# Developer Experience Engineer, Cyber
**Company:** [OpenAI](https://scaleengineer.com/companies/openai)
As a Developer Experience Engineer specializing in Cyber at OpenAI, you will create technical content, developer tools, and sample applications that empower developers and security teams to build and secure software using OpenAI's AI models and cybersecurity capabilities. This role combines strong software engineering skills with developer advocacy, requiring hands-on expertise in AI model integration, application security, and technical content creation. You will own projects end-to-end, from prototype to production, collaborating with product, engineering, and security teams to make secure development workflows seamless and accessible to developers globally.
**Role:** Developer Experience Engineer
**Seniority:** Mid
**Locations:** San Francisco
**Salary:** 198000–335000 USD
[Apply](https://jobs.ashbyhq.com/openai/708121e8-51ac-4a24-a2ff-bd9889ba5486)
Canonical: https://scaleengineer.com/jobs/openai/developer-experience-engineer-cyber
---
## Responsibilities

- Build Demos and Sample Applications: Develop interactive demos, sample applications, and developer tools that demonstrate practical implementations of Codex, OpenAI APIs, and Cyber security products. Create runnable examples that showcase secure software development workflows, vulnerability management, and AI-assisted defensive security practices that developers can immediately understand and adapt for their own projects.
- Create Developer-Focused Technical Content: Produce comprehensive tutorials, technical blog posts, video guides, and code samples that explain security findings, vulnerability validation, code review processes, and fix verification. Ensure content is accessible to developers at varying skill levels while maintaining technical accuracy and providing clear guidance on evidence, model limitations, and validation approaches.
- Develop Reference Integrations: Build and maintain reference integrations connecting AI-assisted security workflows to source control systems, code review tools, and continuous integration pipelines. Create templates and guides that help development teams transition from initial setup through repeatable, production-ready security workflows integrated into their existing development processes.
- Ensure Security Best Practices in Examples: Implement and demonstrate sound security practices across all tooling, documentation, and sample code, including proper permissions management, secure credential handling, protection of sensitive code and data, human review of agent actions, and clear documentation of security considerations. Serve as a model for secure development practices that practitioners can trust and emulate.
- Collaborate with Security and Engineering Teams: Partner closely with Cyber engineers, security researchers, product managers, and engineering teams to ensure technical accuracy of examples, validate security findings, and maintain alignment between developer-facing content and underlying product capabilities. Provide feedback on product usability and suggest improvements based on developer needs and use case research.
- Community Engagement and Developer Advocacy: Engage directly with developers and security practitioners through workshops, technical events, online communities, and conference presentations. Serve as an approachable technical resource, answer practitioner questions, gather feedback on friction points, and advocate for developer and security team needs within OpenAI's product and engineering organizations.
- Gather and Synthesize Practitioner Feedback: Actively collect feedback from developers, security teams, and technical users through direct engagement, community interactions, and usage analytics. Synthesize insights to identify friction in the developer journey, inform product priorities, and drive improvements from onboarding through everyday production use of OpenAI's developer and security products.
- Contribute to Developer-Facing Infrastructure: Directly contribute to developer documentation, API interfaces, command-line tools, and support systems. Work across product, engineering, and go-to-market teams to ensure seamless user adoption, maintain high-quality documentation, resolve usability issues, and continuously improve the overall developer experience with OpenAI's platform and security capabilities.

## Requirements

### education

- {"name":"Computer Science or Related Degree","description":"Bachelor's degree in Computer Science, Software Engineering, Information Security, or related technical field is preferred, though equivalent professional experience demonstrating strong engineering fundamentals is equally valued. Focus on foundational concepts in algorithms, systems design, and software architecture."}
- {"name":"Security Certifications (Optional)","description":"Professional security certifications such as CISSP, CEH, OSCP, or similar are not required but may be valuable evidence of cybersecurity expertise. Alternatively, demonstrate security knowledge through published work, GitHub repositories, CTF participation, or security-focused projects and contributions."}

