Dia is a browser enhanced with agentic capabilities. The agent reasons over untrusted content from the open web and takes real actions on the user's behalf, inside a client that sits next to everything the user is signed into. That combination produces a threat model that mostly doesn't have prior art — the interesting bugs aren't on a checklist, and the tooling to find them largely doesn't exist yet. As a Staff Security Researcher on our security team, you'll do original offensive research against Dia including the client, agent runtime, tools and integrations it calls, and services behind them. You'll work ahead of the product, threat modeling new surfaces with the teams designing them, and reviewing features before they reach users. You'll also eliminate bug classes by building model-driven scanning, fuzzing, and agentic hunting systems that run continuously against our code, our infrastructure, and our agent. You’ll partner closely with the engineers who own remediation, rather than owning the fixes yourself. You'll report to the Head of Security and work across client, infrastructure, and product engineering.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Education Level
No Education Listed