Software Engineer and Security Researcher

Commit

Warszawa

Hybrid

PLN 190,000 - 270,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Commit is seeking a Software Engineer and Security Researcher for a hybrid role blending software engineering with deep cybersecurity expertise. You’ll work across CSPM/CNAPP-related areas, applying AI-driven development practices and building secure features for cloud posture, identity, attack paths, and more.

The role emphasizes rapid iteration, production-quality code, and collaboration with product and research teams.

Qualifications

  • 5+ years as a software engineer with end-to-end delivery.
  • Strong cybersecurity fundamentals across cloud platforms and threat modeling.
  • Hands-on experience with AI-driven development and coding agents.
  • Experience shipping with AI assistants or LLM tools in production.
  • Experience with at least one major cloud platform (AWS/Azure/GCP).
  • Excellent communication with technical and non-technical stakeholders.

Responsibilities

  • Design, build, and ship product features end-to-end, from research to production.
  • Apply cybersecurity expertise to feature decisions and risk modeling.
  • Own cloud security capabilities across CSPM and beyond.
  • Drive AI into the development loop with prompts and evaluation.
  • Collaborate with product, research, and engineering teams with clear specs and handoffs.

Skills

Software engineering
Cybersecurity
AI / LLM tooling
Cloud platforms
Communication

Education

Bachelor's degree in Computer Science

Tools

Terraform
LLM tools

Job description

We’re hiring a Software Engineer and Security Researcher to help build our top-tier cybersecurity product. This is a hybrid role by design: a strong software engineer who also brings a deep cybersecurity background. Strong engineering velocity is how features get shipped; serious security expertise is how those features get shipped right. You should have an understanding of how attackers and defenders actually operate. The product space is CSPM/CNAPP-related, but extends beyond it. Expect to work across cloud posture, identity, attack paths, prioritization, detection, and adjacent areas as the product evolves. The pace is high. AI is part of how we work, every day.

Responsibilities
  • Design, build, and ship product features end-to-end: from security research to architecture and production code to release.
  • Apply cybersecurity expertise to every feature decision: what to detect, how to model risk, what makes a finding actionable, where customers will be misled by noise, and how to translate raw cloud signal into something a security team can trust and act on.
  • Own cloud security capabilities across CSPM and beyond: posture, identity, attack paths, severity/prioritization, detections, and emerging areas of the platform.
  • Drive AI into the development loop. Use coding agents and LLM tools as a core part of how you design, prototype, build, debug, review, and document. Write strong prompts, evaluate outputs critically, and turn AI-generated work into production-quality code and logic.
  • Move fast, with judgment. Make tradeoffs explicit, ship iteratively, and learn from real customer signals.
  • Collaborate closely with product, research, and engineering peers: clear written specs, sharp communication, clean handoffs, customer-facing rationale.
Requirements
  • 5+ years as a software engineer. You design systems, write production code, reason about reliability and edge cases, and own delivery end-to-end.
  • Strong cybersecurity foundation. You understand threats, controls, identity, cloud risk, and why a “finding” is or isn’t worth a customer’s attention. This is what makes your feature decisions land.
  • Hands‑on experience developing with AI / AI‑driven development. This is a MUST.
  • You have meaningfully shipped work where coding agents, LLM tools, or in‑IDE AI assistants were a core part of how you built it. You can speak in detail about what worked, what didn’t, and how you got real leverage out of these tools.
  • Experience with at least one major cloud platform (AWS preferred; Azure or GCP also valid).
  • Comfortable operating at high pace: small batches, fast iteration, willingness to cut scope to ship, calm under pressure.
  • Strong communication: you can explain engineering and security tradeoffs to both technical and non‑technical stakeholders.
Nice to Have
  • Experience building CSPM/CNAPP products, cloud security detection/analytics pipelines, or other top‑tier security products.
  • Experience building or fine‑tuning AI‑powered developer workflows: custom agents, pipelines, evals, internal AI tooling, prompt frameworks.
  • Familiarity with cloud telemetry/log sources and correlating security signals across configuration, identity, and activity.
  • Infrastructure-as-Code (e.g., Terraform) and cloud‑native development experience.
  • Prior security research background: vulnerability research, threat research, or detection engineering.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Product Security Engineer
Product Security Engineer

StackAI • Poland

On-site
PLN 235,000 - 322,000
AI-Driven Cloud Security Engineer & Researcher
AI-Driven Cloud Security Engineer & Researcher

Commit • Warszawa

Hybrid
PLN 190,000 - 270,000
Director of Engineering
Director of Engineering

Internetwork Expert • Warszawa

Hybrid
PLN 682,000 - 1,062,000
Fully remote position
Global team
Flexible working hours
AI Security Architect
AI Security Architect

Sapiens • Poland

On-site
PLN 180,000 - 240,000
Director, Security Engineering & Operations
Director, Security Engineering & Operations

Cognism • Województwo mazowieckie

On-site
PLN 350,000 - 520,000
Lead Azure AI Security Engineer
Lead Azure AI Security Engineer

EPAM • Poland

On-site
PLN 85,000 - 110,000
Software Engineer, Security Foundations Engineering
Software Engineer, Security Foundations Engineering

Cisco Systems, Inc. • Kraków

On-site
PLN 150,000 - 190,000
Application Security Research Engineer
Application Security Research Engineer

Commit • Warszawa

On-site
PLN 517,000 - 775,000
Senior Cyber Security Analyst - EMEA
Senior Cyber Security Analyst - EMEA

Internetwork Expert • Warszawa

On-site
PLN 218,978 - 364,964
Flexible Working Hours
Remote Work
Modern Development Workflows
+2
Offensive Security Engineer: AI App Security & Fuzzing
Offensive Security Engineer: AI App Security & Fuzzing

Commit • Warszawa

On-site
PLN 60,000 - 90,000