Application Security Research Engineer

🔥 0 minutes ago

🇪🇸 Spain – Remote

⏰ Full Time

🟠 Senior

🔴 Lead

📚 Research Engineer

👻 Ghost score 19%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Commit

Commit

501 - 1000 employees

🔒 Cybersecurity

Cybersecurity

Commit is a global tech services company founded in 2005, with a presence in Israel, the US, Canada, the UK, and Europe. It specializes in advanced technologies and applications, providing innovative, end-to-end technology solutions, including custom software and IoT platforms. Commit has over 700 multidisciplinary experts who cater to a wide array of companies, from startups to large enterprises, and focuses on areas like Cloud, GenAI, Software, IoT, Big Data, Cybersecurity, and data center migration. Its proprietary Flexible R&D methodology supports clients in transforming their technology visions into high-quality products while reducing costs and improving time-to-market.

📋 Description

• Build and lead a team of security researchers and penetration testers • Help reshape company Product Security • Plan and execute advanced penetration testing campaigns • Develop tools and frameworks for scalable security testing and fuzzing • Lead security innovation by building and managing penetration testing tools and AI agents • Analyze vulnerabilities, perform root cause analysis, and develop proofs of concept • Identify systemic product weaknesses and help define long-term mitigations • Collaborate with engineering teams to reproduce, triage, and fix vulnerabilities • Contribute to security research publications, CVE submissions, and industry knowledge sharing • Continuously evolve internal testing capabilities using modern tooling and AI-assisted approaches

🎯 Requirements

• Proven 2+ years of experience in leading application security research teams (SaaS or software company) • 7+ years of experience in research and penetration testing • Strong coding skills and deep technical understanding of web, API, cloud-native, and backend technologies • AI and LLM penetration testing knowledge and experience • Experience with penetration testing tools (Burp Suite, Metasploit, etc.) and custom security tools development • Familiarity with modern architectures, including cloud, microservices, containers, and Kubernetes • Familiarity with secure software architecture and typical attack vectors • Demonstrated ability to lead security testing engagements and report technical findings effectively • Knowledge and hands-on experience with SSDLC tools and CI/CD pipelines

🏖️ Benefits

• No benefits or compensation extras are specified

Apply Now