--- title: 'Security Analyst at RunSybil' canonical: 'https://feeny.ai/job/security-analyst-runsybil-united-states-g531z30tq8y7' type: 'job' last_seen: '2026-09-08' --- # Security Analyst at RunSybil - **Company:** RunSybil - **Location:** United States - **Employment:** full-time - **Work type:** remote - **Posted:** 2026-08-21 - **Last confirmed live:** 2026-09-08 - **Apply:** https://jobs.ashbyhq.com/runsybil-jobs/4a9f7560-24d1-4728-a62d-b62ec99e9536 ## Job description ## About RunSybil Founded in 2023 by Ari Herbert-Voss and Vlad Ionescu, RunSybil is on a mission to automate hacker intuition. We are building Sybil, an AI-driven pentester that discovers vulnerabilities before they are exploited. As adversaries adopt AI to expand their attack surface, we are putting cutting-edge offensive security into the hands of defenders. Backed by strong investor support and early customer traction, our team includes experts from OpenAI, Meta, Mandiant, Palantir, Cruise, Trail of Bits, and Aptiv. ## About the Role We are looking for a Security Analyst to join our security research team. You will work hands-on with web application vulnerabilities every day, assessing findings, confirming exploitability, rating severity, and delivering clear, accurate reports that customers rely on to understand and remediate their risk. This role does not require software engineering experience. It requires deep familiarity with web vulnerabilities, sharp analytical judgment, and the ability to communicate findings precisely. If you have spent time in bug bounty, application security, or pentesting and have a strong eye for what is real and what is noise, we want to hear from you. ## What You Will Do - Assess and validate web application vulnerabilities across a range of targets and confirm exploitability and scope - Reproduce findings hands-on using tools like Burp Suite - Rate severity accurately using established frameworks such as CVSS and OWASP - Write clear, accurate, customer-facing finding descriptions and remediation guidance that security practitioners trust and developers can act on - Maintain consistent standards across a high volume of findings - Surface patterns, edge cases, and unusual behaviors to the broader team - Identify patterns across findings and share feedback on where and how Sybil can improve We Are Looking for Someone Who Brings - 2 or more years of hands-on experience with web application vulnerabilities through bug bounty, penetration testing, application security, or a similar role - Solid, practical understanding of OWASP Top 10 and common web vulnerability classes: you have actually found and confirmed these, not just read about them - Experience reproducing and validating findings manually, including in ambiguous or noisy environments - Comfort with tools like Burp Suite, browser developer tools, or similar for hands-on verification - Strong written communication: you can describe a vulnerability, its impact, and how to fix it in plain language - Attention to detail and consistency: you apply the same standard to the hundredth finding that you applied to the first - Self-direction: you manage your own work without needing someone to structure your day Location: Remote (US) Compensation: The base salary for this full-time position ranges from $130,000-$160,000. In addition to base salary, we offer meaningful equity. We want everyone here to have ownership in what we're building. Diverse teams build better products. RunSybil is committed to hiring people who bring different perspectives, lived experiences, and backgrounds to our work. We encourage candidates of all races, ethnicities, gender identity and expression, sexual orientation, disability or medical conditions, ages, religions, and socioeconomic backgrounds to apply. Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records. If you're excited about this role but don't check every box, we still want to hear from you. ## About RunSybil ## Core Business - **Primary industry**: Computer and Network Security / Offensive Security (AI-powered penetration testing) - **Target customers**: Enterprise B2B – security teams at high-risk, multi-tenant, or rapidly deploying organizations - **Mission**: “Automate hacker intuition” – replace periodic pentests and bug bounties with continuous, AI-driven validation of exploitable vulnerabilities. ## Products & Services - **Sybil Platform**: An AI agent that continuously tests applications and infrastructure by reasoning like an elite human attacker. It chains vulnerabilities across code, APIs, cloud, and infra to surface only real, exploitable paths. Deployed on every deployment, it provides feedback on pull requests and enables Continuous Threat Exposure Management (CTEM) validation. ## Market Standing - **Valuation/Market Cap**: Not disclosed - **Key Metric**: Total funding – $40M (Seed round, March 2026) - **Notable Investors/Partners**: Lead investor Khosla Ventures; 8 total investors in the seed round - **Growth Signals**: Headcount grew 185.7% YoY to ~10 employees; monthly LinkedIn follower growth of +8.0% and yearly +285.8%; recent $40M raise signals strong investor confidence. ## Competitive Advantages - **AI-native reasoning**: Sybil doesn't scan for signatures – it reasons like a human attacker, chaining multi-layer vulnerabilities and validating exploitability. - **Continuous, context-aware testing**: Re-evaluates the attack surface on every deployment, adapting to changes rather than running periodic generic checks. - **Reduced false positives**: Claims 90% fewer false positives by proving actual exploitability, eliminating triage burden. - **Team pedigree**: Founders and early team hail from OpenAI, Meta, Mandiant, NCC Group, and Trail of Bits – combining frontier AI research with elite red-team experience. ## Strategic Focus - Scaling the engineering and go-to-market teams to expand the platform’s coverage and customer adoption. - Replacing traditional bug bounties and point-in-time pentests with continuous, AI-driven offensive security. - Building a “company-survival mindset” and prioritizing velocity, shipping, and quality of thinking. ## Why Work Here - **Culture**: “Built by researchers. Driven by conviction.” Emphasis on shipping fast, thinking like an attacker, preempting what’s next, and engineering craft. - **Work model**: Hybrid with hubs in San Francisco and New York City; remote or hybrid options available. - **Benefits**: Comprehensive medical/dental/vision (100% employee, 80–85% dependents), unlimited PTO (20-day suggested minimum), 12 weeks paid parental leave, 401(k) with 3% auto-enrollment, mental health and wellness support, commuter benefits, company-provided laptop, regular team onsites. - **Team**: Small, high-caliber group (ex-OpenAI, Meta, Mandiant, NCC Group, Trail of Bits) working on the leading edge of AI and security. Interview process is structured, collaborative, and fast – LLM use encouraged. ## Sources 1. [runsybil.com](https://www.runsybil.com/) 2. [runsybil.com/company](https://www.runsybil.com/company) 3. [runsybil.com/careers](https://www.runsybil.com/careers) 4. [builtin.com](https://builtin.com/company/runsybil) 5. [linkedin.com](https://www.linkedin.com/company/runsybil) ## Other roles at RunSybil - [Software Engineer I](https://feeny.ai/job/software-engineer-i-runsybil-new-york-k0thqp47baj5) — New York, NY - [Forward Deployed Engineer](https://feeny.ai/job/forward-deployed-engineer-runsybil-united-states-z6x7c0j9xtj8) — United States - [Sales Development Manager](https://feeny.ai/job/sales-development-manager-runsybil-san-francisco-dwexshbs2sca) — San Francisco, CA - [Senior Account Executive, Technology](https://feeny.ai/job/senior-account-executive-technology-runsybil-san-francisco-ptqhwq1mrems) — San Francisco, CA - [Security Software Engineer](https://feeny.ai/job/security-software-engineer-runsybil-united-states-1pj8gsxey1nz) — United States - [Product Software Engineer](https://feeny.ai/job/product-software-engineer-runsybil-united-states-kdfnge6zpsev) — United States - [SRE/Infrastructure Engineer](https://feeny.ai/job/sre-infrastructure-engineer-runsybil-new-york-j7k1tddtxe0v) — New York, NY - [Machine Learning Engineer](https://feeny.ai/job/machine-learning-engineer-runsybil-san-francisco-4gn81en20jpw) — San Francisco, CA / New York, NY - [Security Analyst](https://feeny.ai/job/security-analyst-crunchyroll-llc-dallas-texas-by77x3c7mps2) — Dallas Texas, United States - [Security Analyst](https://feeny.ai/job/security-analyst-bloomreach-india-mf6sdk1298b7) — India