Senior Application Security Researcher

Commit

Toronto

Vor Ort

CAD 120.000 - 190.000

Vollzeit

vor 10 Stunden
Sei unter den ersten Bewerbenden
Bewerbungsgenerator

Mach aus dieser Rolle ein Bewerbungsgespräch — ein Lebenslauf und ein Anschreiben, die darauf ausgerichtet sind, was dieser Arbeitgeber sucht.

Schaffe es an den ATS-Filtern vorbei

Zusammenfassung

Commit in Toronto, Canada is seeking a senior, hands-on Application Security Researcher to push modern AppSec forward—working with engineers, researchers and AI/data scientists on next-generation detection, including autonomous, agentic pen-testing capabilities. This is a build-and-break role, not a typical AppSec position.

This role focuses on practical security research, delivering production-grade Python/Go code, tuning detection logic, and communicating attack paths clearly to product teams.

Qualifikationen

  • 5+ years hands-on in offensive security, vulnerability research, or application security.
  • Deep understanding of web application and API vulnerabilities, including business-logic flaws and multi-step attack chains.
  • Strong coding in Python, Go, or similar, with production-quality code shipped.
  • Experience building or tuning detection logic (SAST, DAST, SCA, secrets, or custom rule engines) and reducing false positives.
  • Solid grasp of modern stacks: CI/CD pipelines, containers, Kubernetes, and at least one major cloud provider.
  • Hands-on use of LLMs / AI models for security tasks, with the judgment to measure where they help and where they fail.
  • Comfort with large datasets (SQL, BigQuery, or similar) to drive research and measure detection accuracy.
  • Takes research ideas from prototype to production with minimal guidance.
  • Clear written communication — can explain a complex attack path to engineers and product managers.

Kenntnisse

Offensive security
Vulnerability research
Application security
Web & API security
Python
Go
Detection logic
SAST/DAST/SCA
Cloud platforms
CI/CD
Kubernetes
LLMs / AI models in security
Large datasets (SQL/BigQuery)
Effective communication

Ausbildung

M.Sc. in Computer Science or Cyber Security

Tools

Kubernetes
BigQuery
CI/CD tooling

Jobbeschreibung

The company secures the AI-driven SDLC from prompt to production, unifying development and cloud context to stop vulnerabilities at the source. The Security Research group is hiring a senior, hands‑on Application Security Researcher to push modern AppSec forward — working with engineers, researchers and AI/data scientists on next-generation detection, including autonomous, agentic pen-testing capabilities. This is a build-and-break role, not a typical AppSec position.

Requirements:
Must-have skills:
  • 5+ years hands‑on in offensive security, vulnerability research, or application security
  • Deep understanding of web application and API vulnerabilities, including business‑logic flaws and multi‑step attack chains
  • Strong coding in Python, Go, or similar, with production‑quality code shipped
  • Experience building or tuning detection logic (SAST, DAST, SCA, secrets, or custom rule engines) and reducing false positives
  • Solid grasp of modern stacks: CI/CD pipelines, containers, Kubernetes, and at least one major cloud provider
  • Hands‑on use of LLMs / AI models for security tasks, with the judgment to measure where they help and where they fail
  • Comfort with large datasets (SQL, BigQuery, or similar) to drive research and measure detection accuracy
  • Takes research ideas from prototype to production with minimal guidance
  • Clear written communication — can explain a complex attack path to engineers and product managers
  • M.Sc. in Computer Science, Cyber Security, or a related field
Nice to have:
  • Published research, CVEs, conference talks, or a bug bounty track record
  • Experience building AI agents or evaluation frameworks for LLMs
  • Background in exploit development, red teaming, or penetration testing
  • Code analysis techniques (taint analysis, call graphs, reachability)
  • Contributions to open-source security tools
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.

oder ziehe deine Datei hierhin.

Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Senior Application Security Researcher
Senior Application Security Researcher

Kibbi • Toronto

Vor Ort
CAD 120.000 - 180.000
Application Security Researcher
Application Security Researcher

OX Security • Toronto

Vor Ort
CAD 120.000 - 180.000
Health Coverage
Unlimited PTO
Birthday/anniversary gifts
Senior AppSec Researcher — Build & Break AI-Driven Defenses
Senior AppSec Researcher — Build & Break AI-Driven Defenses

Commit • Toronto

Vor Ort
CAD 120.000 - 190.000
Security Research Engineer - AI Security, Agentic AI & Emerging Cybersecurity
Security Research Engineer - AI Security, Agentic AI & Emerging Cybersecurity

Astra-North Infoteck Inc. ~ Conquering today’s challenges, achieving tomorrow’s vision! • Toronto

Vor Ort
CAD 140.000 - 210.000
Senior Software Engineer (Security)
Senior Software Engineer (Security)

Super • Toronto

Vor Ort
CAD 90.000 - 120.000
Competitive salary
Learning & development allowance
Generous equity options
+2
(DEV) Java developer - Application security
(DEV) Java developer - Application security

Vaco Recruiter Services • Montreal (administrative region)

Vor Ort
CAD 120.000 - 150.000
Senior Security Engineer
Senior Security Engineer

Metrics Recruitment • Vancouver

Vor Ort
CAD 90.000 - 130.000
Senior Security Engineer - AI Focus
Senior Security Engineer - AI Focus

Euna Solutions • Oakville

Vor Ort
CAD 120.000 - 180.000
Senior Offensive Security Engineer -SAST, DAST, SCA, IAST
Senior Offensive Security Engineer -SAST, DAST, SCA, IAST

Astra-North Infoteck Inc. ~ Conquering today’s challenges, achieving tomorrow’s vision! • Toronto

Vor Ort
CAD 120.000 - 160.000
Security Engineer
Security Engineer

Atos • Toronto

Vor Ort
CAD 110.000 - 150.000