Senior Security Engineer (WordPress & PHP) (remote-only, Europe)

CloudLinux

Valencia

Presencial

EUR 60.000 - 90.000

Jornada completa

14 días+

Recibe más respuestas de empleadores

Envía un currículum específico para el puesto de trabajo en cuestión de minutos.

Ventajas ofrecidas por este puesto de trabajo

Paid 24 days of vacation
Flexible working hours
Private medical insurance
Co-working reimbursement

Descripción de la vacante

A global cybersecurity company is seeking a Senior Security Engineer to automate exploit generation and analyze zero-day attacks on WordPress. This role requires a strong background in security engineering and hands-on experience with exploiting PHP applications and WordPress plugins. Candidates should possess strong Python skills to build automation pipelines and tools for analyzing execution traces. The position is fully remote, offering flexible hours and comprehensive benefits, including paid vacation and health insurance.

Formación

  • Strong background in security engineering or offensive security automation.
  • Hands-on experience exploiting WordPress plugins, themes, or PHP applications.
  • Proven ability to read and exploit PHP source code.

Responsabilidades

  • Automatically generate and validate exploit PoCs for known CVEs.
  • Analyze PHP execution traces from real zero-day attacks.
  • Build tooling that infers vulnerable code paths.

Conocimientos

Security engineering
Exploiting WordPress plugins
PHP execution model
Python engineering

Herramientas

WPScan
Metasploit

Descripción del empleo

CloudLinux is a global remote‑first company driven by our principles: do the right thing, employees first, we are remote first, and we deliver high‑volume, low‑cost Linux infrastructure and security products that help companies to increase the efficiency of their operations. Every person on our team supports each other and does what we can to ensure we all are successful.

Imunify360 Security Suite

Imunify360 is a product of CloudLinux Inc., the maker of the #1 OS in security and stability for hosting providers. Imunify is an innovative security solution designed specifically for shared and VPS/Dedicated servers. The automated, easy‑to‑use solution with a six‑layer approach to security delivers comprehensive and complete attack prevention.

Check out our website for more information about our Imunify360 Product: https://www.imunify360.com/

We are building an engineering‑heavy security platform for protecting WordPress and its plugin ecosystem. The core challenge is turning real attacker behavior into automated, repeatable systems that scale.

We are looking for a Senior Security Engineer who understands exploitation deeply but prefers building tooling and automation over one‑off research. You will work on systems that:

  • Automatically generate and validate exploit PoCs for known WordPress / PHP CVEs
  • Analyze PHP execution traces from real zero‑day attacks against WordPress installations

LLMs are a first‑class component of this work—not a novelty—used to accelerate exploit reconstruction, PoC generation, and attack workflow automation.

This is an engineering role with offensive depth, not a traditional pentesting or red‑team position.

