Security Researcher

Posted Aug 21

This is a fully remote position, open to applicants in Spain.

📋 Description

• Conduct research on browser, WebView, Android, and iOS environments from the perspective of an attacker.

• Detect security signals, behavioral indicators, and technical patterns to enhance fraud detection, abuse management, automation, and AI agent identification.

• Analyze attacker methodologies related to bots, browser automation, AI agents, emulators, device spoofing, hooking, instrumentation, remote access tools, and anti-detection strategies.

• Develop and execute experiments that compare legitimate, automated, AI-assisted, and manipulated environments.

• Assess signals for their reliability, stability, susceptibility to spoofing, privacy concerns, performance implications, and production viability.

• Convert research insights into SDK feature specifications for web and mobile data gathering.

• Create internal tools, scripts, and laboratory environments for signal research and validation.

• Collaborate with SDK, engineering, product, and detection teams to transition research from hypotheses to production.


⛳️ Requirements

• Over 3 years of practical experience in security research, mobile security, browser research, fraud detection, reverse engineering, or a similar technical field.

• Proficient in web browsers, mobile browsers, WebViews, browser APIs, JavaScript runtime behavior, browser automation, fingerprinting, client-side web security, and low-level browser technologies.

• Familiar with contemporary open-source browser architectures or codebases and rendering engines like Chromium, WebKit, Blink, or Gecko.

• Experienced with native Android and/or iOS applications, mobile OS behavior, app instrumentation, emulators, device spoofing, mobile automation, mobile security, and low-level platform APIs.

• Solid understanding of how malicious actors evade detection through automation, AI agents, spoofing, and anti-detection techniques.

• Capable of identifying subtle technical signals and converting them into detection or data collection opportunities.

• Proven experience in designing technical experiments and validating research hypotheses.

• Familiarity with SDK development languages and environments such as TypeScript/JavaScript, Kotlin/Java, or Swift/Objective-C.

• Scripting skills, preferably in Python.

• Ability to independently tackle ambiguous problems and effectively communicate findings to engineering, product, and research stakeholders.

• A Bachelor’s degree in Computer Science, Cybersecurity, Data Science, or a related discipline is preferred, or equivalent hands-on experience.

• Experience with Web SDKs, Mobile SDKs, client-side telemetry, device intelligence, behavioral signals, AI agent detection, or fraud detection products is advantageous.

• Background in researching bots, credential stuffing, scraping, headless browsers, AI-assisted automation, app cloning, SDK abuse, phishing kits, malware, or anti-detection frameworks is a plus.

• Experience with reverse engineering Android or iOS applications is beneficial.

• Familiarity with detection quality measurement, feature evaluation, false-positive analysis, production monitoring, or machine learning concepts is an advantage.


🏝️ Benefits

• Security: carefully selected clients to minimize risks and ensure timely payments and reliability.

• Career support and assistance in securing suitable new projects.

• Legal support regarding independent contractor or sole proprietorship status, taxes, and related processes.

• English language courses.

• Opportunities for professional growth.

• Team-building activities.

• Flexible working hours.

• Comprehensive financial and legal support for independent contractors.

• Free English classes with native speakers or Ukrainian instructors.

• Dedicated HR support.

People also viewed

Integrity36021 hours ago

Security Engineer

UA flagUkraine OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Rackspace Technology22 hours ago

Security Engineer IV

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$119.6k – $175.4k/year
ApplyView job
Efficient Computer22 hours ago

Director of Information Security

US flagCalifornia, +2 more statesFull-timeCybersecurity / Security Engineer$180k – $230k/year
ApplyView job
Presidio22 hours ago

Senior Director, Cybersecurity Advisory Services

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Presidio22 hours ago

Senior Director, Cybersecurity Advisory Services

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
XBOX22 hours ago

Senior Security Engineer

US flagCalifornia OnlyFull-timeCybersecurity / Security Engineer$102.8k – $190.2k/year
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers