Application Security Researcher

Posted 2 days ago

This is a fully remote position, open to applicants in Canada.

📋 Description

• Conduct research on vulnerability chaining, business-logic flaws, and intricate attack vectors within applications and infrastructure.

• Develop and implement detection engines and decision-making frameworks for autonomous security systems.

• Assess AI models for application security scenarios, identifying their strengths and weaknesses.

• Create, build, and deploy security features into live environments.

• Analyze extensive security data to identify exploitable attack vectors and enhance detection precision.

• Collaborate with Product, Engineering, and Data teams to innovate the next wave of security functionalities.

• Define the team's research trajectory and oversee projects from conception to deployment.


⛳️ Requirements

• Master's degree in Computer Science, Cyber Security, or a related discipline.

• Over 5 years of practical experience in offensive security, vulnerability research, or application security.

• Profound knowledge of web application and API vulnerabilities, including business-logic flaws and multi-step attack sequences.

• Proficient coding skills in Python, Go, or a comparable language, with a track record of delivering production-ready code.

• Experience in creating or refining detection logic (SAST, DAST, SCA, secrets, or custom rule engines) and minimizing false positives.

• Strong understanding of contemporary application and infrastructure environments: CI/CD pipelines, containers, Kubernetes, and at least one major cloud service provider.

• Practical experience working with LLMs or AI models for security applications, along with the insight to evaluate their effectiveness and shortcomings.

• Comfortable handling large datasets (SQL, BigQuery, or similar) to support research and assess detection accuracy.

• Capable of advancing a research concept from prototype to production with little supervision.

• Excellent written communication skills: able to articulate a complex attack vector to engineers and product managers.


🏝️ Benefits

• Comprehensive Health Coverage: Medical, Dental, and Vision plans to ensure the well-being of you and your family.

• Unlimited Paid Time Off (PTO)

• Gifts on your birthday & anniversary, and during Holidays.

People also viewed

Sony Interactive Entertainment14 hours ago

Senior Security AI Risk Analyst

US flagCalifornia OnlyFull-timeCybersecurity / Security Engineer$167.5k – $251.3k/year
ApplyView job
Squads15 hours ago

Security Engineer

North AmericaFull-timeCybersecurity / Security Engineer$175k – $220k/year
ApplyView job
Neo4j15 hours ago

Senior Director, Product, Security and Privacy

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$260k – $300k/year
ApplyView job
PingWind Inc. (SDVOSB)16 hours ago

Cloud Security Architect – Engineer

US flagAlabama, +1 more stateFull-timeCybersecurity / Security Engineer
ApplyView job
CSCI Consulting16 hours ago

SAP S/4HANA Defense & Security Functional Lead

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Strategic Systems International17 hours ago

AI Security Engineer – AI, Agentic Security

MX flagMexico, +4 more countriesFreelanceCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers