Jobiglo

Sin resultados.

Application Security Research Engineer

Commit · Erevan

Senior 🇬🇧 English
Burp Suite Metasploit Microservices Containers Kubernetes SSDLC tools CI/CD pipelines

Descripcion del puesto

About the role

We are looking for an Application Security Research Engineer to join our Barcelona office. In this hands‑on position you will lead a team of security researchers and ethical hackers, driving offensive security testing, automated exploit discovery and advanced application security research across our product portfolio.

Key responsibilities

  • Build and manage a team of security researchers and penetration testers.
  • Shape and execute the company’s Product Security Plan, running advanced penetration testing campaigns.
  • Design and maintain tools, frameworks and AI‑assisted agents for scalable security testing, fuzzing and automated exploit discovery.
  • Analyze vulnerabilities, perform root‑cause analysis and develop proofs‑of‑concept.
  • Identify systemic product weaknesses and define long‑term mitigation strategies.
  • Collaborate with engineering teams to reproduce, triage and remediate findings.
  • Contribute to security research publications, CVE submissions and industry knowledge sharing.

Required profile

  • Minimum 2 years of experience leading application security research teams in a SaaS or software environment.
  • At least 7 years of hands‑on research and penetration testing experience.
  • Strong coding background and deep understanding of web, API, cloud‑native and backend technologies.
  • Proven ability to lead security testing engagements and communicate technical findings effectively.
  • Experience publishing security research, CVEs or open‑source contributions is a plus.

Required skills

  • Proficiency with penetration testing tools such as Burp Suite and Metasploit.
  • Experience developing custom security tools and automation pipelines.
  • Knowledge of AI/LLM‑based penetration testing techniques.
  • Familiarity with modern architectures: cloud platforms, microservices, containers and Kubernetes.
  • Understanding of secure software architecture, typical attack vectors and SSDLC processes.
  • Hands‑on experience with CI/CD pipelines and security testing integration.

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Commit.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Por que reporta esta oferta?

Gracias por su reporte. Revisaremos esta oferta.

Explorar más

Salarios, guías y búsquedas en España.

Postula en 30 segundos

Ingresa tu email para postular. Se creara una cuenta automaticamente.

Al continuar, aceptas nuestras condiciones de uso.

Ya tienes cuenta? Iniciar sesion

💬 Escríbenos en Telegram Chatear por WhatsApp

Publicado hace 3 semanas

Expira en 1 mes

22 vistas · 0 interested

Aumenta tus posibilidades

Sube tu CV: te propondremos las ofertas que coinciden con tu perfil.

Analizando tu CV...

Commit

Erevan