Most security programs answer whether a company appears compliant. GhostEye answers a harder question: could a real attacker get in today?
Our founder previously led red-team operations at BlackRock and conducted offensive cyber operations at MITRE. Through that work, he saw how quickly adversaries adapt and how often traditional security programs fail to test the complete attack chain, particularly when the initial access vector is a person.
GhostEye was built to close that gap. We are building the always-on red team for modern enterprises. Our platform emulates the attacks adversaries use today, including help-desk vishing, deepfaked executives, MFA fatigue, identity compromise, and the technical payloads that follow.
We identify what is actually exploitable, help customers close the gaps, and retest until the fixes hold. Our team brings together offensive-security research, AI, and engineering to turn real attacker tradecraft into repeatable security validation.
GhostEye’s product is only as good as the attacks it can emulate.
As our Lead Security Researcher, you will study how real adversaries move from human manipulation to technical compromise. Your research will span phishing, vishing, smishing, pretexting, deepfakes, penetration testing, identity attacks, endpoint tradecraft, and EDR evasion.
You will spearhead GhostEye’s attack-simulation platform and lead the engineers responsible for turning offensive research into product capabilities. This is a hands-on, player-coach role. You will set technical direction, conduct research, build tooling, review implementation, and remain accountable for what the team ships.
You will translate attacker tactics, techniques, and procedures into safe, repeatable simulations that test whether an organization’s people and security controls can withstand a real attack. This includes understanding what happens after someone clicks, shares credentials, approves an MFA request, or grants an attacker access to an endpoint.
All research and testing is conducted in authorized environments for defensive purposes.
By day 30:
By day 60:
By day 90:
We care more about demonstrated technical ability than credentials or a specific number of years. Strong evidence can come from professional work, independent research, open-source tooling, lab projects, technical write-ups, CTFs, CVEs, or responsible disclosures.
Public research is not required when professional work provides strong evidence of technical depth. We understand that offensive-security work is often confidential.
Your always-on red team.
Salary
$150,000 - $250,000
Equity
0.5% - 1.5%
Location
New York, NY
Experience
3+ years
Last stage
Seed
Investors
No applications, no recruiter spam. Just the intro.
A few questions to make sure this role is the right shape for you. Two minutes.
I write the intro, send it to the founder, and handle the back-and-forth.
If they’re a yes, I book the chat. You show up — that’s the whole job-hunt.