We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

TLM, Codex Security

OpenAI
$490K - $515K
medical insurance, dental insurance, vision insurance, parental leave, paid time off, paid holidays, 401(k), retirement plan
United States, California, San Francisco
Mar 12, 2026

About the Team:

Security is at the foundation of OpenAI's mission to ensure that artificial general intelligence benefits all of humanity.

Codex Security is OpenAI's first security agent, built to scan source code repositories, validate real vulnerabilities, and integrate with Codex to help generate fixes.

About the Role:

We're looking for a Technical Lead Manager (TLM) to lead the Codex Security team. In this role, you will own the technical direction of the product, lead a team of engineers and researchers building agentic security systems, and work closely with customers adopting Codex security.

This role blends technical leadership, product thinking, and security expertise. You'll guide the development of AI-driven security research capabilities while ensuring the system delivers real value to organizations securing large-scale codebases.

What you'll do:

  • Lead and grow a team building Codex Security, OpenAI's agentic security researcher.

  • Set the technical direction for systems that analyze large codebases, surfacing higher-confidence findings and automatically generate fixes.

  • Design architectures for agent-based security workflows combining LLM reasoning, source code analysis, and developer tooling.

  • Work closely with product, research, and GTM teams to shape Codex Security's roadmap and enterprise adoption.

  • Partner with enterprise customers to understand real-world security challenges and ensure Codex Security solves them effectively.

  • Drive high engineering standards across reliability, security, and performance.

  • Translate advances in AI agents into practical tools for developers and security teams.

You may thrive if you:

  • Have led engineering teams building complex technical systems, ideally in security, developer tooling, or AI.

  • Have strong technical depth in software engineering, distributed systems, or application security.

  • Are comfortable working across product, research, and customer-facing workstreams.

  • Enjoy translating ambiguous problems into concrete technical systems.

  • Are excited about applying AI agents to real-world security problems.

  • Can balance long-term technical vision with rapid iteration on a product used by customers.

  • Communicate clearly with both engineers and enterprise stakeholders.

Goals & impact

  • Development of high-confidence vulnerability discovery and automated patch generation system across millions of repos, significantly reducing false positives and enabling engineering teams to ship secure code faster while minimizing triage overhead

  • Outcomes include: more resilient AI architectures, reduced exploit windows, and better-targeted security R&D investments across enterprises and consumers

Key technical challenges

  • High-precision security detection at scale: Designing pipelines that scan millions of commits while maintaining a high signal-to-noise ratio-minimizing false positives and over-reported severity while still catching rare but critical vulnerabilities.

  • Context-aware threat modeling: Automatically constructing and evolving project-specific threat models that capture system trust boundaries, assets, and attack surfaces, and using them to guide vulnerability discovery and prioritization.

  • Automated vulnerability validation: Building sandboxed environments and validation workflows that can reproduce and pressure-test potential vulnerabilities to distinguish real exploits from speculative findings.

  • Automated patch generation with minimal regressions: Generating secure, context-aware code fixes that align with system intent and surrounding logic, ensuring patches improve security without breaking functionality.

  • Operating large-scale security agents: Running agentic security workflows across millions of commits and repositories while maintaining reliability, performance, and cost efficiency.

  • Human-AI security collaboration: Designing feedback loops where developer input (e.g., severity adjustments and triage decisions) continuously improves the system's detection accuracy and prioritization.

About OpenAI

OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity.

We are an equal opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other applicable legally protected characteristic.

For additional information, please see OpenAI's Affirmative Action and Equal Employment Opportunity Policy Statement.

Background checks for applicants will be administered in accordance with applicable law, and qualified applicants with arrest or conviction records will be considered for employment consistent with those laws, including the San Francisco Fair Chance Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act, for US-based candidates. For unincorporated Los Angeles County workers: we reasonably believe that criminal history may have a direct, adverse and negative relationship with the following job duties, potentially resulting in the withdrawal of a conditional offer of employment: protect computer hardware entrusted to you from theft, loss or damage; return all computer hardware in your possession (including the data contained therein) upon termination of employment or end of assignment; and maintain the confidentiality of proprietary, confidential, and non-public information. In addition, job duties require access to secure and protected information technology systems and related data security obligations.

To notify OpenAI that you believe this job posting is non-compliant, please submit a report through this form. No response will be provided to inquiries unrelated to job posting compliance.

We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made via this link.

OpenAI Global Applicant Privacy Policy

At OpenAI, we believe artificial intelligence has the potential to help people solve immense global challenges, and we want the upside of AI to be widely shared. Join us in shaping the future of technology.

Compensation Range: $490K - $515K

Applied = 0

(web-6bcf49d48d-j4skk)