Jobs in United States

Threat Investigator in United States

175 active opportunities · Updated October 2026

Explore current threat investigator jobs across United States. Filter by work mode, employment type, experience, department, date posted and distance.

O
📍 San Francisco, California, United States· Full-time· Remote
✓ High-confidence listingCompany trend -82%
Quick readStrong listing-quality and freshness signals

About the Team Our Safety Systems team is at the forefront of OpenAI's mission to build and deploy safe AGI, driving our commitment to AI safety and fostering a culture of trust and transparency. Within Safety Systems, the Model Policy team works to ensure that increasingly capable models behave safely and reliably in real-world environments. We investigate emerging model failures, define the behavior models should exhibit instead, and develop the data, evaluations, monitoring, and safeguards needed to improve and validate that behavior. Our work connects alignment research with the practical challenges of training and deploying frontier models. About the Role In this role, you will shape how OpenAI understands and addresses real-world risks that emerge from model misalignment as models become more autonomous and operate over longer horizons. You will investigate how misaligned behavior emerges across extended trajectories - including when models persist toward the wrong objective, take unsafe shortcuts, lose track of instructions, exploit weaknesses in their environment, or circumvent constraints - and translate these insights into behavioral policies, evaluations, monitoring, and safeguards. This role is ideal for someone who wants to turn alignment and safety concerns into concrete, empirically grounded improvements to frontier AI systems. Your Responsibilities: Identify vulnerabilities that emerge as models interact with tools, data, and external systems, and translate them into model- and system-level safeguards. Develop threat models and empirical frameworks for understanding harmful outcomes from misaligned behavior. Build frameworks for understanding harmful outcomes arising from model misalignment. Identify the underlying behaviors and system conditions that drive those outcomes. Turn findings into policy frameworks, evaluation criteria, online measurement and safeguards. Develop human data campaigns and gold sets to ground measurement and evaluation of eme

AWSRestAIGo
O
📍 San Francisco, California, United States· Full-time
✓ Quality checkedCompany trend -82%

About the Team The Integrity team builds the systems OpenAI uses to understand, prevent, and respond to misuse across our products. We partner with Product, Policy, Safety Systems, User Operations, Security, Legal, Privacy, OpenAI for Government, and research teams to turn policy and threat models into product controls, review workflows, measurement systems, and enforcement paths. About the Role We are hiring a Product Manager to own Integrity's product strategy for sensitive deployments: contexts where model capability, customer or deployment setting, privacy constraints, and misuse potential make the operating bar unusually high. This includes government and other high stakes deployments, regulated or high-trust enterprise contexts, zero data retention and privacy-constrained environments, and agentic workflows where harm can unfold across many steps rather than a single prompt. The Sensitive Deployments PM will focus on high-consequence use cases relevant to government deployments and broader deployment-readiness questions for high-risk domains (e.g., healthcare), while building reusable Integrity capabilities for agentic detection and enforcements in these environments. This position is based in San Francisco, CA, with relocation assistance available. In this role, you will: Own the roadmap for sensitive deployment Integrity controls and readiness criteria. Define how we measure residual risk, decision quality, review quality, and mitigation effectiveness. Build agentic investigation and context-assembly workflows for complex, multi-step misuse patterns. Partner with Policy, Legal, Privacy, Safety Systems, User Ops, Government, and product teams to build shared capabilities. Create launch and deployment playbooks for sensitive customer, capability, and product contexts. You might thrive in this role if you: Have shipped complex product systems in AI, integrity, trust and safety, security, privacy, risk, government, regulated enterprise, or AI safety. Can turn am

AWSRestAIGo
G
📍 United States· Full-time
✓ High-confidence listingCompany trend -100%

