The company is looking to prevent leaking credentials and build the best products for machine identity protection through open-source security research projects.
Requirements
- Proven background in security research
- Expertise in application security, plus experience in at least one other category: Cloud Security, DevSecOps, Data Analytics, Blue Team, etc.
- Intermediate programming skills - primarily in Python and Golang
- Familiarity with LLM tools and how to effectively incorporate them into research and programming workflows
Responsibilities
- Conduct cutting-edge open-source security research in areas broadly related to secrets (application security, cloud security, DevSecOps, etc.)
- Create engaging content to showcase research findings, including blog posts, technical documentation, videos, and whitepapers
- Build Proof-of-Concept tools to assist with research and then share them internally with engineering
- Contribute to Truffle Security’s Open-Source Tools when research drives new improvements to TruffleHog or requires a new tool altogether
- Serve as a security subject matter expert for engineering by helping track down the occasional security bug, providing insight on a new product/feature, and knowledge sharing
- Present at conferences and industry events to share discoveries, represent Truffle Security, and build community interest/trust
- Maintain a positive, respectful, and ethical attitude in all external and internal interactions
Other
- Excellent technical writing skills that demonstrate clarity, depth, and accuracy
- History of public speaking on security topics, with the ability to engage and educate technical and non-technical audiences
- Strong collaboration abilities - You’re equally good at respectfully asking for help and humbly providing it
- Ability to juggle multiple long-term research projects
- High ethical standards and integrity
- Attention to Detail
- Bachelor’s degree or higher in Computer Science, Cybersecurity, or related field (not explicitly mentioned but implied)
- US-based candidates preferred, with some flexibility for European candidates with strong relevant experience