Application Security Researcher

🔥 0 minutes ago

🇨🇦 Canada – Remote

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 18%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of OX Security

OX Security

51 - 200 employees

🔒 Cybersecurity

☁️ SaaS

🏢 Enterprise

💰 Venture Round on 2023-08

Cybersecurity • SaaS • Enterprise

OX Security is a leading provider of Application Security Posture Management (ASPM) solutions, dedicated to enhancing software supply chain security. The company offers a comprehensive platform that integrates seamlessly into CI/CD pipelines to provide visibility, risk prioritization, and remediation of vulnerabilities throughout the software development lifecycle. By leveraging a centralized approach, OX Security helps organizations manage AppSec processes effectively, fostering collaboration and eliminating data silos. The platform empowers businesses to adopt the 'shift-left' security methodology, ensuring that security measures are built into the early stages of development to improve protection and accelerate release cycles. OX Security is recognized for its exceptional support and innovative tools that offer a holistic view of application security, making it a trusted partner for enterprises seeking to enhance their cybersecurity posture.

📋 Description

• Research vulnerability chaining, business-logic flaws, and complex attack paths across applications and infrastructure • Design and build detection engines and decision-making logic for autonomous security systems • Evaluate AI models for application security use cases, measuring where they perform and where they fall short • Prototype, build, and ship security capabilities into production environments • Analyze large-scale security data to uncover exploitable attack paths and improve detection accuracy • Partner with Product, Engineering, and Data teams to shape the next generation of security features • Help set the team's research direction and own initiatives end to end, from idea to shipped capability

🎯 Requirements

• M.Sc. in Computer Science, Cyber Security, or a related field • 5+ years of hands-on experience in offensive security, vulnerability research, or application security • Deep understanding of web application and API vulnerabilities, including business-logic flaws and multi-step attack chains • Strong coding skills in Python, Go, or a similar language, with experience shipping production-quality code • Experience building or tuning detection logic (SAST, DAST, SCA, secrets, or custom rule engines) and reducing false positives • Solid grasp of modern application and infrastructure stacks: CI/CD pipelines, containers, Kubernetes, and at least one major cloud provider • Hands-on experience using LLMs or AI models for security tasks, and the judgment to measure where they help and where they fail • Comfort working with large datasets (SQL, BigQuery, or similar) to drive research and measure detection accuracy • Ability to take a research idea from prototype to production with minimal guidance • Clear written communication: you can explain a complex attack path to engineers and product managers

🏖️ Benefits

• Comprehensive Health Coverage: Medical, Dental, and Vision plans to keep you and your family healthy. • Unlimited Paid Time Off (PTO) • Gifts on your birthday & anniversary, & Holidays.

Apply Now

Similar Jobs

🔥 7 hours ago

AlphaSense

1001 - 5000

💼 Consulting

🏥 Healthcare

📣 Marketing

Senior Product Security Engineer securing AlphaSense’s AI-native market intelligence platform. Leading AI/ML security, threat modeling, secure architecture, and customer-facing assurance.

🇨🇦 Canada – Remote

💵 $159k - $219k / year

💰 Debt Financing on 2022-06

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

🕒 Yesterday

Flexspring

51 - 200

💼 Consulting

📦 Logistics

📣 Marketing

Security Operations Analyst monitoring and protecting Flexspring's HR data integration platform and cloud infrastructure. Managing vulnerabilities, incident response, detection tooling, and SOC 2/ISO 27001 evidence.

🕒 Yesterday

Miovision

201 - 500

🚗 Transport

🔧 Hardware

☁️ SaaS

Product Security Lead securing Miovision’s intelligent transportation products, cloud services, and connected devices. Leading secure-by-design engineering and product risk management for safer smart transportation networks.

🇨🇦 Canada – Remote

💵 CA$163k - CA$198k / year

💰 $26.2M Venture Round - Miovision on 2023-10

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

🕒 2 days ago

Jones Lang LaSalle Americas, Inc.

10,000+ employees

🏠 Real Estate

🤝 B2B

💼 Consulting

Remote HSE Specialist supporting JLL’s Canadian property-management operations. Managing compliance, investigations, audits, training, and environmental and safety programs.

🕒 6 days ago

Cohere

11 - 50

🤖 Artificial Intelligence

🏢 Enterprise

☁️ SaaS

Security software engineer building OIDC, authentication, and Kubernetes security features. Shipping production protections for Cohere’s enterprise AI platform.