At a Glance
- Tasks: Train AI systems to identify and exploit security weaknesses ethically.
- Company: Mindrift innovates AI through collaborative projects with domain experts.
- Benefits: Enjoy flexible, remote work while enhancing your portfolio and making an impact.
- Why this job: Join a community-focused team and contribute to exciting AI advancements.
- Qualifications: Strong Linux skills, web security knowledge, and cloud security expertise required.
- Other info: Fully remote freelance role; just need a laptop and internet!
The predicted salary is between 30000 - 42000 £ per year.
About The Company
At Mindrift, innovation meets opportunity. We believe in using the power of collective intelligence to ethically shape the future of AI. Our goal? Advance the field of artificial intelligence through collaborative Generative AI projects with domain experts. The Mindrift platform allows experts to dive into a variety of tasks ranging from creating training prompts for AI models to refining AI responses for better relevance.
About The Role
Generative AI models are improving very quickly, and one of our goals is to make them capable of addressing specialized questions and achieving complex reasoning skills. In this role, you will use your skills to train AI systems to identify and exploit security weaknesses in a controlled and ethical manner. Your role will involve designing and executing a code injection attack to identify vulnerabilities in an AI-powered computer agent. You will receive an onboarding session and sample documentation to guide you through the process. In practice, this means working with Docker containers, writing Bash and Python scripts, modifying HTML files, crafting malicious Linux commands, etc.
Requirements
- Strong Linux administration and automation skills (Bash, Python, PowerShell).
- Experience with web security (HTTP, API security, web scraping, DOM manipulation).
- Knowledge of AI security risks, including prompt injection, adversarial attacks, and AI red teaming.
- Deep understanding of networking protocols, OS security, and web application security.
- Cloud security expertise (AWS, Azure, Kubernetes, Terraform, CI/CD security).
- Proficiency in English: advanced (C1) or above.
- Excellent analytical and problem-solving skills.
- Strong communication skills for reporting findings and collaborating with teams.
Our freelance role is fully remote so, you just need a laptop, internet connection, time available and enthusiasm to take on a challenge.
Preferred Skills
- Hands-on experience with penetration testing tools (Metasploit, Burp Suite, Nessus, Nmap).
- Experience in AI red teaming, adversarial ML, LLM security testing.
- Knowledge of OWASP Top Ten, MITRE ATT&CK, and other security frameworks.
- Relevant security certifications (OSCP, CEH, CISSP, OSWE, API Security Architect).
- Experience in automating security tasks, securing DevOps workflows, and integrating security into CI/CD pipelines.
Benefits
- Take part in a part-time, remote, freelance project that works with your schedule and commitments.
- Be part of an exciting AI project.
- Enrich your portfolio with new experience.
- Make a tangible impact on the quality of AI.
Seniority level: Entry level
Employment type: Part-time
Job function: Engineering and Information Technology
Industries: IT Services and IT Consulting
SRE - Freelance Security & Automation Engineer (Pentesting Focus) employer: Mindrift
Contact Detail:
Mindrift Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land SRE - Freelance Security & Automation Engineer (Pentesting Focus)
✨Tip Number 1
Familiarise yourself with the latest trends in AI security and pentesting. Follow relevant blogs, forums, and social media channels to stay updated on new vulnerabilities and tools that are being developed in this fast-paced field.
✨Tip Number 2
Network with professionals in the AI and cybersecurity communities. Attend webinars, workshops, or local meetups to connect with others who share your interests. This can lead to valuable insights and potential referrals for freelance opportunities.
✨Tip Number 3
Showcase your skills through personal projects or contributions to open-source initiatives. Create a portfolio that highlights your experience with penetration testing tools and automation scripts, as this will demonstrate your practical abilities to potential employers.
✨Tip Number 4
Prepare for interviews by practising common technical questions related to web security and AI vulnerabilities. Be ready to discuss your problem-solving approach and how you would handle specific scenarios, as this will help you stand out during the selection process.
We think you need these skills to ace SRE - Freelance Security & Automation Engineer (Pentesting Focus)
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your relevant skills and experiences related to Linux administration, automation, and web security. Use keywords from the job description to demonstrate that you meet the requirements.
Craft a Strong Cover Letter: In your cover letter, express your enthusiasm for the role and the company. Mention specific projects or experiences that showcase your skills in penetration testing and AI security, and explain why you're a good fit for Mindrift.
Showcase Relevant Projects: If you have worked on any projects involving penetration testing tools or AI security, be sure to include them in your application. Describe your role and the impact of your contributions to highlight your practical experience.
Proofread Your Application: Before submitting, carefully proofread your CV and cover letter for any spelling or grammatical errors. A polished application reflects your attention to detail and professionalism, which is crucial for a technical role.
How to prepare for a job interview at Mindrift
✨Showcase Your Technical Skills
Be prepared to discuss your experience with Linux administration, automation, and scripting languages like Bash and Python. Highlight specific projects where you've successfully identified and exploited security vulnerabilities.
✨Demonstrate Knowledge of Security Frameworks
Familiarise yourself with OWASP Top Ten and MITRE ATT&CK frameworks. Be ready to explain how these frameworks apply to the role and share any relevant experiences you have in using them.
✨Prepare for Scenario-Based Questions
Expect questions that assess your problem-solving skills in real-world scenarios. Practice articulating your thought process when designing and executing a code injection attack or addressing AI security risks.
✨Communicate Clearly and Effectively
Strong communication skills are essential for reporting findings and collaborating with teams. Practice explaining complex technical concepts in simple terms, as this will demonstrate your ability to work well with others.