Head of Vulnerability Disclosure & Security Community
Menlo Ventures PortfolioSan Francisco, CA | New York City, NY | Washington, DC · full time · Senior
$330,000 – $395,000
Listed on Menlo Ventures Portfolio’s own careers site. You apply with them directly — we never stand between you and the employer.
What this role is
Lead vulnerability disclosure and CVE management for an AI safety company, setting policy, coordinating with security researchers and threat intelligence partners, and shaping how the industry handles model vulnerabilities. This role suits security professionals with hands-on experience running coordinated disclosure programs who want to influence AI safety practices at scale.
Our summary, not Menlo Ventures Portfolio’s wording. The full posting is on their site.
What they ask for
Required
- Experience operating or participating in a coordinated vulnerability disclosure program
- Experience coordinating multi-party disclosures involving researchers, vendors, and open-source maintainers
- Experience managing a disclosure queue with defined triage and response timelines
- Experience handling sensitive or embargoed vulnerability information including TLP-marked material
- Bachelor's degree or equivalent combination of education, training, and/or experience
Nice to have
- Experience running or working inside a PSIRT
- Experience coordinating disclosures involving government parties
- Track record of authoring CVEs or vulnerability disclosures
- Experience presenting original research at security conferences
- Experience operating or supporting a CNA internally or on behalf of third parties
- Experience incorporating artificial intelligence into vulnerability disclosure or CNA processes such as automated triage or severity assessment
- Experience operating or scaling a bug bounty program through a commercial platform
- Established relationships across the disclosure coordination community