### technical

- {"name":"Software Engineering Fundamentals","description":"Strong foundation in software engineering principles, design patterns, and best practices. Proven ability to architect, develop, and ship production-quality software systems. Experience building scalable, maintainable code that serves as a reference implementation for technical users."}
- {"name":"AI Model Integration and APIs","description":"Hands-on experience building applications with large language models, APIs, and agentic workflows. Deep familiarity with prompt engineering, API design, rate limiting, error handling, and translating experimental prototypes into reliable, production-grade systems. Understanding of model capabilities, limitations, and responsible deployment practices."}
- {"name":"Application Security and DevSecOps","description":"Solid understanding of application security concepts including vulnerability management, secure development practices, threat modeling, and secure code review. Experience with security tooling, SAST/DAST scanners, dependency management, and integration of security into CI/CD pipelines. Knowledge of common vulnerability types and remediation approaches."}
- {"name":"Developer Tools and CLIs","description":"Experience designing and building developer-friendly tools, command-line interfaces, SDKs, or libraries. Understanding of ergonomic API design, comprehensive error messaging, helpful documentation, and how to reduce friction for technical users. Ability to think about developer experience at every stage of tool design."}
- {"name":"Technical Content Creation","description":"Demonstrated ability to create high-quality technical content through writing, code examples, and video. Skill in explaining complex concepts clearly to technical audiences, structuring tutorials progressively, and building content that drives understanding and action. Portfolio of blog posts, documentation, or educational content demonstrating clarity and technical depth."}

### experience

- {"name":"Shipping Software for Technical Users","description":"Track record of building and shipping useful software, developer tools, or products specifically designed for technical audiences. Experience understanding developer needs, iterating based on feedback, and shipping features that solve real problems. Demonstrated ability to move from conception through launch and ongoing maintenance of user-facing products."}
- {"name":"End-to-End Project Ownership","description":"Experience owning ambiguous, complex projects from initial exploration and prototyping through production release and post-launch iteration. Comfort with making tradeoff decisions, managing ambiguity, learning unfamiliar domains rapidly, and adapting as requirements and user needs evolve. Track record of delivering impact in dynamic environments."}
- {"name":"Cross-Functional Collaboration","description":"Proven ability to collaborate effectively across engineering, product management, design, security, and technical user communities. Experience gathering requirements from diverse stakeholders, synthesizing feedback, and making thoughtful decisions balancing usability, security, performance, and correctness. Strong communication skills across technical and non-technical audiences."}
- {"name":"Security or Infrastructure Domain Expertise","description":"Professional experience in application security, vulnerability management, secure development workflows, security operations, or infrastructure/DevOps roles. Understanding of security team workflows, threat landscapes, and how developers integrate security into daily work. Familiarity with the tools and practices that security teams depend on."}

## Skills

### required

- {"name":"Python","description":"Production-level Python proficiency for building applications, tools, and sample code. Experience with modern Python practices, virtual environments, packaging, and integration with external APIs. Ability to write clear, well-documented Python that serves as reference code for developers."}
- {"name":"JavaScript/TypeScript","description":"Strong JavaScript and preferably TypeScript skills for building web-based demos, Node.js applications, and interactive examples. Understanding of async patterns, Promise handling, and modern JavaScript tooling. Experience with popular frameworks and libraries in the JavaScript ecosystem."}
- {"name":"API Design and REST","description":"Deep understanding of REST API design principles, HTTP protocols, request/response patterns, authentication mechanisms, and rate limiting. Experience designing intuitive APIs, writing clear API documentation, and building SDKs. Familiarity with OpenAPI/Swagger specifications."}
- {"name":"Git and Version Control","description":"Proficiency with Git, branching strategies, and collaborative development workflows. Experience with GitHub or GitLab, including pull request workflows, code review, and CI/CD integration. Ability to organize code repositories in ways that are accessible and educational for other developers."}
- {"name":"Cloud Platforms and Deployment","description":"Hands-on experience deploying and managing applications on cloud platforms such as AWS, Google Cloud, or Azure. Understanding of containerization with Docker, orchestration concepts, and serverless architectures. Ability to write infrastructure-as-code and manage deployments through CI/CD pipelines."}
- {"name":"Developer Empathy and Technical Communication","description":"Exceptional ability to understand developer pain points, communicate complex technical concepts clearly through multiple mediums, and explain limitations and tradeoffs honestly. Strong writing skills for technical documentation and blog posts. Ability to present ideas effectively to both technical and non-technical audiences."}
- {"name":"Security Principles and Best Practices","description":"Solid grasp of fundamental security concepts including authentication, authorization, cryptography basics, secure credential management, and common vulnerability classes (OWASP Top 10). Ability to write secure code, recognize security issues, and communicate security tradeoffs to developers."}
- {"name":"Vulnerability Management and Analysis","description":"Understanding of how security scanners, static analysis tools, and vulnerability databases work. Familiarity with vulnerability scoring systems (CVSS), triage workflows, and the process of validating, prioritizing, and remediating security findings. Experience interpreting security reports and explaining findings to developers."}

