Apply your security and vendor risk expertise to train frontier AI models by reviewing SOC 2 reports, assessing third-party security risks, creating evaluation rubrics, and improving AI reasoning for security review workflows.
InfoSec Expert
Job description
Role Title: InfoSec Expert
Role Type: Contractor
Location: Remote
micro1 is engaging InfoSec Experts to contribute to a high-impact project for one of our customers in the enterprise SaaS space. In this role, you'll apply your expertise to help train next-generation AI systems. Your work will shape how models learn, reason, and perform through high-quality, real-world input. No prior experience in AI is required — your domain knowledge is what matters.
Scope of Work
- Design and define comprehensive red-teaming workflows and adversarial scenarios targeting SaaS and cloud-based environments.
- Conduct hands-on penetration testing and adversarial threat modeling across platforms such as Microsoft 365, Google Workspace, Slack, GitHub, and Snowflake.
- Act as a senior reviewer, critically evaluating the quality and depth of red-teaming exercises and deliverables.
- Identify and document potential vectors for misuse or manipulation of AI agents, including prompt injection, privilege escalation, data exfiltration, and destructive actions.
- Contribute practical insights for developing and vetting security controls, policies, and detection strategies relevant to real-world SaaS environments.
- Collaborate with other cybersecurity professionals, providing detailed written and verbal feedback on findings and improvements.
- Support benchmarking initiatives by creating adversarial scenarios that reflect contemporary threats and attack methodologies.
Preferred Qualifications
- Extensive hands-on experience in security domains such as red teaming, penetration testing, application/cloud security, or security engineering.
- Deep understanding of enterprise SaaS security concepts including identity, RBAC/permissions, and data governance.
- Direct familiarity with Microsoft 365, Google Workspace, Slack, GitHub, and Snowflake from a security evaluation perspective.
- Demonstrated ability to think adversarially about how AI and SaaS platforms could be exploited or compromised.
- Strong written and verbal communication skills, enabling clear articulation of complex security issues and recommended remediations.
- Proven track record of practical, real-world impact in security projects—beyond simply listing experience on a resume.
- Bonus: Prior experience in AI/LLM security or adversarial testing of agent-based systems.
You will be redirected to the company's website to complete your application.