Enable job alerts via email!

Security Research Engineer - Security Testing

Wallarm Inc.

California (MO)

Remote

USD 80,000 - 120,000

Full time

6 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a forward-thinking company dedicated to making the Internet safer. As a Security Research Engineer, you'll drive innovation in API security by developing advanced testing capabilities and collaborating with engineering teams. This role offers the opportunity to work remotely with flexible hours while contributing to cutting-edge solutions that protect businesses against evolving threats. With a competitive salary and a focus on professional development, this position is perfect for those passionate about security research and technology.

Benefits

Remote Work
Flexible Working Hours
Competitive Salary
Paid Days Off
Medical Insurance
Working Equipment
Professional Development

Qualifications

  • Proven experience in security roles with a focus on API security.
  • Strong understanding of application security concepts and vulnerability exploitation.

Responsibilities

  • Investigate emerging API threats and enhance security testing capabilities.
  • Design and implement new testing features in collaboration with developers.

Skills

Security Engineering
API Security
Vulnerability Management
Automation for Security Testing
Communication Skills

Education

Bachelor's Degree in Computer Science or related field

Tools

SAST/DAST Tools
CI/CD Pipelines
Programming Languages (Python, Go, Ruby)

Job description

Short facts about us:

  • We are a global remote-first team of 100+ people on 4 continents and in 10+ countries.

  • We have been protecting our clients since 2016.

  • The company has raised over $10M in investments.

  • More than 200 customers around the world, including Fortune 500, Nasdaq, and high-growth startups choose Wallarm to protect their API and web applications.

  • The company passed Y Combinator, the most prestigious incubator in Silicon Valley, from which Dropbox, Stripe, Docker, etc. came out.

Our product:

Wallarm API security solutions provide proven performance to support innovative companies serving millions of users and billions of API requests per month. Hundreds of Security and DevOps teams globally use Wallarm daily to:

  1. Discover. See every asset across your entire attack surface—from cloud environments to every API endpoint with auto-discovery capabilities.

  2. Protect. A single suite that goes beyond OWASP Top 10 for full coverage for API specific threats, account takeover, malicious bots, L7 DDoS, and more.

  3. Respond. Streamline incident response with complete visibility, smart triggers, and active threat verification.

  4. Test. Automate security testing of your APIs and web assets. Prioritize remediation for every asset, in every environment.


About the role:

As a Security Research Engineer for our Security Testing Product, you will drive innovation in API security by researching, designing, and developing advanced testing capabilities. You will collaborate with engineering teams to identify and address emerging threats, ensuring our solutions remain at the forefront of the industry. This role requires deep technical expertise, a passion for security research, and the ability to translate complex vulnerabilities into actionable solutions.

Key Responsibilities:

  • Security Research: Investigate emerging API threats, vulnerabilities, and attack vectors (e.g., OWASP API Top 10) to enhance our security testing capabilities.

  • Feature Development: Design and implement new testing features, such as automated vulnerability scanning and API-specific threat detection, in collaboration with developers.

  • Technical Leadership: Define technical requirements for complex security features and guide their implementation.

  • Threat Analysis: Analyze industry trends, competitor offerings, and real-world attack patterns to inform product enhancements.

  • Collaboration: Work closely with engineering, product, and customer success teams to integrate security best practices (e.g., OWASP API Top 10) into our solutions.

  • Innovation: Propose and prototype cutting-edge testing methodologies, including AI-driven or MLOps-based approaches to threat detection.


Must-Have Skills:

  • Proven experience as a Security Engineer, Security Researcher, or similar role in the security domain (e.g., SAST/DAST, Vulnerability Management, or API security).

  • Strong understanding of API protocols such as JSON-API, GraphQL, XML-RPC, JSON-RPC, OData, gRPC, WebSocket, SOAP, and others.

  • Expertise in application security concepts (e.g., OWASP Top 10, OWASP API Top 10) and vulnerability exploitation techniques.

  • Past experience in automation for security testing tools and pentests.

  • Knowledge of Secure Software Development Lifecycle (SSDLC) and integrating security solutions into CI/CD pipelines.

  • Excellent communication skills to articulate complex security concepts to technical and non-technical stakeholders.

Nice-to-Have Skills:

  • Expertise in API-specific attacks or participation in vulnerability assessments (e.g., bug bounty programs).

  • Proficiency in programming languages like Python, Go, or Ruby for scripting and tool development.

  • Familiarity with MLOps practices or AI-driven approaches to threat detection.

What we offer:

  • Ability to work on a product that makes the Internet safer

  • Completely remote work and flexible working hours

  • Competitive salary and bonuses

  • Paid days off

  • Medical insurance

  • Working equipment

  • Professional development and career growth

Join us in building cutting-edge solutions that empower businesses to secure their APIs and web applications against ever-evolving threats!

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Security Research Engineer - Security Testing

Wallarm Inc.

Harrisonburg

Remote

USD 80,000 - 120,000

22 days ago

Research Engineer

Intelliswift - An LTTS Company

Remote

USD 80,000 - 100,000

2 days ago
Be an early applicant

Research Engineer/Scientist- Security and Privacy

Robert Bosch Group

Pittsburgh

On-site

USD 90,000 - 150,000

Today
Be an early applicant

Research Engineer (Applied Research)

Freddie Mac

Remote

USD 80,000 - 140,000

6 days ago
Be an early applicant

Liquid Rocket Research Engineer

Sierra Lobo

California

On-site

USD 70,000 - 110,000

7 days ago
Be an early applicant

Senior Liquid Rocket Research Engineer

Sierra Lobo

California

On-site

USD 80,000 - 120,000

7 days ago
Be an early applicant

AI Engineer/Research

Soraban

California

Remote

USD 80,000 - 100,000

30+ days ago

AI Engineer/Research (initially remote, but will be in-person in 3-6 months)

Soraban

California

Remote

USD 90,000 - 150,000

30+ days ago

Research Engineer - HPC System Architecture

Hewlett Packard Enterprise Development LP

California

Hybrid

USD 80,000 - 130,000

3 days ago
Be an early applicant