Plan and execute red team and purple team engagements simulating advanced threat actors across cloud infrastructure (AWS, Kubernetes), endpoints, and application surfaces
Conduct continuous penetration testing of web applications, APIs, mobile clients, browser extensions, cloud infrastructure, and internal services
Assess AI/ML-specific attack surfaces including prompt injection, model exfiltration, agent abuse, tool-use exploitation, and MCP security boundaries
Develop and maintain custom offensive tooling, exploits, and automation to improve the efficiency and coverage of security testing
Perform open-scope adversary simulations that test detection and response capabilities end to end, collaborating closely with the defensive security team
Drive threat modeling sessions with engineering teams to identify and prioritize attack vectors in new features and architectures
Deliver clear, actionable findings to both technical and executive audiences; partner with engineering to validate remediations
Contribute to the security of CI/CD pipelines, supply chain integrity, and secrets management through offensive assessment
Stay current on emerging attack techniques, vulnerability research, and adversary tradecraft; bring external perspective into Perplexity's security strategy