wagey.ggwagey.ggv1.0-e93b95d-4-May
Browse Tech JobsCompaniesFeaturesPricingFAQs
Log InGet Started Free
Jobs/Principal Role/1Password - Principal Security Researcher
1Password

1Password - Principal Security Researcher

Remote (United States | Canada) - Hybrid$208k - $208k+ Equity2mo ago
In OfficePrincipalNACybersecurityPrincipalSecurity AnalystGoRustRubyPythonJavaScript

Upload My Resume

Drop here or click to browse · Tap to choose · PDF, DOCX, DOC, RTF, TXT

Apply in One Click
Apply in One Click

Requirements

• 8+ years of progressive experience in security research, offensive security, or vulnerability research. • 8+ years • Education: Bachelor’s degree in Computer Engineering, Computer Science, Information Security, or a related field; or equivalent practical experience. An advanced degree (MS/PhD) in a relevant discipline is highly valued. • Education: • Industry-recognized body of work: a portfolio of original vulnerability discoveries, high-impact publications, presentations, and/or widely adopted security research. • Industry-recognized body of work: • Expert-level offensive security experience: extensive experience in vulnerability research, exploit development, reverse engineering, and/or advanced adversarial simulation at scale. • Expert-level offensive security experience: • Broad and deep domain expertise across three or more of the following domains: application security, cryptography, access governance, identity protocols (SAML, OAuth, OIDC, SCIM, FIDO/WebAuthn), Linux system internals, Windows system internals, macOS system internals, Web application security, AI/Agentic security, or Mobile security. • Broad and deep domain expertise • Recognized expertise in AI security, including hands-on research into prompt injection, data poisoning, adversarial ML, AI architecture review, or the security of agentic systems. • Recognized expertise in AI security • Proven ability to define and drive research strategy: experience identifying and pursuing long-term research agendas, prioritizing across competing opportunities, and delivering high-impact results with minimal direction. • Proven ability to define and drive research strategy: • Expert software engineering proficiency: Proficiency in three or more programming languages such as Go, Rust, Python, Ruby, JavaScript/TypeScript, or equivalent modern languages, with the ability to architect and develop tooling, audit complex codebases, and produce proof-of-concept exploits. • Expert software engineering proficiency: • Demonstrated thought leadership: A strong record of impactful publications, conference presentations, vulnerability disclosures, or community contributions that advanced security understanding across the industry. • Demonstrated thought leadership: • Integrity and ethical rigor: Consistent history of handling vulnerabilities and disclosures responsibly while engaging constructively with vendors and the research community. • Integrity and ethical rigor: • Exceptional written and verbal communication skills, with demonstrated ability to produce landmark technical publications, as well as deliver compelling presentations to both deeply technical and executive audiences. • Exceptional written and verbal communication skills • USA-based roles only: The annual base salary for this role is between $246,000 USD and $369,000 USD, plus immediate participation in 1Password's benefits program (health, dental, 401k and many others), utilization of our generous paid time off, an equity grant and, where applicable, participation in our incentive programs.Canada-based roles only: The annual base salary for this role is between $228,000 CAD and $342,000 CAD, plus immediate participation in 1Password’s generous benefits program (health, dental, RRSP and many others), utilization of our generous paid time off, an equity grant and, where applicable, participation in our incentive programs.At 1Password, we approach each individual's compensation with a promise of fair market value and internal equity commensurate with experience and specific skill set.This posting is for an existing vacancy. • Our culture At 1Password, we prioritize collaboration, clear and transparent communication, receptiveness to feedback, and alignment with our core values: keep it simple, lead with honesty, and put people first. You’ll be part of a team that challenges the status quo, and is excited to experiment and iterate in search of the best solution. That said, 1Password is not for everyone. Our work is demanding, we strive for excellence, and the pace is fast. We need people who are keen to take on challenging problems, who seek feedback to grow, and who are driven to make an impact. If you're looking for a place where you can settle into a comfortable routine, this might not be the right fit for you. We’re looking for individuals who are proven experts in their fields, as well as those who are highly adaptable, can thrive in ambiguity and through change, are curious, and above all deliver results. How we work with AIWe are committed to leveraging cutting-edge technology—including AI—to achieve our mission. We also understand that thinking critically about AI in its current forms will help us create better solutions for our customers and ourselves with its future forms, which will help us continue to close the gap between security and privacy and achieve our mission. We want team members at all levels to take the approach of actively learning AI best practices, identifying opportunities to apply AI in meaningful ways, and driving innovative solutions in their daily work. Embracing the future of AI isn't just encouraged—it's an essential part of how we will be successful at 1Password. • Our culture • How we work with AI • This approach extends to our hiring process—candidates are welcome to use AI tools responsibly and thoughtfully during the application process.Our approach to remote work We believe in the power of remote work, but recognize that in-person connection is important to help us achieve our mission. While we are a remote-first company, travel for in-person engagement is a part of almost all roles, and we require our employees to be ready and willing to take part. Frequency will depend on role and responsibilities, and may include, but is not limited to: annual department-wide offsites, team meetings, and customer/industry events.What we offerWe believe in working hard, and rewarding that hard work through our benefits. While not an exhaustive list, here is a glance at what we currently offer: Health and wellbeing👶 Maternity and parental leave top-up programs🩺 Competitive health benefits🏝 Generous PTO policy Growth and future 📈 RSU program for most employees💸 Retirement matching program🔑 Free 1Password accountCommunity 🤝 Paid volunteer days 🏆 Peer-to-peer recognition through Bonusly🌎 Remote-first work environment*Some roles in our GTM team are currently being hired for in-person hybrid work in Toronto and Austin. These roles will specify on the posting. • Our approach to remote work