### preferred

- {"name":"Large Language Models and Prompt Engineering","description":"Experience working with GPT, Claude, or similar large language models. Practical knowledge of prompt engineering techniques, few-shot learning, prompt chaining, and function calling patterns. Understanding of LLM capabilities, limitations, and hallucination risks, particularly in security-sensitive contexts."}
- {"name":"Agentic Workflows and Orchestration","description":"Experience building or working with AI agents, workflow orchestration systems, and tool-use patterns. Familiarity with concepts like ReAct, Chain-of-Thought, and agent frameworks. Understanding of how to design reliable agent workflows with proper error handling and human review loops."}
- {"name":"DevSecOps and CI/CD Integration","description":"Experience integrating security tools into CI/CD pipelines, configuring automated security scanning, and optimizing security workflows. Familiarity with tools like GitHub Actions, GitLab CI, Jenkins, SonarQube, or similar. Understanding of how to make security checks developer-friendly and not disruptive to velocity."}
- {"name":"Technical Content Creation and Developer Relations","description":"Portfolio demonstrating technical writing ability, such as published blog posts, tutorial videos, technical documentation, or open-source project documentation. Experience speaking at conferences or leading workshops. Evidence of building engaged communities around technical products or frameworks."}
- {"name":"Open Source Contributions","description":"Active contributions to open-source projects, particularly security, developer tooling, or AI-related projects. A GitHub profile demonstrating software engineering skills, code quality, and engagement with technical communities. Evidence of building tools or libraries that other developers find valuable."}
- {"name":"Security Tooling and Workflows","description":"Hands-on experience with security tools such as code scanning platforms, dependency checkers, container security, or penetration testing frameworks. Understanding of how security teams operate, the tools they depend on, and the friction points in their workflows. Experience bridging the developer-security gap."}
- {"name":"Web Development and Frontend Frameworks","description":"Proficiency with modern frontend frameworks like React, Vue, or Next.js for building interactive demos and web-based experiences. Understanding of responsive design, user experience principles, and how to make technical demos visually engaging and easy to follow."}
- {"name":"Database Design and SQL","description":"Practical experience designing databases, writing SQL queries, and understanding relational concepts. Familiarity with both traditional SQL databases and modern alternatives. Ability to design secure database schemas and demonstrate secure data handling practices in examples."}

## Tech stack

### tools

### others

### databases

### languages

### frameworks

## Benefits

### benefits

## Compensation

- **max:** 0
- **min:** 0
- **currency:** 
- **stockOptions:** false

## Interview process

### steps

## Full description
**About the Team**

The Developer Experience team at OpenAI has a singular focus: empowering developers globally. Our mission is to provide every developer and startup on the planet with the most delightful and seamless experience to integrate AI into their applications and products. We ensure developers have the tools, resources, and support they need to unlock AI’s full potential.

We create inspiring demos, developer tools, sample applications, and technical content that show developers how to build with Codex and frontier models like GPT-6 Astra, GPT-Live, and GPT-Image-2.5 to create powerful agents and AI-native applications.

We collaborate closely with product, engineering, research, and GTM teams to ensure the developer journey, from onboarding with Codex to first API call to production deployment, is seamless, effective, and delightful.