From $154K/yr

Quick readStrong listing-quality and freshness signals

Location Details: At GoDaddy the future of work looks different for each team. Some teams work in the office full-time, others have a hybrid arrangement (they work remotely some days and in the office some days) and some work entirely remotely. This is a remote position, so you’ll be working remotely from your home. You may occasionally visit a GoDaddy office to meet with your team for events or meetings. This position is not eligible to be performed in Alaska, Mississippi, North Dakota, or the Virgin Islands. GoDaddy is not currently considering candidates for this role in California, Seattle, or NYC. Join Our Team... We are seeking a highly skilled Senior Security Engineer to join our advanced Security Operations team. This role is focused on leading complex incident response and forensic investigations across Windows, macOS, Linux, and AWS environments while helping modernize security operations through automation and AI-driven capabilities. The ideal candidate is a hands-on security expert with deep AWS security expertise, strong threat detection and digital forensic skills, and experience leveraging AI and machine learning technologies to improve detection, response, and operational efficiency. You will play a key role in protecting critical assets, conducting high-impact investigations, mentoring team members, and driving the evolution of our security program against sophisticated and emerging threats. What You'll Get to Do... Lead high-priority incident response and forensic investigations, serving as the primary escalation point for advanced analysis, containment, recovery, root cause determination, and executive-level reporting. Drive threat detection and response across AWS, Windows, macOS, Linux, and endpoint security platforms, leveraging services such as GuardDuty, Security Hub, Detective, CloudTrail, IAM, VPC Flow Logs, and SentinelOne. Conduct malware analysis, host and cloud forensics, evidence collection, and threat hunting activi

PythonAWSGitLinux
A
📍 United States· Full-time
✓ High-confidence listingCompany trend -98.8%

From $156K/yr

Quick readStrong listing-quality and freshness signals

Airbnb was born in 2007 when two hosts welcomed three guests to their San Francisco home, and has since grown to over 5 million hosts who have welcomed over 2 billion guest arrivals in almost every country across the globe. Every day, hosts offer unique stays and experiences that make it possible for guests to connect with communities in a more authentic way. The Community You Will Join: The Community Support org handles tens of millions of interactions yearly, engaging with Airbnb customers by phone, messaging, chat, or social media channels. The group handles hundreds of issues across categories including Cancellations, Account Issues, Refunds, Payments, Reservations, Extenuating Circumstances, Booking & Listing issues, Safety & Claims. The organization is globally distributed with offices in San Francisco, Dublin, Montreal, Seattle, Singapore, Manila, Gurgaon and an extensive partner network serving all regions. The Difference You Will Make: In this role you will own the strategic design and continuous evolution of risk frameworks, the risk registry, and executive risk narratives for Community Support — translating investigative findings, AI/ML model outputs, operational signals, and emerging threats into decisions and actions that protect Airbnb. A defining element of this role is your close partnership with the Insider Threat program. Together, you will form a complementary unit: you will ensure that investigative outcomes are contextualized within the broader risk ecosystem — informing risk appetite decisions, shaping detection strategy, and driving remediation accountability. You will co-own escalation frameworks, jointly challenge detection model effectiveness, and ensure that the feedback loop between investigations, risk governance, and AI-driven detection is robust and continuously improving. Beyond analysis and governance design, you will serve as the program manager for systemic root cause resolution — ensuring that when investigations, incident

ReactAWSAIGo
D
📍 United States· Full-time· Remote
✓ High-confidence listing

$220K – $275K/yr

Quick readStrong listing-quality and freshness signals

Discord has a highly engaged community of millions of daily active users who use the platform for many different reasons, but there’s one thing that nearly everyone does: play video games. Discord plays a uniquely important role in the future of gaming, and we are focused on making it easier and more fun for people to hang out before, during, and after playing games. Discord exists to give people the power to create space to find belonging — to talk regularly with the people they care about and build genuine relationships with friends and communities close to home or around the world. We're looking for an Analytics Manager to lead our Scaled Abuse Countermeasures and Research (SCAR) team — the team that safeguards Discord’s platform integrity. SCAR detects, analyzes, and disrupts high-volume threats through a combination of automated systems, deep research, and active incident response. This role reports to the Head of Safety Intelligence and Automation. What You'll Be Doing Lead and mentor a team of data analysts, scientists, and researchers who investigate active threats, identify platform abuse vectors, and uncover adversarial patterns. Define a strategic roadmap that prioritizes and disrupts the highest impact abuse operations through structured research, rigorous analyses, and live experimentation. Collaborate closely with the safety machine learning team to improve models by identifying the threat signals that translate into long-term, automated countermeasures. Partner cross-functionally with Product, Engineering, Data Science, Policy, Legal, and Revenue, influencing safety-by-design decisions upstream of abuse. Influence capacity toward high-impact infrastructure, such as automated rule engines, ML models, or agent moderation tools. What you should have 2+ years of people management experience leading technical teams, including engineers, data scientists, analysts, applied researchers, or equivalent. 4+ years of experience working in a Trust & Safety dom

