation, or comparable offensive security work
- Strong understanding of authentication, authorization, and common web security vulnerabilities
- Excellent debugging and problem-solving skills
- Strong written and verbal communication skills
Nice to Haves
- Experience translating offensive-security findings into repeatable attack simulations, evaluation tooling, detections, or security-control improvements
- Experience with CI/CD security and DevSecOps practices
- Knowledge of OWASP Top 10 and common cloud attack techniques
- Experience with detection engineering or SIEM platforms
- Experience building internal developer tools or security platforms
- Security certifications such as GSEC, OSCP, or cloud security certifications
- Contributions to open-source security projects or participation in Capture the Flag (CTF) competitions are a plus
- Experience working in fast-paced, high-growth, or start-up environments
Benefits
- Performance-based annual bonus
- Support for conferences, continuing education, or leadership training
- Fully remote, U.S.-based
- Comprehensive health, dental, and vision coverage
- Generous PTO and paid holiday schedule
- 401(k) plan