Security Engineer, Application Security
Core
Conduct comprehensive low-level code security assessments of client software, focusing on system architecture, security boundaries, and platform mechanisms.
Role type
Senior IC application security engineer (vulnerability research & tooling)
Builds
Custom security tools for automated vulnerability detection and mitigation strategies
Domain
Cybersecurity, Application Security, Low-level Systems
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Manual code review, Static and dynamic analysis, Binary analysis and reverse engineering, Memory corruption vulnerability analysis, System internals and security boundaries reasoning, Architecture review and threat modeling, Security tool development, Multi-language programming (Rust, Golang, C++, etc.)
Preferred skills
Mobile OS internals (Android/iOS/macOS), Open source security contributions, Vulnerability research publication, Security conference speaking, Cloud misconfiguration identification, Government-funded research collaboration
Technologies
Rust, Golang, Kotlin, Swift, Objective-C, JavaScript, TypeScript, Python, Ruby, C, C++, Disassemblers, Decompilers, AWS, GCP, Azure
Responsibilities
Conduct low-level code security assessments and identify/mitigate vulnerabilities, Design and implement custom security tools for automated detection, Perform architecture reviews and threat modeling of complex systems, Engage with client teams to review infrastructure and provide remediation guidance, Contribute to advancing application security methodologies and tools
Seniority
Senior, hands-on IC