Staff Security Researcher (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Staff Security Researcher (Cybersecurity): Identifying and mitigating critical security vulnerabilities in open source projects with an accent on building security tools for developers and AI-driven research. Focus on conducting high-impact research, uncovering emerging attack patterns, and guiding the overall security strategy for the open source ecosystem.
Location: Remote, Germany
Company
is the world’s leading AI-powered developer platform and home to the largest open-source community on earth.
What you will do
- Conduct high-impact security research to identify critical vulnerabilities and track adversaries.
- Develop and publish tools designed to help open source maintainers secure their code.
- Collaborate with open source maintainers to resolve issues and coordinate vulnerability disclosures.
- Position as a security leader by publishing blog posts and presenting at industry conferences.
- Mentor other researchers and influence architectural decisions for ’s product suite.
Requirements
- Proven track record of finding high or critical severity CVEs in products or projects.
- History of publishing security-focused blog posts or presenting at security conferences.
- 10+ years of experience in security research, cyber security, security analysis, or software development (lower requirements if holding advanced degrees).
- Business-level fluency in English.
- Must be based in Germany.
Nice to have
- Experience using AI to find vulnerabilities or expertise in prompt injection attacks.
- Experience delivering main-stage, non-sponsored presentations at top security conferences.
- 1+ year of experience working directly with or open source software.
Culture & Benefits
- Remote-first work environment allowing for flexible work terms.
- Competitive compensation and generous learning and growth opportunities.
- Culture built on developer empathy, transparency, and inclusive collaboration.
- Comprehensive benefits package to support employees globally.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →