Security Engineer II, Application Security
Core
Conduct security assessments of client software, identify and validate vulnerabilities, and develop custom tooling to address application and system-level risks.
Role type
Senior IC application security engineer (vulnerability research & tooling)
Builds
Custom security tooling, proof-of-concept exploits, and actionable vulnerability reports for client software
Domain
Cybersecurity, Application Security, Vulnerability Research
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
vulnerability discovery and validation, code analysis (execution/data flow tracing), programming in 2+ languages (Rust/Go/C/C++/Python/JS/TS), memory-corruption vulnerability reasoning, systems internals knowledge, independent assessment scoping
Preferred skills
CTF participation, published vulnerability research/CVEs, open-source security contributions, mobile app security, cloud platform assessment (Kubernetes/Terraform), reverse engineering/fuzzing
Technologies
Rust, Go, C, C++, Python, JavaScript, TypeScript, Kubernetes, Helm, Terraform, Ansible
Responsibilities
Lead security assessments of substantial components from scoping to delivery, find and validate vulnerabilities with root cause analysis, design and build custom security tools, review complex software architectures and threat models, present technical findings to client engineering teams, review peer code and analysis
Seniority
Senior, hands-on IC

