Role Title: InfoSec Expert
Role Type: Contractor
Location: Remote
micro1 is engaging InfoSec Experts to contribute to a high-impact project for one of our customers in the enterprise SaaS space. In this role, you'll apply your expertise to help train next-generation AI systems. Your work will shape how models learn, reason, and perform through high-quality, real-world input.
No prior experience in AI is required — your domain knowledge is what matters.
Scope of Work
• Design and define comprehensive red-teaming workflows and adversarial scenarios targeting SaaS and cloud-based environments.
• Conduct hands-on penetration testing and adversarial threat modeling across platforms such as Microsoft 365, Google Workspace, Slack, GitHub, and Snowflake.
• Act as a senior reviewer, critically evaluating the quality and depth of red-teaming exercises and deliverables.
• Identify and document potential vectors for misuse or manipulation of AI agents, including prompt injection, privilege escalation, data exfiltration, and destructive actions.
• Contribute practical insights for developing and vetting security controls, policies, and detection strategies relevant to real-world SaaS environments.
• Collaborate with other cybersecurity professionals, providing detailed written and verbal feedback on findings and improvements.
• Support benchmarking initiatives by creating adversarial scenarios that reflect contemporary threats and attack methodologies.
Preferred
Qualifications
• Extensive hands-on experience in security domains such as red teaming, penetration testing, application/cloud security, or security engineering.
• Deep understanding of enterprise SaaS security concepts including identity, RBAC/permissions, and data governance.
• Direct familiarity with Microsoft 365, Google Workspace, Slack, GitHub, and Snowflake from a security evaluation perspective.
• Demonstrated ability to think adversarially about how AI and SaaS platforms could be exploited or compromised.
• Strong written and verbal communication skills, enabling clear articulation of complex security issues and recommended remediations.
• Proven track record of practical, real-world impact in security projects—beyond simply listing experience on a resume.
• Bonus: Prior experience in AI/LLM security or adversarial testing of agent-based systems.
Originally posted on Himalayas