Appviewx
Senior AI Security Researcher
Bangalore
Apply through hirly
hirly scores this role against your resume, shows its reasoning, then writes a resume and cover letter for it and fills the application with you. Free to start — no card required.
hirly's read of this role
- Seniority
- Senior
- Country
- IN
- Work mode
- On-site / unstated
- First seen by hirly
- 3 Sept 2026
Derived automatically from the posting. Sign up to see how the role scores against your own resume.
the posting
Job Title: Senior AI Security Researcher - Agent Identity Security (AIS)
Location: Bangalore, Coimbatore
Experience: 4+ years
AppViewX is the only machine and agent identity security company built for the AI and quantum era, bringing together discovery, automation, control, and intelligence. The AVX Platform helps enterprises reduce risk by providing complete visibility and governance over every machine and AI agent identity, automating their lifecycle, controlling their access, and proving compliance at the speed business demands. Trusted by global enterprises across financial services, healthcare, and technology, AppViewX is recognized as a leader in the IDC 2026 MarketScape for Certificate Lifecycle Management and KuppingerCole’s 2025 Non-Human Identity Management Leadership Compass. For more information, users can visit appviewx.com.
Our Values:
Our values define how we work, make decisions, and deliver for our customers and each other. Some reflect strengths deeply engrained in how we work. Others represent the standards we are committed to building together.
We Do What We Say: We own our commitments, communicate honestly about progress, and measure success by results, not activity.
We Are Trusted Experts: We continuously build our expertise, offer candid guidance, and focus on the outcomes our customers and colleagues need.
We Raise the Bar: We stay curious, challenge the status quo, take smart risks, and turn better ideas into meaningful results.
We Win Together: We share information, debate openly, commit together, and recognize that our success is connected to the success of our customers and teammates.
If these values reflect how you want to work and contribute, you will find an opportunity to make a meaningful impact at AppViewX.
Role Overview
We are looking for an experienced AI Security Researcher to lead deep technical research for the Agent Identity Security (AIS) platform.
This research-focused role continuously explores the evolving AI and Agentic AI security landscape and translates findings into actionable security intelligence, prototypes, technical recommendations, and thought leadership for AIS.
The researcher will focus on AI agents, Agentic AI frameworks, MCP and emerging agent protocols, LLM security, AI identity, tool security, AI supply-chain risks, prompt and context security, and AI governance standards. The role will also continuously evaluate competitive products and emerging technologies to identify new threats, capabilities, and opportunities relevant to AIS.
A critical responsibility of this position is to serve as an independent security research function for AIS, continuously challenging the platform architecture, integrations, gateways, policy enforcement mechanisms, and agent interactions to ensure AIS remains secure as the AI ecosystem evolves.
The ideal candidate combines a strong security research mindset with hands-on technical ability and can move from research → threat hypothesis → experimentation → PoC → security recommendation → product influence → publication.
What will you be responsible for?
Lead AI Security Research: Conduct continuous research into emerging threats across LLMs, AI agents, autonomous systems, Agentic AI platforms, MCP servers, AI tools, models, AI gateways, and AI development environments.
Research Agentic AI Attack Surfaces: Identify and analyze vulnerabilities involving prompt injection, indirect prompt injection, tool poisoning, excessive agency, insecure tool execution, privilege escalation, credential exposure, data exfiltration, memory poisoning, context manipulation, agent impersonation, and cross-agent attacks.
Research AI Identity Security: Investigate security challenges associated with human-to-agent, agent-to-agent, agent-to-tool, agent-to-MCP-server, and agent-to-model identities, including authentication, authorization, delegation, impersonation, credential management, and non-human identities.
Evaluate Emerging AI Protocols: Research new protocols and standards supporting AI and autonomous agents, including Model Context Protocol (MCP), Agent-to-Agent (A2A) protocols, agent communication standards, tool protocols, identity standards, and emerging interoperability frameworks.
Build Research PoCs: Develop working proof-of-concepts for emerging AI protocols, frameworks, security controls, attack techniques, and defensive mechanisms to validate their relevance to AIS.
Perform Adversarial Security Research: Build controlled attack scenarios against AI agents, MCP servers, tools, models, and gateways to understand realistic attack paths and determine how AIS should detect, prevent, or govern them.
Continuously Test AIS Security: Independently evaluate AIS architecture, APIs, agent integrations, MCP Gateway, policy enforcement, hooks, SDKs, credentials, authentication flows, and other security-sensitive components for potential weaknesses.
Drive Security-by-Research for AIS: Identify security gaps before they become customer or production risks and provide engineering teams with clear technical findings, attack scenarios, severity assessments, and recommended mitigations.
Perform Competitive Security Analysis: Continuously research competing and adjacent products across AI security, AI governance, AI-SPM, MCP security, identity security, cloud security, and Agentic AI security.
Maintain Competitive Intelligence: Compare competitor capabilities, architectures, security approaches, integrations, research publications, patents, product releases, and positioning against AIS and identify opportunities for technical differentiation.
Track Emerging Threats: Monitor security research, vulnerabilities, CVEs, attack techniques, academic publications, security conferences, open-source projects, and industry developments relevant to AI and Agentic AI.
Research AI Security Standards: Track and evaluate standards and frameworks including OWASP Top 10 for LLM Applications, OWASP Agentic AI guidance, MITRE ATLAS, NIST AI RMF, ISO/IEC 42001, AIUC-1, and other emerging AI security and governance standards.
Map Research to AIS Capabilities: Translate newly identified attack techniques and security risks into potential AIS posture checks, policies, detections, risk indicators, compliance mappings, and security controls.
Create White Papers: Author technically rigorous white papers covering AI security threats, Agentic AI security, MCP security, AI identity, governance, emerging protocols, attack techniques, and AIS security approaches.
Publish Technical Research: Produce security advisories, technical blogs, research reports, attack demonstrations, architecture recommendations, and other technical thought-leadership content.
Develop Threat Models: Create and continuously evolve threat models for AI agents, MCP ecosystems, AI gateways, models, tools, credentials, memory systems, RAG pipelines, and autonomous workflows.
Create AI Security Taxonomies: Develop reusable classifications for Agentic AI threats, attack techniques, vulnerabilities, identities, security controls, and defensive mechanisms.
Collaborate with Engineering and Product: Present research findings to architects, engineering teams, security teams, and product management and help translate validated research into future AIS capabilities.
Support Customer Security Discussions: Provide deep technical expertise for strategic customer discussions, security workshops, research briefings, and complex questions around AI and Agentic AI security.
Represent AIS Research: Contribute to external technical communities through research papers, responsible disclosures, standards discussions, conference submissions, technical demonstrations, and open-source initiatives where appropriate.
What do we require?
4+ years of cybersecurity experience, with significant experience in security research, application security, cloud security, offensive security, identity
Is this role actually a fit for you?
hirly answers with a score and its reasoning, then writes the resume and cover letter if you decide to go for it.
Score it against my resume