or apply directly on Endor Labs's site. We never take the application ourselves.
Is this posting real?
- This role has been open
- 16 days Endor Labs's roles stay open a median of 45 days
- Reposted
- No
- Salary listed
- No 17% of Endor Labs's roles list one
- Ghost-job risk at Endor Labs
- high 17 stale, 0 reposted of 29 open
- Hiring momentum
- 38 roles opened in the last 90 days ↑ up vs. the prior 90 days
- Last confirmed on the employer's board
- 2026-09-17
Measured from postings appearing on and disappearing from Endor Labs's own greenhouse board since 2026-08-03. Full hiring picture for Endor Labs.
About this role
As a Security Engineer focused on Vulnerability Management at Endor Labs, you will enhance the company's proprietary vulnerability database by improving AI pipelines for automated vulnerability validation and analysis. Your daily tasks will involve managing and monitoring vulnerability triage processes, collaborating with researchers on vulnerability discovery, and producing technical content for various audiences. You will also work with internal teams to integrate findings into detection systems and improve automated coverage.
- benefits
- 1/5
- freshness
- 4/5
- career value
- 4/5
- role clarity
- 4/5
- pay transparency
- 0/5
Scored from the posting itself — how clearly the role is described, how much it says about pay and benefits, and how recently it was listed. Not a judgement of Endor Labs as an employer.
What you need
- Bachelor's degree in engineering or a related field
- At least 3 years of hands-on professional experience in vulnerability research, vulnerability management, product security, or application security
- Extensive knowledge of software vulnerabilities and associated standards (CVE, CWE, CVSS, EPSS, PURLs, NVD, OSV, VEX, SBOM formats)
- Hands-on experience building production-grade solutions at enterprise scale
- Demonstrated experience shipping AI/agentic systems to production
- Proficiency in reading and analyzing code across multiple languages (Python, JavaScript/TypeScript, Java, Go)
Nice to have
- Experience writing proof-of-concept exploits or with fuzzing, static analysis, or automated vulnerability discovery
- Contributions to open source vulnerability databases or related tooling
- Familiarity with SAST, SCA, and DAST tooling
- Understanding of software supply chain security standards and frameworks
- Prior public research, CVE credits, or published vulnerability findings
Worth weighing
- No salary listed
- The role involves a significant amount of collaboration with researchers and internal teams, which may require strong interpersonal skills
- The focus on AI and automated systems suggests a modern tech stack, but the specifics of the technologies used are not detailed
- The position may require balancing technical work with content creation for external audiences, which could appeal to candidates with strong communication skills
Summarised from Endor Labs's posting. Read the full original.
Listed by Endor Labs on their greenhouse job board, last confirmed open on 2026-09-17. PitchMeAI is not the employer.
More roles at Endor Labs
- Technical Success EngineerPanama
- IT EngineerBengaluru, India
- Senior Technical RecruiterUnited States
- Staff Backend Engineer (Golang)Bengaluru, India
- Senior Quality Engineer(SDET)Bengaluru, India
- Senior Backend Engineer (Golang)Bengaluru, India
- Enterprise Account Executive - TOLATexas