Application Security Research Engineer

Commit

Warszawa

On-site

PLN 517,000 - 775,000

Full time

8 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Commit seeks an Application Security Research Engineer to relocate to Barcelona. You will lead a team of researchers and ethical hackers focused on offensive security testing, automated exploit discovery, and advanced application security research.

This hands-on role shapes the security posture of products and advances secure-by-design principles. You will plan and execute advanced penetration testing campaigns, build scalable tools, and drive security innovation.

Qualifications

  • 2+ years leading application security research teams.
  • 7+ years in research and penetration testing.
  • Strong coding skills and deep technical understanding of web, API, cloud-native, and backend technologies.
  • AI and LLM penetration testing knowledge and experience.
  • Experience with penetration testing tools (Burp Suite, Metasploit, etc.) and custom security tools development.
  • Familiarity with modern architectures (cloud, microservices, containers, Kubernetes).
  • Familiarity with secure software architecture and typical attack vectors.
  • Demonstrated ability to lead security testing engagements and report findings.

Responsibilities

  • Build and lead a team of security researchers and penetration testers.
  • Help to reshape company Product Security.
  • Plan and execute advanced penetration testing campaigns.
  • Develop tools and frameworks for scalable security testing and fuzzing.
  • Lead security innovation by building and managing penetration testing tools and AI agents.
  • Analyze vulnerabilities, perform root cause analysis, and develop proofs of concept.
  • Identify systemic product weaknesses and define long-term mitigations.
  • Collaborate with engineering teams to reproduce, triage, and fix vulnerabilities.
  • Contribute to security research publications, CVE submissions, and knowledge sharing.
  • Continuously evolve internal testing capabilities using modern tooling and AI-assisted approaches.

Skills

Team leadership
Penetration testing
Web/API/Cloud
AI/LLM security
Security tools
Kubernetes
CI/CD security
Publications

Tools

Burp Suite
Metasploit
Custom tools
CI/CD tooling

Job description

The company is seeking an Application Security Research Engineer to relocate to Barcelona. In this role, you will lead a team of researchers and ethical hackers focused on offensive security testing, automated exploit discovery, and advanced application security research. Your work will directly influence the security posture of company products and help scale secure-by-design principles. This is a hands-on technical role with a strong emphasis on offensive security, code exploitation, automation, and innovation.

What You will Do
  • Build and lead a team of security researchers and penetration testers.
  • Help to reshape company Product Security
  • Plan and execute advanced penetration testing campaigns.
  • Develop tools and frameworks for scalable security testing and fuzzing.
  • Lead Security innovation by building and managing penetration testing tools \ AI Agents
  • Analyze vulnerabilities, perform root cause analysis, and develop proofs of concept.
  • Identify systemic product weaknesses and help define long-term mitigations.
  • Collaborate with engineering teams to reproduce, triage, and fix vulnerabilities.
  • Contribute to security research publications, CVE submissions, and industry knowledge sharing.
  • Continuously evolve internal testing capabilities using modern tooling and AI-assisted approaches.
Requirements
  • Proven 2+ years of experience in leading application security research Teams (SAAS or software company).
  • 7+ year experience in Research and penetration testing.
  • Strong coding skills and deep technical understanding of web, API, cloud-native, and backend technologies.
  • AI and LLM Penetration testing knowldge and Experience
  • Experience with penetration testing tools (Burp Suite, Metasploit, etc.) and Custom Security Tools development.
  • Familiarity with modern architectures (e.g., Cloud, microservices, containers, Kubernetes).
  • Familiarity with secure software architecture and typical attack vectors.
  • Demonstrated ability to lead security testing engagements and report technical findings effectively.
  • Experience building or integrating automated PT or fuzzing pipelines is a strong advantage.
  • Knowledge and hands-on experience with SSDLC tools and CI/CD pipelines,
  • Publications or open-source contributions in the security domain are a plus.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Engineer (relocation to Barcelona)
Application Security Engineer (relocation to Barcelona)

Commit • Warszawa

On-site
PLN 60,000 - 90,000
Lead Offensive Security Researcher – App Security (Barcelona)
Lead Offensive Security Researcher – App Security (Barcelona)

Commit • Warszawa

On-site
PLN 517,000 - 775,000
Application Security Engineer (relocation to Barcelona)
Application Security Engineer (relocation to Barcelona)

CommIT • Poland

On-site
PLN 80,000 - 100,000
Offensive Security Engineer: AI App Security & Fuzzing
Offensive Security Engineer: AI App Security & Fuzzing

Commit • Warszawa

On-site
PLN 60,000 - 90,000
Application Security Engineer - Senior
Application Security Engineer - Senior

SOFTSWISS • Warszawa

On-site
PLN 210,000 - 270,000
Private health insurance
Sports benefits
Mental Health Program
+6
Software Engineer and Security Researcher
Software Engineer and Security Researcher

Commit • Warszawa

Hybrid
PLN 190,000 - 270,000
Lead Security Engineer
Lead Security Engineer

S&P Global, Inc. • Poland

On-site
PLN 254,000 - 382,000
Health care coverage
Generous time off
Continuous learning resources
+2
Application Security Engineer
Application Security Engineer

SOFTSWISS • Warszawa

Hybrid
PLN 60,000 - 90,000
Full-time remote work opportunities
Private insurance
Additional 1 Day Off per calendar year
+5
Senior Pentester (Security Engineer)
Senior Pentester (Security Engineer)

DEVTALENTS Sp. z o.o. • Województwo mazowieckie

On-site
PLN 80,000 - 100,000
Influence over security architecture
Supportive culture for professional growth
Application Security Engineer
Application Security Engineer

SOFTSWISS • Poland

On-site
PLN 218,000 - 328,000
Full-time remote work opportunities
Private insurance
Sports program compensation
+2