Remotery

Security Researcher

Posted 1 day ago

This is a fully remote position, open to applicants in Lithuania.

📋 Description

• Conduct research on browser, WebView, Android, and iOS environments from the perspective of potential attackers.

• Detect security signals, behavioral indicators, and technical patterns associated with fraud, abuse, automation, and AI agent detection.

• Analyze techniques employed by attackers using bots, browser automation, AI agents, emulators, device spoofing, hooking, instrumentation, remote access tools, and anti-detection strategies.

• Develop and execute experiments that assess legitimate, automated, AI-assisted, and manipulated environments.

• Assess signals for aspects such as reliability, stability, spoofability, privacy sensitivity, performance impact, and feasibility for production.

• Convert research insights into SDK feature specifications for both web and mobile data collection.

• Create internal tools, scripts, and laboratory environments for the purpose of signal research and validation.

• Collaborate with SDK, engineering, product, and detection teams to transition research from concept to production.


⛳️ Requirements

• A minimum of 3 years of practical experience in security research, mobile security, browser research, fraud research, detection research, reverse engineering, or a related technical field.

• Proficiency with web browsers, mobile browsers, WebViews, browser APIs, JavaScript runtime behavior, browser automation, fingerprinting, client-side web security, and low-level browser technologies.

• Familiarity with the architecture or codebase of contemporary open-source browsers and rendering engines, including Chromium, WebKit, Blink, or Gecko.

• Experience with native Android and/or iOS applications, mobile OS behavior, app instrumentation, emulators, device spoofing, mobile automation, mobile security, and low-level platform APIs.

• An attacker mindset with a hands-on understanding of bypass techniques involving automation, AI agents, spoofing, and anti-detection methods.

• Capability to recognize subtle technical signals and translate them into actionable detection or data collection opportunities.

• Experience in designing technical experiments and validating research hypotheses.

• Proficiency in SDK development languages and environments, including TypeScript/JavaScript, Kotlin/Java, or Swift/Objective-C.

• Scripting skills, preferably in Python.

• Ability to independently tackle ambiguous problems and communicate findings effectively.

• Advantage: experience with Web SDKs, Mobile SDKs, client-side telemetry, device intelligence, behavioral signals, AI agent detection, or fraud detection products.

• Advantage: experience researching bots, credential stuffing, scraping, headless browsers, AI-assisted automation, app cloning, SDK abuse, phishing kits, malware, or anti-detection frameworks.

• Advantage: experience in reverse engineering Android or iOS applications.

• Advantage: familiarity with detection quality measurement, feature evaluation, false-positive analysis, production monitoring, or concepts in machine learning.

• Bachelor’s degree in Computer Science, Cybersecurity, Data Science, or a related field—or equivalent hands-on experience (as noted under Advantages).


🏝️ Benefits

• Security: thoroughly vetted clients to reduce risks and ensure dependable and timely payments.

• Support for career development and assistance in locating new project opportunities.

• Legal support for independent contractors or sole proprietorships, taxes, and related procedures.

• English language courses.

• Opportunities for professional growth.

• Team-building activities.

• People-first management approach with minimal bureaucracy.

• A friendly company culture.

• Flexible working hours.

• Comprehensive financial and legal support for independent contractors.

• Free English lessons with native speakers or Ukrainian instructors.

• Dedicated HR assistance.

People also viewed

NTT17 hours ago

Senior Special Sales Cybersecurity

DE flagGermany OnlyFull-timeCybersecurity / Security Engineer€120k – €130k/year
ApplyView job
BDR Solutions LLC18 hours ago

Senior Cloud Cybersecurity Specialist

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$80k – $130k/year
ApplyView job
ON Partners18 hours ago

Research Security Consultant

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$125k – $200k/year
ApplyView job
Danaher Corporation19 hours ago

Vice President, Information Security – Manufacturing Plant Security, Product Security, Application Security

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$250k – $350k/year
ApplyView job
Johnson & Johnson20 hours ago

Senior Manager, Global Security Technology

US flagNew Jersey, +2 more statesFull-timeCybersecurity / Security Engineer
ApplyView job
New Belgium Brewing20 hours ago

Security Engineer

US flagColorado OnlyFull-timeCybersecurity / Security Engineer$102.5k – $105k/year
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers