Jobs / United States / Scale AI INC
Senior AI Product Manager, Cybersecurity
Scale AI INC · 🇺🇸 New York, NY; San Francisco, CA
Sponsorship verdict
Sponsorship possible
One solid signal, not two — worth applying, and worth asking about sponsorship early.
- Employer is on a government sponsor recordThe US Department of Labor certified 74 H-1B/E-3 labor condition applications for this employer between Oct 2025 and Jun 2026 (latest Jun 2026) — the step every H-1B hire needs first. USCIS also records 3 H-1B approvals in FY2023. Source: LCA disclosure data (US Department of Labor (OFLC)).
- The posting doesn’t mention sponsorshipSilence isn’t a refusal — ask the recruiter before investing much time.
- No salary bar for this routeH-1B has no fixed salary bar: the employer must pay at least the prevailing wage for the role and area. Cap-subject employers enter a lottery weighted by wage level. Source: https://www.federalregister.gov/documents/2025/12/29/2025-23853/weighted-selection-process-for-registrants-and-petitioners-seeking-to-file-cap-subject-h-1b, rules effective 2026-02-27.
- What Scale AI INC paid sponsored hires in similar roles4 certified filings for “Product Manager, Enterprise” (General and Operations Managers) in CA: $175k–$400k, median $188k. Most were filed at wage level II (50%) — 2 lottery entries, ≈31% projected selection odds for cap-subject employers. Source: US Department of Labor LCA disclosure data (Oct 2025 – Jun 2026).
- Confirmed live todayWhen a source last listed this job as open.
US H-1B: cap-subject employers enter a lottery weighted by wage level — Level I gets 1 entry, Level IV gets 4 (DHS projected selection odds ≈15% at Level I to ≈61% at Level IV). Universities and non-profit research employers are cap-exempt. The $100,000 fee for new petitions from abroad is currently blocked by a court order (appeal pending).
A verdict summarises public evidence; it is not legal advice and never a guarantee — the employer and the immigration authority decide. Sign in to factor in where you can already work.
Or apply yourself on the official page →
Sponsor Radar — Scale AI INC
The US Department of Labor certified 74 H-1B/E-3 labor condition applications for this employer between Oct 2025 and Jun 2026 (latest Jun 2026) — the step every H-1B hire needs first. USCIS also records 3 H-1B approvals in FY2023. Source: LCA disclosure data (US Department of Labor (OFLC)).
Past sponsorship or register membership never guarantees sponsorship for this vacancy or for you. Full Sponsor Radar for Scale AI INC →
About the role
Scale has been the leading AI data foundry, helping fuel the most exciting advancements in AI, including frontier model training, enterprise adoption, defense applications, and autonomous vehicles. Our mission is to develop reliable AI systems for the world's most important decisions We're looking for a Senior AI Product Manager to build and own Scale's Cybersecurity portfolio — the data, environments, and evaluations frontier labs use to train and measure security capability in their models. This is a build role: you will define the strategy and standards for a product line that does not exist yet. Security is where the hardest problems in agentic AI now sit. An agent that can find a vulnerability, prove it reproduces, and patch it without breaking the system is doing work that takes a skilled human days. Measuring that honestly requires reproducible execution environments at scale and practitioners who have actually done the work. Scale has the first, proven across SWE-Bench Pro, SWE Atlas, and our contributions to the Terminal-Bench lineage. You will build the second. You Will • Own the roadmap and strategy for Scale's Cybersecurity portfolio across training data, RL environments, agentic task suites, and evaluation products — and stand the product line up end to end, from task taxonomy and sourcing through pricing and first external release. • Define the capability map we train and measure against: vulnerability discovery, proof-of-concept reproduction, patch generation and regression safety, secure code review, supply-chain analysis, malware and binary analysis, detection engineering, and incident triage. • Make the strategic call on where Scale competes across the offense–defense spectrum — which capabilities we build training data for, which we only measure, and which we decline. • Partner with ML researchers and security practitioners on task specifications, grader design, and verifiable rewards, holding to execution-grounded verification wherever possible: a task counts as solved only when the reproducer fires or the patch holds without breaking functionality. • Drive the infrastructure roadmap — reproducible vulnerability images, fuzzing and build toolchains, sandboxed execution, network-segmented ranges, automated verification — and build sourcing pipelines that scale past hand-curation. • Own the responsible-development posture: containment, coordinated disclosure for live vulnerabilities surfaced during task construction, need-to-know handling of sensitive artifacts, and customer vetting, working with Security, Legal, and Policy to make these processes real rather than nominal. • Establish governance for data quality, contamination prevention, license and IP hygiene, reproducibility, and release management. • Recruit and steward a contributor network of working practitioners — vulnerability researchers, exploit developers, malware analysts, detection engineers, incident responders — and design quality controls that hold up when reviewers are validating work at the edge of their own expertise. • Own external partnerships across open-source benchmark collaborations, academic security groups, and enterprise data partnerships. • Work directly with frontier labs and enterprise customers to understand where their models fail on security work, translate that into roadmap, and partner with GTM on launches and thought leadership. Ideally, You'd Have • Real cybersecurity work under your belt, rather than security-adjacent product experience: vulnerability research, fuzzing and crash triage, reproducer development, patch and root-cause analysis, exploit development, malware analysis, red teaming, detection engineering, or incident response. Competitive CTF, published CVEs, a bug bounty record, or OSS-Fuzz contribu