**About the Role**

As a Developer Experience Engineer, Cyber, you will create technical content, developer tools, and sample applications that help developers and security teams secure the software they build and depend on. You will turn OpenAI’s cybersecurity capabilities, including Codex Security, into clear, runnable examples and useful learning experiences.

You will work directly with developers, security practitioners, and technical founders to understand their needs and show how AI can improve secure development and defensive security workflows. We’re looking for a hands-on engineer who combines strong software skills, creativity, developer empathy, and curiosity about cybersecurity, and who can own projects from the first prototype through release and ongoing improvement.

**In this role, you will:**

* Build demos, sample applications, and developer tools that demonstrate practical ways to use Codex, OpenAI’s APIs, and Cyber products for secure software development and defensive workflows.
* Create tutorials, blog posts, videos, and code samples that help developers understand security findings, validate and prioritize vulnerabilities, review proposed changes, and verify fixes.
* Develop reference integrations that connect AI-assisted security workflows to source control, code review, and continuous integration, helping teams move from initial setup to repeatable use.
* Partner with Cyber engineers and security researchers to make examples technically accurate and results understandable, with clear guidance on evidence, validation, and the limitations of model-generated findings.
* Demonstrate sound security practices in examples and tooling, including appropriate permissions, credential handling, protection of sensitive code and data, and human review of agent actions.
* Engage developers and security practitioners through events, workshops, and online communities, serving as an approachable technical resource and advocate.
* Gather and synthesize practitioner feedback to identify friction, inform product priorities, and improve the journey from onboarding to everyday use.
* Contribute directly to developer-facing interfaces, documentation, and tooling, working with product, engineering, and go-to-market partners to help users adopt and succeed with OpenAI’s developer products.

**Your background might look something like:**

* Strong engineering fundamentals and a track record of shipping useful software, developer tools, or products for technical users.
* Experience building applications with AI models, APIs, or agent workflows, and translating experimentation into reliable, maintainable code.
* Experience with application security, vulnerability management, secure development workflows, or security tooling.
* A portfolio of technical content, compelling demos, sample applications, or developer tooling that helps others learn and build.
* Strong developer empathy and the ability to explain complex technical concepts clearly through writing, code, and conversation.
* Experience collaborating across engineering, product, and technical user communities, with thoughtful judgment about usability, security, and correctness.
* Comfort owning ambiguous problems end to end, learning unfamiliar domains, and iterating quickly as products and user needs evolve.
* A commitment to responsible AI development and an interest in helping developers use powerful capabilities safely and effectively.

**About OpenAI**

OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity. 

We are an equal opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other applicable legally protected characteristic. 

For additional information, please see [OpenAI’s Affirmative Action and Equal Employment Opportunity Policy Statement](https://cdn.openai.com/policies/eeo-policy-statement.pdf).

Background checks for applicants will be administered in accordance with applicable law, and qualified applicants with arrest or conviction records will be considered for employment consistent with those laws, including the San Francisco Fair Chance Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act, for US-based candidates. For unincorporated Los Angeles County workers: we reasonably believe that criminal history may have a direct, adverse and negative relationship with the following job duties, potentially resulting in the withdrawal of a conditional offer of employment: protect computer hardware entrusted to you from theft, loss or damage; return all computer hardware in your possession (including the data contained therein) upon termination of employment or end of assignment; and maintain the confidentiality of proprietary, confidential, and non-public information. In addition, job duties require access to secure and protected information technology systems and related data security obligations.

To notify OpenAI that you believe this job posting is non-compliant, please submit a report through [this form](https://form.asana.com/?d=57018692298241&k=5MqR40fZd7jlxVUh5J-UeA). No response will be provided to inquiries unrelated to job posting compliance.

We are committed to providing reasonable accommodations to applicants with disabilities, and requests can be made via this [link](https://form.asana.com/?k=bQ7w9h3iexRlicUdWRiwvg&d=57018692298241).

[OpenAI Global Applicant Privacy Policy](https://cdn.openai.com/policies/global-employee-and-contractor-privacy-policy.pdf)

At OpenAI, we believe artificial intelligence has the potential to help people solve immense global challenges, and we want the upside of AI to be widely shared. Join us in shaping the future of technology.
