Application Security Developer
Core
Emulating real-world adversaries to proactively discover, exploit, and remediate critical security vulnerabilities across applications.
Role type
Senior IC application security engineer (offensive security)
Builds
Security tools, automated scanning frameworks, and remediation guidelines for development teams
Domain
Legal technology / Application Security
Deliverable
production ML models | product features | infrastructure
Required skills
Offensive security and penetration testing, vulnerability exploitation (SSRF, deserialization, logic bypasses), threat modeling, programming (Python/.NET/Ruby/JavaScript), cloud security (AWS/Azure/GCP), SAST/SCA tools, log analysis and SIEM
Preferred skills
OSCP/OSWE certification, Ruby on Rails, Kubernetes, Terraform, ELK stack, WAF and device hardening
Responsibilities
Write and debug security tools for developers, conduct threat modeling sessions, perform penetration testing and offensive campaigns, resolve security incidents and forensics, identify new attack vectors via research, advise development teams on security best practices
Seniority
Senior, hands-on IC