PythonSQLRestMachine Learning
O
📍 San Francisco, California, United States· Full-time
✓ Quality checkedCompany trend -82%

About the Team Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity. The Security team protects OpenAI’s technology, people, and products. We are technical in what we build but are operational in how we do our work, and are committed to supporting all products and research at OpenAI. Our Security team tenets include: prioritizing for impact, enabling researchers, preparing for future transformative technologies, and engaging a robust security culture. About the Role As a Security Engineer on Detection & Response, you’ll help protect OpenAI’s most sensitive assets– including our intellectual property, customer data, and the infrastructure that supports them– by building and operating the systems we use to detect suspicious activity and respond effectively when it matters. You’ll work across endpoints, identity, cloud, hyperscale compute infrastructure, and datacenter-adjacent layers, partnering closely with security teams and infrastructure owners to define the telemetry and response requirements we need and building tooling and automation where it delivers the most leverage. In this role, you will: Build and evolve Detection & Response capabilities across OpenAI’s infrastructure, products, and research environments, with an emphasis on high-signal detection and reliable operational response. Engineer detection pipelines and tooling: develop rule lifecycle management, measurement/quality loops (coverage, precision, latency), tuning processes, and safe rollout patterns. Automate response and investigations by building workflows that reduce toil (triage, enrichment, containment, evidence capture) and improve time-to-understand/time-to-contain. Partner with other Security teams and system/infrastructure owners across the company to ensure new systems ship with the right telemetry, threat models, and response playbooks from day one. Define D&R requirements and drive visibility across endpoin

AWSAzureGCPKubernetes
S
📍 Menlo Park, California, United States· Full-time
✓ Quality checkedCompany trend -92.9%

At Snowflake, we are powering the era of the agentic enterprise. To usher in this new era, we seek AI-native thinkers across every function who are energized by the opportunity to reinvent how they work. You don’t just use tools; you possess an innate curiosity, treating AI as a high-trust collaborator that is core to how you solve problems and accelerate your impact. We look for low-ego individuals who thrive in dynamic and fast-moving environments and move with an experimental mindset — who rapidly test emerging capabilities to discover simpler, more powerful ways to deliver results. At Snowflake, your role isn't just to execute a function, but to help redefine the future of how work gets done. We are hiring a Staff Software Engineer, Product Security for our Security Foundations team. Product security sits at the center of the trust customers place in the Snowflake platform, and this role owns the hard technical problems that keep that trust intact. You will drive security architecture and secure-by-design practices across engineering teams, shaping how new products are built rather than reviewing them after the fact. AS A STAFF SOFTWARE ENGINEER, PRODUCT SECURITY AT SNOWFLAKE, YOU WILL: Set the technical direction for product security across multiple engineering teams, influencing architecture decisions before code is written Design and build security-critical services, frameworks, and controls that other engineering teams adopt as defaults Lead threat modeling and security design reviews for the platform's most complex and high-risk systems Partner with product and engineering leaders to embed secure-by-design principles into the development lifecycle Investigate and drive resolution of the highest-severity security issues, then eliminate the underlying class of problem, not just the instance Mentor senior and mid-level engineers, raising the security engineering bar across the organization Own initiatives end to end, from problem framing and scoping through de

PythonJavaAIC++
O
📍 San Francisco, California, United States· Full-time
✓ Quality checkedCompany trend -82%

