19h ago
Senior Vulnerability Researcher
Sรฃo Paulo
full-timesenior Remotecybersecurity
๐ Tech Stack
๐ผ About This Role
You'll identify security vulnerabilities in web applications and APIs for a hypergrowth cybersecurity startup, then translate findings into automated testing logic. Your core impact will be evolving the platform's automated red team capabilities to help organizations proactively strengthen defenses. This role combines hands-on offensive security with automation-focused innovation. You'll collaborate closely with engineering and product teams to expand testing coverage and enhance the offensive security engine.
๐ฏ What You'll Do
- Perform security research on web applications, APIs, and complex workflows.
- Identify, validate, and reproduce real-world vulnerabilities in modern applications.
- Translate manual penetration testing techniques into automated detection logic.
- Develop and refine payloads, exploit strategies, and vulnerability validation methods.
๐ Requirements
- 5+ years hands-on vulnerability research or offensive security experience.
- Strong expertise in web application and API security.
- Deep understanding of authentication and authorization flows (JWT, OAuth, SSO).
- Proven experience identifying IDOR, business logic flaws, authentication bypasses, privilege escalation.
โจ Nice to Have
- Strong Python development skills.
- Experience with browser automation (Playwright, Selenium, Puppeteer).
- Familiarity with AI-driven security or automated exploitation workflows.
๐ Benefits & Perks
- ๐๏ธ 100% Remote Work
- ๐ฐ Highly Competitive USD Pay
- โฐ Paid Time Off
- ๐ง Work with Autonomy
- ๐ข Work with Top American Companies
๐จ Hiring Process
Estimated timeline: 2-4 weeks ยท AI estimate
- 1Recruiter Callยท 30 min
- 2Technical Interviewยท 60 min
- 3Team Fitยท 45 min
0 0 0