Responsibilities

• Deep Vulnerability Research: Lead original research into the most complex and high-impact vulnerability classes affecting 1Password’s products and the broader identity security ecosystem. Discover novel attack surfaces, develop advanced exploit chains, and pioneer new classes of findings that expand the industry’s understanding of risk. • Deep Vulnerability Research: • Advanced Exploit Development & Attack Research: Design and develop sophisticated threat models, attack chains, and proof-of-concept exploits that demonstrate real-world risk at the highest level of complexity. Provide authoritative technical evidence that drives prioritization and remediation across 1Password’s product portfolio. • Advanced Exploit Development & Attack Research: • AI & Agentic Security Strategy: Lead research into the security implications of AI in identity systems, including prompt injection, data poisoning, adversarial attacks on AI-driven access decisions, and the systemic risks introduced by agentic architectures interacting with privileged access management (PAM); Your work will help shape 1Password’s strategic position on AI security. • AI & Agentic Security Strategy: • Technical Publications & Thought Leadership: Author high-quality research publications, white papers, blog posts, and technical advisories. Present findings through podcasts, webinars, and/or major security conferences that contribute to 1Password’s reputation as a thought leader in identity security. • Technical Publications & Thought Leadership: • Standards Leadership: Represent 1Password in standards bodies such as NIST, FIDO, and MCP at a leadership level. Your work will influence the development of identity and security standards, contributing original research and technical expertise to shape the direction of emerging protocols and frameworks. • Standards Leadership: • Research Vision & Agenda: Collaborate with leadership to define and drive the long-term technical research agenda for the Security Research team. Identify the highest-impact research opportunities across application security, cryptography, identity, access governance, and AI security; Your work will set the quality standard for all research output. • Research Vision & Agenda: • Strategic Technical Advising: Serve as a trusted technical advisor to the Director of Security Research, security leadership, and product/engineering executives. Your work will translate deep research insights into strategic recommendations that inform product roadmaps, security architecture, and wide-reaching risk decisions. • Strategic Technical Advising: • Team Elevation: Elevate the broader Product Security team through technical mentorship, rigorous research review, and knowledge sharing. Your work will reinforce cultural norms around evidence, integrity, and intellectual rigor, as well as attract top research talent. • Team Elevation:

Benefits

• We believe in working hard, and rewarding that hard work through our benefits. While not an exhaustive list, here is a glance at what we currently offer: • Health and wellbeing • 👶 Maternity and parental leave top-up programs • 🏝 Generous PTO policy • Growth and future • 📈 RSU program for most employees • 💸 Retirement matching program • 🔑 Free 1Password account • 🤝 Paid volunteer days • 🏆 Peer-to-peer recognition through Bonusly • 🌎 Remote-first work environment • Some roles in our GTM team are currently being hired for in-person hybrid work in Toronto and Austin. These roles will specify on the posting. • You belong here.

Get Started Free

No credit card. Takes 10 seconds.

Privacy·Terms··Contact·FAQ·Wagey on X