Head of Vulnerability Disclosure & Security Community
Anthropic · New York City, NY; Remote-Friendly (Travel-Required) | San Francisco, CA | Washington, DC
About this role
**Head of Vulnerability Disclosure & Security Community** **About Anthropic** Anthropic’s mission is to create reliable, interpretable, and steerable AI systems—safe and beneficial for users and society. **About the role** Own Anthropic’s coordinated vulnerability disclosure program and CVE Numbering Authority (CNA) end-to-end, including the public coordinated-disclosure jailbreak program. Set disclosure policy and timelines, serve as the public face of disclosure work, and help shape how the industry handles model-level vulnerabilities. Your findings inform model-release decisions, working closely with the Senior Cyber Policy Lead. **Key responsibilities** - Own and operate Anthropic’s public coordinated-disclosure jailbreak program end-to-end - Lead Anthropic’s CVE Numbering Authority (CNA) function for vulnerability disclosure (including open-source contexts) - Build and maintain partnerships with external security researchers and threat-intelligence organizations - Represent Anthropic at security conferences and within the vulnerability-research community - Stay aligned with vulnerability-database ecosystems and industry norms - Lead external technical engagement on cyber safety topics, including public/community-facing communication - Collaborate with the Senior Cyber Policy Lead so disclosure findings inform evaluations and policy - Build the function: hire/mentor a future analyst and implement tooling + AI-assisted triage to scale **Minimum qualifications** - Experience operating or participating in a coordinated vulnerability disclosure program - Experience coordinating multi-party disclosures (researchers, vendors, open-source maintainers) - Experience managing a disclosure queue with defined triage and response timelines - Experience handling sensitive/embargoed vulnerability information, including TLP-marked material **Preferred qualifications** - Experience running/working inside a PSIRT - Experience coordinating disclosures involving government parties - Track record of authoring CVEs or vulnerability disclosures - Experience presenting original research at security conferences - Experience operating/supporting a CNA (internally or on behalf of third parties) - Experience incorporating AI into coordinated vulnerability disclosure or CNA processes (e.g., automated triage/severity/report handling) - Experience operating/scaling a bug bounty program via a commercial platform - Established relationships across the disclosure coordination community **Compensation** Annual Salary: **$330,000 – $395,000 USD** **Logistics** - **Minimum education:** Bachelor’s degree (or equivalent combination of education, training, and/or experience) - **Required field of study:** Relevant to the role (via coursework, training, or professional experience) - **Minimum years of experience:** Correlates with internal job level - **Location-based hybrid policy:** In one of our offices at least **25%** of the time (some roles may require more) - **Visa sponsorship:** We sponsor visas, but not for every role/candidate; if offered, we’ll make reasonable efforts and retain an immigration lawyer to help **How we’re different** We value high-impact, collaborative “big science” AI research and strong communication skills. **Apply / Safety note** Anthropic recruiters only contact candidates from **@anthropic.com** (or vetted recruiting agencies that identify themselves). Legitimate recruiters will never ask for money/fees/banking information before y
Listing freshness
CronJobs last confirmed this listing 19h ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.