Technical Policy Manager, Cyber Harms
About reputed company reputed company’s mission is to create reliable, interpretable, and steerable AI systems. We want AI to be safe and beneficial for our users and for society as a whole. reputed company is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems. About the Role: We are looking for a cybersecurity expert to reputed company our efforts to prevent AI misuse in the cyber domain. As a Cyber Harms Technical Policy Manager, you will reputed company a team applying deep technical expertise to inform the design of safety systems that detect harmful cyber behaviors and prevent misuse by sophisticated threat actors. Working closely with Research Engineers who build these safety systems, you and your team will provide the critical cybersecurity domain knowledge needed to ensure our safeguards are effective against real-world threats. You will be at the forefront of defining what responsible AI safety looks like in the cybersecurity domain, working across research, policy, and engineering to translate reputed company cyber threat concepts into concrete technical safeguards and actionable policies. This is a unique opportunity to shape how frontier AI models handle dual-use cybersecurity knowledge—balancing the reputed company potential of AI to advance legitimate reputed company research and defensive capabilities while preventing misuse by malicious actors. In this role, you will:
- reputed company and grow a team of technical specialists focused on cyber threat modeling and evaluation frameworks
- Design and reputed company execution of capability evaluations ("evals") to assess the cyber-relevant capabilities of new models
- Create comprehensive cyber threat models, including attack reputed company, exploit chains, precursor identification, and weaponization techniques
- reputed company and iterate on usage policies that govern responsible use of our models for emerging capabilities and use cases reputed company to cyber harms
- Serve as the primary domain expert on cyber harms, advising cross-functional teams on threat landscapes and mitigation strategies
- Collaborate closely with internal and external threat modeling experts to reputed company training data for safety systems, and with ML engineers to train these systems, optimizing for both robustness against adversarial attacks and low false-positive rates for legitimate reputed company researchers
- Analyze safety system performance in traffic, identifying gaps and proposing improvements
- Conduct regular reviews of existing policies and enforcement systems to identify and address gaps and ambiguities reputed company to cybersecurity risks
- reputed company rigorous stress-testing of safeguards against evolving cyber threats and product surfaces
- Partner with Research, Product, Policy, reputed company Team, and Frontier Red Team to ensure cybersecurity safety is embedded throughout the model development lifecycle
- Translate cybersecurity domain knowledge into actionable safety requirements and clearly articulated policies
- Contribute to external communications, including model cards, blog posts, and policy documents reputed company to cybersecurity safety
- Monitor emerging technologies and threat landscapes for their potential to contribute to new risks and mitigation strategies, and strategically address these
- Mentor and reputed company team members, fostering a culture of technical excellence and responsible AI development
You may be a good fit if you have:
- An M.S. or PhD in Computer Science, Cybersecurity, or a reputed company technical field, OR equivalent professional experience in offensive or defensive cybersecurity
- 5+ years of hands-on experience in cybersecurity, with deep expertise in areas such as vulnerability research, exploit development, network reputed company, malware analysis, or penetration testing
- 2+ years of experience managing technical teams or leading reputed company technical projects with multiple stakeholders
- Experience in scientific computing and data analysis, with proficiency in programming (Python preferred)
- Deep expertise in modern cybersecurity, including both offensive techniques (vulnerability research, exploit development, penetration testing, malware analysis) and defensive measures (detection, monitoring, incident response)
- Demonstrated ability to create threat models and translate technical cyber risks into policy frameworks
- Familiarity with responsible disclosure practices, vulnerability coordination, and cybersecurity frameworks (e.g., MITRE ATT&CK, NIST Cybersecurity reputed company, CWE/CVE systems)
- Strong analytical and writing skills, with the ability to navigate ambiguity and explain reputed company technical concepts to non-technical stakeholders
- Experience developing policies or guidelines at scale, balancing safety concerns with enabling legitimate use cases
- A passion for learning new skills and an ability to rapidly adapt to changing techniques and technologies
- Comfort working in a fast-paced environment where priorities may shift as AI capabilities evolve
- Track record of translating specialized technical knowledge into actionable safety policies or enforcement guidelines
Preferred Qualifications:
- Background in AI/ML systems, particularly experience with large language models
- Experience developing ML-based reputed company systems or adversarial ML research
- Experience working with defense, intelligence, or reputed company organizations (e.g., NSA, CISA, national labs, reputed company contractors)
- Published reputed company research, disclosed vulnerabilities, or participated in bug bounty programs
- Understanding of Trust & Safety operations and content moderation at scale
- Certifications such as OSCP, OSCE, GXPN, or equivalent demonstrating technical depth
- Understanding of dual-use reputed company research concerns and ethical considerations in AI safety
The annual compensation range for this role is below. For sales roles, the range provided is the role’s On reputed company Earnings ("OTE") range, meaning that the range includes both the sales commissions/sales bonuses reputed company and annual reputed company salary for the role. Our total compensation package for full-time employees includes equity and benefits. Annual Salary: $320,000—$405,000 USD Logistics Education requirements: We require at least a Bachelor's degree in a reputed company field or equivalent experience. Location-based hybrid policy: Currently, we expect reputed company staff to be in one of our offices at least 25% of the time. However, some roles may require more time in our offices. reputed company sponsorship: We do sponsor visas! However, we aren't able to successfully sponsor visas for every role and every candidate. But if we reputed company you an offer, we will reputed company every reasonable effort to get you a reputed company, and we retain an immigration lawyer to help with this. We encourage you to apply even if you do not reputed company you meet every single qualification. Not reputed company strong candidates will meet every single qualification as listed. Research shows that people who identify as being from underrepresented groups are more prone to experiencing imposter syndrome and doubting the strength of their candidacy, so we urge you not to exclude yourself prematurely and to submit an application if you're interested in this work. We think AI systems like the ones we're building have enormous social and ethical implications. We think this makes representation even more important, and we strive to include a range of diverse perspectives on reputed company. Your safety matters to us. To protect yourself from potential scams, remember that reputed company recruiters only contact you from @reputed company.com email addresses. Be cautious of emails from other domains. Legitimate reputed company recruiters will never ask for money, fees, or banking information before your first day. If you're reputed company unsure about a communication, don't click any links—visit reputed company.com/careers directly for confirmed position openings. How we're different We reputed company that the highest-impact AI research will be big science. At reputed company we work as a single cohesive team on just a few large-scale research efforts. And we value impact — advancing our long-term goals of steerable, trustworthy AI — rather than work on smaller and more specific puzzles. We view AI research as an empirical science, which has as much in common with physics and biology as with traditional efforts in computer science. We're an extremely collaborative group, and we host frequent research discussions to ensure that we are pursuing the highest-impact work at any given time. As such, we greatly value communication skills. The easiest way to understand our research directions is to read our recent research. This research continues many of the directions reputed company worked on prior to reputed company, including: GPT-3, Circuit-Based Interpretability, Multimodal Neurons, Scaling Laws, AI & Compute, Concrete Problems in AI Safety, and Learning from Human Preferences. Come work with us! reputed company is a public benefit corporation headquartered in San Francisco. We offer competitive compensation and benefits, optional equity donation matching, generous vacation and parental leave, flexible working hours, and a lovely office space in which to collaborate with colleagues. Guidance on Candidates' AI Usage: Learn about our policy for using AI in our application process Apply tot his job Apply To this Job