Security Engineer I, Application Security
Core
Conduct security assessments of client software, identify vulnerabilities across application and system levels, and own scoped pieces of client engagements.
Role type
Early-career hands-on IC application security engineer
Builds
Custom security tooling, proof-of-concept code, and client delivery of vulnerability findings
Domain
Application security, vulnerability research, and low-level systems security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Vulnerability discovery and validation, code analysis, memory-corruption vulnerability reasoning, hands-on coding in multiple languages, threat modeling, OS concepts and privilege boundaries
Preferred skills
CTF participation, published vulnerability research, open-source contributions, mobile application security, cloud platform assessment, kernel code or reverse engineering
Technologies
Rust, Go, C, C++, Python, JavaScript, TypeScript, Kubernetes, Helm, Terraform, Ansible
Responsibilities
Lead security reviews of specific components or modules, find and validate vulnerabilities in application code, design and build security-testing tools, review software architectures and identify attack surfaces, translate technical findings into actionable recommendations for engineering teams
Seniority
Early-career, hands-on IC