
XBOW brings AI to offensive security, augmenting the work of bug hunters and security researchers. It autonomously finds, exploits and reports vulnerabilities in web applications. It is the first…

XBOW brings AI to offensive security, augmenting the work of bug hunters and security researchers. It autonomously finds, exploits and reports vulnerabilities in web applications. It is the first…
What they do: Autonomous AI penetration testing platform that discovers, validates, exploits, and reports web-app vulnerabilities
Traction: Claims 1,092+ autonomously discovered real vulnerabilities and passed 75% of web security benchmarks with zero human intervention
Team: Founded by Oege de Moor with engineers from GitHub Copilot/Advanced Security and security leaders
Employees: 34
Recent funding: Series C with a $35M extension reported in 2026 (Series C reported at $120M prior to extension)
Offensive application security / penetration testing for web applications
Computer and Network Security
$75M
Reported Series B announced in June 2025
$120M
Reported Series C prior to an extension
$35M
Extension led by strategic investors including Accenture Ventures, DNX Ventures, Liberty Global Tech Ventures, NVentures, Samsung Ventures, and SentinelOne Ventures
“Includes strategic corporate investors (Accenture Ventures, Samsung Ventures, SentinelOne Ventures, NVentures) alongside traditional VCs (Sequoia Capital, DFJ Growth, Northzone)”
| Company |
|---|
About XBOW At XBOW, we’re redefining the future of cybersecurity by building the world's first autonomous pentester, powered by AI. Today, the gold standard for securing software systems is human pentesters, but with the rise of artificial intelligence, we’re stepping up to scale offensive security to meet the ever-growing demand.
AI is transforming the landscape of both cybersecurity and cyberattacks. While millions of people without security expertise are creating software, bad actors are using AI to launch more effective attacks. XBOW fights back with AI-driven superpowers, enabling security teams to stay one step ahead.
What makes XBOW truly unique? Like human experts, it forges creative attacks, adapts its learnings, and continuously works to find vulnerabilities faster than anyone ever could. We’re not only simulating threats—we’re also finding and responsibly disclosing real-world vulnerabilities, ensuring organizations can fix issues before they’re exploited. XBOW isn’t just a tool; it’s a transformative force in the secure development lifecycle.
Backed by Sequoia Capital and a team that includes the creators of GitHub Copilot and GitHub Advanced Security, XBOW is not just keeping up with the times—we’re shaping the future of cybersecurity. Our mission is simple: to defeat the bad actors before they strike, using AI to revolutionize how we approach offensive security.
We’re building something that must be built, and we’re the team to do it. Join us in shaping the next frontier of autonomous security.
Your Role: Senior IT Engineer We’re looking for an experienced, hands-on Senior IT engineer to support and secure our internal systems, infrastructure, and workforce. You’ll help onboard new team members, manage devices and access, automate workflows, and ensure our compliance and security posture remains strong as we grow.
This is a deeply technical, individual contributor role. You’ll work across IT, devops, and internal security, partnering closely with engineering, legal, and leadership to keep our environment secure and efficient.
What You'll Do
Who You Are
Bonus Points
What We Offer
What Else You Should Know
Location: Remote US East Coast preferred (all team members are remote but we meet regularly and you’re supported to travel to collaborate with colleagues in person)
We’re a security company that builds with AI at the core - so you’ll be protecting a team that moves fast, iterates aggressively, and lives in the command line. If that sounds like your kind of environment, let’s talk.
Your next opportunity is in here somewhere. Sign up to explore 52,000+ startups and their open roles. No spam. No gamification. Just jobs.
52,000+
Startups
66,000+
Open Roles
1,300+
New This Week
Design, deploy, and maintain:
End-user environments (laptops, device management including our MDM)
Identity and access management (SSO, MFA, RBAC)
Networking (Wi-Fi, VPN, firewalls, DNS)
Own SaaS tooling stack (Okta, Google Workspace, Slack, GitHub, 1Password, etc.)
Select tools with an eye toward cost, security, and scale
Enable us to scale by automating IT tasks:
Write scripts (e.g. Python / Bash) to eliminate manual work
Provisioning and deprovisioning
Device configuration
Access requests
Integrate systems via APIs where possible
Implement and enforce:
Endpoint security (EDR, patching, disk encryption)
Identity security (MFA, least privilege)
Secure onboarding/offboarding processes
Asset inventory
Vulnerability awareness
Support compliance efforts (SOC 2, ISO 27001, etc.) if/when needed
Collaborate with engineering on IAM, AWS environment security, and internal tooling
Monitor and respond to internal IT / Security events and incidents
Document processes, playbooks, and policies to support a growing company
Support developers with secure, reliable access to infrastructure and tools
Contract: Full-time.
Hiring Process:
Talent Introduction
HM Interview
1 hour Technical Interview (Coding Exercise)
Progressing requires participating in a coding exercise. The sample code wouldn’t need to be fully functional if you're unfamiliar with a specific library, but we’d expect to see clear pseudo-code that demonstrates structure, logic, and problem-solving (Terraform experience is a plus).
Final Interview as needed