Security Engineer 1, Application Security
New
T
Trail of BitsCybersecurity
United StatesFull-TimeEntry
Salary$100,000 to $160,000
Apply NowOpens the employer's application page
Job Details
- Experience
- 0–2 years
- Required Skills
- PythonJavascriptTypeScriptC++GoRust
Requirements
- Demonstrable vulnerability research capability (CTF wins, published CVEs, or bug bounty finds).
- Strong code analysis skills to trace execution, identify logic flaws, and explain exploitability.
- Fluent in at least two of: Rust, Go, C, C++, Python, JavaScript, TypeScript, or similar.
- Deep understanding of memory corruption vulnerabilities and modern mitigations like ASLR, DEP, and CFI.
- Deep familiarity with operating systems, IPC, privilege boundaries, and system internals.
- Autonomous problem-solving skills with the ability to own pieces of engagements.
- Clear technical communication and ability to defend analysis to engineering teams.
Responsibilities
- Lead security assessments for specific components, modules, or systems within larger client engagements.
- Find and validate real vulnerabilities in application code and systems, explaining exploitation paths and impact.
- Design and build custom security testing tools and automation for vulnerability detection.
- Conduct threat modeling and architecture reviews of software systems to identify attack surfaces and data flows.
- Translate complex technical findings into clear, actionable recommendations for client engineering teams.
View Full Description & ApplyYou'll be redirected to the employer's site