About the job
Why Join Rogo?
At Rogo, we are pioneering the development of Wall Street's first authentic AI analyst. Our goal is to empower finance professionals at prestigious investment banks, private equity firms, and investment companies with AI that offers unmatched speed, precision, and insight. We are not merely enhancing financial workflows; we are completely redefining them.
This represents a remarkable opportunity to become part of a transformative company at a crucial turning point. With a swiftly expanding client base, confirmed product-market fit, and support from top-tier investors, we are rapidly scaling and establishing a new category in enterprise AI.
Our team is composed of sharp, driven individuals who are deeply passionate about our mission. We work with intensity, take ownership of complex challenges, and maintain a relentless focus on our users. If you excel in a dynamic environment, demand high standards, and aspire to help shape the future of finance, we encourage you to consider joining us.
The Role
As a Staff Security Engineer at Rogo, you will serve as our proactive offensive security practitioner, dedicated to identifying vulnerabilities in our products before adversaries can exploit them. You will engage in comprehensive penetration testing, red team exercises, and adversarial security assessments of our AI-driven platform, APIs, and cloud infrastructure, translating those insights into engineering solutions that strengthen our product at its core.
Instead of merely gatekeeping releases through manual AppSec reviews, you will develop intelligent security automation to scale offensive testing, triage findings, and embed continuous security validation within the engineering workflow. You will collaborate with development teams not just as a reviewer but as a security engineer who contributes to the codebase, enhances our systems, and elevates the standard for what 'secure by default' means at Rogo.
Your Responsibilities
You will be Rogo's lead offensive security capability, discovering, exploiting, and rectifying vulnerabilities across our products, APIs, and infrastructure before external attackers or penetration testers can.
Perform hands-on penetration testing and red team assessments against Rogo's applications, APIs, AI/ML pipelines, and cloud environments continuously, not just during annual audits.
Create agentic security tooling that detects, validates, and repairs vulnerabilities end-to-end, minimizing manual involvement across code reviews, dependency management, and Infrastructure as Code (IaC).
Design and maintain custom offensive tooling, exploit chains, and attack simulations tailored to Rogo's AI platform and architecture.

