Senior Application Security Researcher

Posted 1 hour ago

Apply Now

Resume Score

Check how well your resume matches this job before you apply.

Sign in to check score

About the role

  • Senior Application Security Researcher advancing AI-driven application security from prompt to production. Building detection systems and autonomous agentic penetration-testing capabilities.

Responsibilities

  • Conduct hands-on application security research to advance modern AppSec
  • Work with engineers, researchers, and AI/data scientists on next-generation detection
  • Develop autonomous, agentic penetration-testing capabilities
  • Build and break security systems rather than perform a typical AppSec role
  • Take research ideas from prototype through production

Requirements

  • 5+ years hands-on in offensive security, vulnerability research, or application security
  • Deep understanding of web application and API vulnerabilities, including business-logic flaws and multi-step attack chains
  • Strong coding in Python, Go, or similar, with production-quality code shipped
  • Experience building or tuning detection logic (SAST, DAST, SCA, secrets, or custom rule engines) and reducing false positives
  • Solid grasp of modern stacks: CI/CD pipelines, containers, Kubernetes, and at least one major cloud provider
  • Hands-on use of LLMs / AI models for security tasks, with the judgment to measure where they help and where they fail
  • Comfort with large datasets (SQL, BigQuery, or similar) to drive research and measure detection accuracy
  • Takes research ideas from prototype to production with minimal guidance
  • Clear written communication — can explain a complex attack path to engineers and product managers
  • M.Sc. in Computer Science, Cyber Security, or a related field
  • Published research, CVEs, conference talks, or a bug bounty track record
  • Experience building AI agents or evaluation frameworks for LLMs
  • Background in exploit development, red teaming, or penetration testing
  • Code analysis techniques (taint analysis, call graphs, reachability)
  • Contributions to open-source security tools

Job type

Full Time

Experience level

Senior

Salary

Not specified

Degree requirement

Postgraduate Degree

Tech skills

BigQueryCloudCyber SecurityKubernetesPythonSQLGo

Location requirements

RemoteCanada

Report this job

Found something wrong with the page? Please let us know by submitting a report below.