About the Team The Intelligence and Investigations team is dedicated to ensuring the safe, responsible deployment of AI by rapidly detecting and mitigating abuse. Our team leverages the latest testing methodologies to uncover vulnerabilities and emerging threats, helping safeguard OpenAI’s products and users. We work closely with cross-functional partners across product, policy, and engineering to drive a comprehensive defense strategy against evolving adversarial challenges. About the Role As a Red Team Specialist focused on cyber, you will help answer two practical questions: What cyber capabilities can our models provide to real-world attackers, and do our safeguards remain effective when those attackers use increasingly sophisticated techniques? The role combines scaled evaluation with expert-driven testing. You may bring deeper experience in cybersecurity and use that expertise to judge whether a model’s behavior meaningfully changes attacker capability. Alternatively, you may bring deeper experience in model evaluations, automation, or agentic harnesses and apply those skills to building rigorous cyber testing. We do not expect every candidate to be equally deep in both areas, but successful candidates will have a strong foundation in one and enough fluency in the other to work effectively across the boundary. Most of your work will focus on model cyber capabilities and safeguards; you will also spend a portion of your time testing novel abuse risks in agentic systems. This role is located in San Francisco, CA or Seattle, WA. We use a hybrid work model of 3 days in the office per week and offer relocation assistance to new employees. In this role, you will: Design and run rigorous evaluations of model cyber capabilities and safeguards, including policy adherence, correct refusal, over refusal, and resilience to jailbreaking and other adversarial techniques. Conduct hands-on testing to understand what models can enable when used by experienced security practiti

AWSRestAIGo
O
📍 San Francisco, California, United States· Full-time
✓ Quality checkedCompany trend -82%

About the Team The Intelligence and Investigations team seeks to rapidly identify and mitigate abuse and strategic risks to ensure a safe online ecosystem. We are dedicated to identifying emerging abuse trends, analyzing risks, and working with our internal and external partners to implement effective mitigation strategies to protect against misuse. Our efforts contribute to OpenAI's overarching goal of developing AI that benefits humanity. The Strategic Intelligence & Analysis (SIA) team provides safety intelligence for OpenAI’s products by monitoring, analyzing, and forecasting real-world abuse, geopolitical risks, and strategic threats. Our work informs safety mitigations, product decisions, and partnerships, ensuring OpenAI’s tools are deployed securely and responsibly across critical sectors. About the Role As a Quantitative Intelligence Analyst , you will focus on discovering novel and emerging risks in complex human–AI systems before they are well-defined, measurable, or widely understood. You will use deep subject matter expertise and quantitative tooling to surface weak, early, and unconventional risk signals. You will build analytic models that explain how harms could emerge and translate ambiguous patterns into structured, data-driven insight. Your work will help identify potential gaps in policy or coverage and operationalize previously unmeasured problems into signals that can support detection, mitigation, and planning downstream. You will develop analytical frameworks that map how new risks form, evolve, and propagate as products change, policies shift, and external events unfold. Your analyses will directly inform strategic risk prioritization and planning across the company, with regular visibility through strategic risk products. This role is based in office (hybrid, 3 days/week). Relocation support is available In this role, you will: Discover and define new quantitative risk signals where no established metrics exist, using subject matter exp

PythonSQLAWSRest
O
📍 San Francisco, California, United States· Full-time
✓ Quality checkedCompany trend -82%

About the team The Intelligence and Investigations team seeks to rapidly identify and mitigate abuse and strategic risks to ensure a safe online ecosystem in close collaboration with our internal and external partners. Our efforts contribute to OpenAI's overarching goal of developing AI that benefits humanity. This role focuses specifically on AI Safety: understanding and mitigating risks created or amplified by increasingly capable AI systems. It is not a cybersecurity, information security, or corporate security role. The Strategic Intelligence & Analysis (SIA) team provides safety intelligence for OpenAI’s products by monitoring, analyzing, and forecasting real-world abuse, geopolitical risks, and strategic threats. Our work informs AI safety mitigations, product decisions, and partnerships, ensuring OpenAI’s tools are deployed responsibly across critical sectors. About the role We are looking for a Frontier AI Risks Lead to help us understand potential harms and misuse of AI in a time of rapid, sustained change. We seek to understand how developments in AI could intersect with misuse and abuse, accelerating existing harm areas and creating novel risks. We seek to scan available signals and use strategic foresight methodologies to enable proactive detection and mitigation of frontier AI risks. This is an AI safety role focused on frontier and systemic risks, including model misalignment, recursive self-improvement (RSI), multi-agent interaction, loss of control, runaway agents, and related emerging failure modes. In this role, you will help provide a strategic-level perspective on a range of frontier AI safety areas, producing actionable understanding of issues relevant to OpenAI’s platforms, systems, and broader mission. Utilizing mixed quantitative and qualitative methodologies, you will spot early warning signs, pull threads on potentially concerning behavior, and turn weak signals into clear, prioritized risk calls. You will focus on upstream ecosystem sc

AWSRestAIGo
O
📍 San Francisco, California, United States· Full-time
✓ Quality checkedCompany trend -82%

About the Team The Intelligence and Investigations team seeks to rapidly detect and disrupt abuse in AI technologies to ensure their safe use. We are dedicated to identifying emerging abuse trends, analyzing risks, and working with our internal partners to implement effective mitigation strategies to protect against misuse. Our efforts contribute to OpenAI's overarching goal of developing AI that benefits all of humanity. About the Role As an Intelligence Systems Engineer, you’ll be focused on advancing our Intelligence & Investigations efforts at OpenAI, ensuring the safe and responsible use of AI across our products and services. We are seeking a self-starter to prototype, develop, and maintain new tools and processes that integrate OpenAI’s models and infrastructure to enable internal teams to make sense of large, open-domain datasets, fight abuse, and inform high-stakes decisions. You will be a crucial technical bridge between our data scientists and subject matter experts and technical teams like Platform Integrity, Safety Systems, and Research by leading the development of innovative tools and processes that bolster goals in scaled collections, investigations, and analysis. The ideal candidate has strong analytical and data skills, with a background in both prototyping and building scalable systems that can swiftly detect emerging threats, process vast amounts of information, and deliver insights to stakeholders. We value professionals with outstanding communication skills, a commitment to continuous learning, and who are dedicated to promoting the responsible use of AI. This role is based in San Francisco, CA. We use a hybrid work model of 3 days in the office per week and offer relocation assistance to new employees. In this role, you will: Prototype, build, and maintain at-scale intelligence systems that detect, triage, and monitor targeted signals from both open-source and internal data Analyze requirements and deliver end-to-end solutions that address

PythonSQLAWSRest
M
📍 San Jose, California, Canada
✓ Quality checkedCompany trend -75%

Our vision is to transform how the world uses information to enrich life for all . Micron Technology is a world leader in innovating memory and storage solutions that accelerate the transformation of information into intelligence, inspiring the world to learn, communicate and advance faster than ever. The Senior Internal Trust and Protection Analyst will play a pivotal role in identifying, assessing, and mitigating risks posed by employees, contractors and others with access to sensitive information. This candidate will also help develop corporate strategy, review policy and procedures, evaluate insider risk control gaps, and develop training related to insider risk and intellectual property protection. This role acts as a subject matter expert throughout the entire insider risk lifecycle. It covers detection, triage, investigation, case adjudication, and mitigation. The position requires strong analytical, technical, and communication skills. It also demands proficiency in industry-standard investigation methods and working with cross-functional teams to improve Micron’s security posture. You will balance robust security measures with maintaining a positive work culture and ensuring the preventive actions do not erode employee trust and morale! Responsibilities: Lead end-to-end investigations into the most sophisticated and sensitive insider risk matters at Micron, including suspected intellectual property theft, major theft, trade secret misappropriation, economic espionage, unauthorized data ex-filtration, fraud, and workplace violence threats. Develop and implement comprehensive investigative plans, including evidence collection strategies, coordination with Micron's various investigation partners, and structured witness and subject interviews using advanced elicitation techniques.</

AIRecruitment
O
📍 Mountain View, California, United States· Full-time
✓ Quality checkedCompany trend -82%

