Tailored answers, filled into supported job forms.Your tailored resume and answers, filled into supported job forms for you to review.

Download the Chrome Extension
AI AdoptionFunded CompaniesJob SimulationCertificationsRoadmapsJobsPricing
Sign In
OneRoadmap

OneRoadmap is a career platform built around ORI, its AI career agent. ORI finds overlooked job opportunities, matches them to your profile and shows the skill gaps to close, with roadmaps, challenges, job simulations and certifications to close them. When you are ready, it prepares a tailored resume, application answers and an application strategy, with a cover letter where the application asks for one. The OneRoadmap Chrome extension fills supported application forms for you to review and submit, and you keep track of every application in one place.

gaurav.ghai@oneroadmap.in
Delhi NCR, India

Platform

  • AI Roadmaps
  • Free Certifications
  • Learning Resources
  • Pricing

Training

  • AI Adoption Workshops
  • Expert Sessions
  • Upcoming Events
  • Workshop Gallery

Company

  • About
  • Blog
  • Contact

Legal

  • Privacy
  • Terms
  • Refunds
  • Delete your data

© 2026 OneRoadmap

Operated by Ghai Technologies, India · International operations through One Roadmap Marketing Management, Dubai, UAE

Built for your next chapter.

Open roles

SOFTWARE · Research & Engineering

Member of Technical Staff, Vulnerability Management

Inferact

SeniorOn-site · San FranciscoFullTime$200K – $400K • Offers EquityListed 23h ago
Apply now

Backed by

Lightspeed India

HQ

🇮🇳 India

Open roles

32

How to stand out for Member of Technical Staff, Vulnerability Management at Inferact

Auto Match agent

Let ORI find you the best jobs.

Set up your Auto Match agent once - your target role, level and where you want to work. It searches every day, scores each opening against your profile and resume, and delivers the ones worth applying to, with a prepared application a click away.

Searches every day Scored against your profile Applications prepared for you
Sign in & set up Auto Match agent

Resume & career call

Get your resume reviewed for this role - 30-minute 1:1 call

Line-by-line resume feedback for this application, how to position your Role Readiness, and a clear plan for what to do next - with a OneRoadmap career coach.

Experience Senior · 6+ yrs

About the role

structured by ORI

OVERVIEW Inferact's mission is to grow vLLM as the world's AI inference engine and accelerate AI progress by making inference cheaper and faster. Founded by the creators and core maintainers of vLLM, we sit at the intersection of models and hardware, a position that took years to build.

What you will do

  • Develop a deep understanding of vLLM's architecture, independently investigate vulnerability reports, and turn technical findings into clear, actionable work for the core team.
  • Collaborate with vLLM maintainers, Red Hat counterparts, security firms, and researchers working with frontier AI models.
  • Drive reports from initial triage through analysis and resolution, helping coordinate fixes, security advisories, and releases under the project's established process.
  • Identify practical security best practices that strengthen vLLM as it evolves.

What they are looking for

  • Hands-on product security experience, with a strong orientation toward infrastructure software and the security of complex software systems.
  • Ability to read source code, debug unfamiliar systems, reproduce reported issues, and explain root cause and practical security impact rather than simply forward findings.
  • Strong systems reasoning, including the ability to understand architecture, trust boundaries, deployment assumptions, and how different software components interact.
  • Ability to learn vLLM's core architecture and independently manage vulnerability investigations while bringing in maintainers where their expertise is needed.
  • Sound prioritization and risk-assessment judgment, with clear documentation of evidence, affected behavior, remediation needs, and next steps.
  • Strong written and verbal communication, discretion with sensitive reports, and the ability to work constructively with engineers, researchers, and external security collaborators.

Nice to have

  • Experience with vulnerability management and security best practices for open-source infrastructure software.
  • Experience coordinating vulnerability resolution across reporters, maintainers, security teams, and software releases.
  • Familiarity with vLLM, inference engines, ML infrastructure, or similarly complex distributed software; prior vLLM contributions are helpful but not required.
  • Experience preparing security advisories, assessing affected versions, and working with CVE and coordinated-disclosure workflows.
  • Experience translating security findings into practical architecture reviews, regression tests, secure development practices, or deployment guidance.
  • Helped resolve vulnerabilities in an open-source infrastructure project and can explain your technical contribution and coordination with maintainers.
  • Built security tooling or automation that improved investigation quality or reduced repetitive triage work.
  • Turned recurring vulnerability patterns into maintainable fixes, tests, or documentation that helped prevent similar issues.

Benefits

  • Equity
vulnerability managementproduct securityinfrastructure softwaresource code readingdebuggingsystems reasoningrisk assessmentvulnerability investigationvLLMCVE
Full posting text

OVERVIEW Inferact's mission is to grow vLLM as the world's AI inference engine and accelerate AI progress by making inference cheaper and faster. Founded by the creators and core maintainers of vLLM, we sit at the intersection of models and hardware, a position that took years to build. ABOUT THE ROLE We're looking for a Member of Technical Staff, Vulnerability Management to own Inferact's side of vLLM's vulnerability-management process and help keep a critical piece of AI infrastructure secure and production-grade. You'll develop a deep understanding of vLLM's architecture, independently investigate vulnerability reports, and turn technical findings into clear, actionable work for the core team. Working primarily in open source, you'll collaborate with vLLM maintainers, Red Hat counterparts, security firms, and researchers working with frontier AI models. You'll drive reports from initial triage through analysis and resolution, helping coordinate fixes, security advisories, and releases under the project's established process. You'll also identify practical security best practices that strengthen vLLM as it evolves. This is a hands-on product security role that combines technical investigation, sound judgment, and ownership of follow-through. vLLM's vulnerability-management process https://docs.vllm.ai/en/latest/contributing/vulnerability_management/ SKILLS AND QUALIFICATIONS Minimum qualifications: - Hands-on product security experience, with a strong orientation toward infrastructure software and the security of complex software systems. - Ability to read source code, debug unfamiliar systems, reproduce reported issues, and explain root cause and practical security impact rather than simply forward findings. - Strong systems reasoning, including the ability to understand architecture, trust boundaries, deployment assumptions, and how different software components interact. - Ability to learn vLLM's core architecture and independently manage vulnerability investigations while bringing in maintainers where their expertise is needed. - Sound prioritization and risk-assessment judgment, with clear documentation of evidence, affected behavior, remediation needs, and next steps. - Strong written and verbal communication, discretion with sensitive reports, and the ability to work constructively with engineers, researchers, and external security collaborators. Preferred qualifications: - Experience with vulnerability management and security best practices for open-source infrastructure software. - Experience coordinating vulnerability resolution across reporters, maintainers, security teams, and software releases. - Familiarity with vLLM, inference engines, ML infrastructure, or similarly complex distributed software; prior vLLM contributions are helpful but not required. - Experience preparing security advisories, assessing affected versions, and working with CVE and coordinated-disclosure workflows. - Experience translating security findings into practical architecture reviews, regression tests, secure development practices, or deployment guidance. Bonus points if you have: - Helped resolve vulnerabilities in an open-source infrastructure project and can explain your technical contribution and coordination with maintainers. - Built security tooling or automation that improved investigation quality or reduced repetitive triage work. - Turned recurring vulnerability patterns into maintainable fixes, tests, or documentation that helped prevent similar issues. LOGISTICS - Location: This role is based in San Francisco, California. Will consider remote in the US for exceptional candidates. - Compensation: Depending on background, skills, and experience, the expected annual salary range for this position is $200,000 - $400,000 USD + equity. - Visa sponsorship: We sponsor visas on a case-by-case basis. - Benefits: Applicable benefits will be confirmed based on the final role location.

Apply on company site

Meet Ori - your career agent on WhatsApp

Find jobs, get your roadmap, check if you're ready for a role and prepare applications - in chat, any language.

Ask Ori about this role
Checking your fit…
Inferact

India

Backed by Lightspeed India

Company pageWebsite

More at Inferact

InferactResearch & EngineeringFunded

On-site · San Francisco

Senior · $200K – $400K • Offers Equity · 1d ago

Member of Technical Staff, Forward Deployed Engineer
PythonGoTypeScript+13 more
View role
InferactResearch & EngineeringFunded

On-site · Singapore

Senior · 5+ yrs · SGD 200K – SGD 400K • Offers Equity · 9d ago

Member of Technical Staff, Cluster Administration
LinuxShell Scripting+13 more
View role
InferactResearch & EngineeringFunded

On-site · San Francisco

Senior · 5+ yrs · $200K – $400K • Offers Equity · 10d ago

Member of Technical Staff, Production Site Reliability Engineer
PythonGoBash+9 more
View role
InferactResearch & EngineeringFunded

On-site · San Francisco

Fresher · 17d ago

Inference Engineering, Co-op
PythonC++Rust+13 more
View role
Apply