What You’ll Build
  • Systems to ingest, normalize, and analyze PHP execution traces:
    • Function calls, parameters, control flow, side effects
    • No native binary reversing—focus is PHP‑level execution and logic
  • Tooling that infers:
    • Vulnerable code paths
    • Authorization and logic flaws
    • Nonce and state‑handling weaknesses
  • Automated pipelines that:
    • Convert CVE descriptions + PHP source code into working PoCs
    • Replay inferred exploit paths deterministically
  • LLM‑assisted frameworks for:
    • Exploit skeleton generation
    • Parameter and payload inference
    • Exploit mutation and robustness testing
  • High‑fidelity exploit simulations targeting:
    • admin‑ajax.php
    • WordPress REST APIs
    • Plugin‑specific endpoints
  • Infrastructure that transforms exploit mechanics into signals usable by detection and prevention systems
Requirements
Must Have
  • Strong background in security engineering or offensive security automation
  • Hands‑on experience exploiting WordPress plugins, themes, or PHP applications
  • Deep understanding of:
    • PHP execution model and request lifecycle
    • WordPress internals (nonces, hooks, REST, admin flows)
    • HTTP semantics, sessions, cookies, and authorization
  • Proven ability to read, reason about, and exploit PHP source code
  • Strong Python engineering skills for building:
    • Automation pipelines
    • Analysis tooling
    • Exploit frameworks
Nice to Have
  • Exploit framework usage experience like MSF, Core Impact, Immunity Canvas
  • Prior experience using LLMs to automate exploit development:
    • PoC generation
    • Workflow automation
    • Payload mutation or inference
  • Experience with:
    • Execution traces or application‑level call graphs
    • Fuzzing or vulnerability discovery pipelines
  • Familiarity with tools like WPScan, Nuclei, Metasploit, Burp
  • Contributions to exploit tooling, frameworks, or security automation
  • Public CVEs or PoCs (helpful but not required)
What This Role Is Not
  • ❌ Manual pentesting or report‑driven consulting
  • ❌ SOC or alert‑triage work
  • ❌ Pure vulnerability research without automation
Why This Role Is Interesting
  • You’ll work with real zero‑day attack telemetry, not just public CVEs
  • You’ll build repeatable systems, not one‑off demos
  • LLMs are used pragmatically, as part of production pipelines
  • Your work directly shapes how real WordPress attacks are detected and stopped
  • High autonomy, deep technical ownership
Benefits
What’s in it for you?
  • A focus on professional development
  • Interesting and challenging projects
  • Fully remote work with flexible working hours, that allows you to schedule your day and work from any location worldwide
  • Paid 24 days of vacation per year, 10 days of national holidays, and unlimited sick leaves
  • Compensation for private medical insurance
  • Co‑working and gym/sports reimbursement
  • Budget for education
  • The opportunity to receive a reward for the most innovative idea that the company can patent

By applying for this position, you consent to the processing of your personal data as described in our Privacy Policy (https://cloudlinux.com/candidate-privacy-notice), which provides detailed information on how we maintain and handle your data.

Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra y suelta tu archivo aquí
Similar jobs

Puestos de trabajo similares que vale la pena comparar

Senior Security Engineer - WordPress & PHP Automation
Senior Security Engineer - WordPress & PHP Automation

CloudLinux • Valencia

Presencial
EUR 60.000 - 90.000
Engineering Team Lead - Email Security (Imunify Email & Email Gateway) (remote)
Engineering Team Lead - Email Security (Imunify Email & Email Gateway) (remote)

Cloudlinux • España

A distancia
USD 150.000 - 210.000
Fully remote work with flexible hours
Paid 24 days of vacation per year + 10
National holidays
+5
Staff Engineer, KernelCare (worldwide remote, work anywhere)
Staff Engineer, KernelCare (worldwide remote, work anywhere)

Cloudlinux • España

A distancia
USD 140.000 - 170.000
Fully remote work
Flexible working hours
Paid vacation and holidays
+4
Product Security Engineer
Product Security Engineer

Gomining • España

Híbrido
EUR 65.000 - 90.000
Professional development
Flexible work arrangement
Paid time off
+2
Senior pentester
Senior pentester

GMV • Tres Cantos

Híbrido
EUR 55.000 - 70.000
Hybrid work model
Flexible working hours
Personalized career development plan
+2
Technical Team Lead, Contract
Technical Team Lead, Contract

Xcelirate • Barcelona

A distancia
EUR 145.000
Competitive salary with retention bonus
Top-notch workstation
Global co-working access
+2
DevOps Security Engineer
DevOps Security Engineer

Decentralized Masters • Barcelona

Presencial
EUR 70.000 - 100.000
Competitive salary
Performance-based incentives
Direct exposure to founders
+2
Associate Security Engineer
Associate Security Engineer

Spendesk • Barcelona

Híbrido
EUR 40.000 - 70.000
Flexible on-site and remote policy
Latest Apple equipment
Access to Moka.care
+2
WordPress Developer (m/f/d)
WordPress Developer (m/f/d)

JOIN • Barcelona

Híbrido
EUR 45.000 - 75.000
Apple hardware – The best tools for the job (MacBook)
Team events – Brunches and sports activities
104 days remote work per year
+1
Senior Security Engineer
Senior Security Engineer

Auctane • Sevilla

Presencial
EUR 75.000 - 83.000
Private health insurance
26 days holiday per year
Annual salary review
+2