About the Team The Corporate Security team is responsible for safeguarding all OpenAI employees and executives. Our mission is to create a secure, resilient environment that allows our teams to focus on their work without risk or disruption. We manage physical security operations across offices, events, and global initiatives, partnering closely with internal teams and external agencies to stay ahead of emerging threats. About the Role As the Corporate Security Operations Manager based in Mountain View, you will own day-to-day site security operations and help develop practical physical-security strategies, policies, and procedures. You will lead vendor-managed armed and unarmed security teams, partner cross-functionally, and serve as a key liaison with local law enforcement and security partners. This is a hands-on site-operations and guard-force leadership role, not primarily an executive, investigative, or policy-leadership position. The role typically requires 4-5 days in the office each week. In this role, you will: Office Security: Develop, implement, and manage practical physical-security measures, including policies, training, and vendor relationships, to protect employees and visitors across the Mountain View site and nearby facilities. Operational Management: Own the day-to-day performance of vendor-managed armed and unarmed security teams across shifts and locations. Set clear operational expectations and ensure security personnel understand and consistently follow company policies, post orders, and procedures. Monitor security practices, identify operational risks, and drive timely, practical mitigation and remediation. Coordinate with Workplace, Facilities, building management, law enforcement, and other internal and external partners to maintain a cohesive security posture. Support broader Corporate Security operations as needed. Support or lead security operations for on-campus events. Serve as the primary point of contact for VIP and government-guest

AWSRestAIGo
C-
📍 New York, New York, United States
✓ High-confidence listing

$120K – $150K/yr

Quick readStrong listing-quality and freshness signals

CLEAR is building THE secure identity company of the future. Our mission is to make experiences safer and easier—physically and digitally. With more than 43 million Members and a growing network of partners across the world, CLEAR's secure identity platform is transforming the way people live, work, and travel. Whether it’s at the airport, stadium, or throughout your everyday life, CLEAR unlocks the magic of frictionless experiences. The Regional People Partner, Employee Relations Lead serves as the centralized employee relations partner for our Airport Operations team, with direct, hands-on support for one region. In this role, you're the consistent thread ensuring employee relations issues are handled the same way, every time, no matter where they happen. You're the person leaders lean on to make good calls, and the person team members know is invested in their success. This role puts you in the middle of it all — maintaining oversight across the entire fleet while coaching station leaders, resolving employee relations issues with consistency and fairness across the field, and building an exceptional team member experience that helps CLEAR thrive. What you'll do: Be the go-to People Partner for Operations leaders in your region - the person they call when something's tricky, not just when something's already broken Coach and sharpen station leaders and managers - through training, real feedback, recognition that means something, and just showing up when it counts Own employee and labor relations across your stations: run investigations, dig into root causes, and land on outcomes that are fair and consistent, working closely with Legal along the way Turn employee data, survey results, and what you're hearing on the ground into recommendations leaders can actually act on Partner across People and Operations on the bigger initiatives: onboarding, process fixes, and making sure People practices run the same way at every station Lead timely, thorough, and object

V
📍 United States· Full-time
✓ Quality checkedCompany trend -90%

At Vanta, our mission is to help businesses earn and prove trust. We believe that security should be monitored and verified continuously, and we empower companies to practice better security and prove it with ease. Vanta has a kind and talented team, and while some have prior security experience, many have been successful at Vanta without it. We are seeking an experienced Manager of Security Operations, reporting to the Director of Security, to lead our exceptionally talented Security Engineering team. Vanta’s Security Operations team provides essential security operational services, including configuring, monitoring, and maintaining our security tools and infrastructure. You’ll be responsible for leading the Security Operations team and assisting with incident response, setting our detection and response strategy, and assisting with investigations. You’ll also work cross-functionally to ensure we maintain compliance and improve our secure maturity. What you’ll do as a Manager, Security Operations at Vanta: Lead and grow a team of the best security operations analysts in the world, with a view of security that is AI-first, human-centric, and trust-based. Help define the strategy for Vanta’s security operations team, and empower the team to implement robust security protocols and stay ahead of emerging threats. Leverage AI to improve efficiency of team processes, and improve the maturity of the overall security program. Lead and drive incident response from detection, remediation, to prevention Identify, develop, and implement new processes in our security operations program Identify new technologies and emerging threats for our organization, and plan a technology-driven approach to addressing new risks How to be successful in this role: Strong leadership experience in security and an ability to lead a global team from a foundation of transparency and trust. Strong security operations experience, with emphasis on implementing security controls in a SaaS and cloud env

RestAIGoRust
🔔

Get new threat investigator jobs in United States by email

Daily job updates · Unsubscribe anytime