Source-listed Job

Application Security Engineer – CVE & Vulnerability Research

Anyone AI is recruiting experienced Application Security Engineers and Vulnerability Researchers for a specialized project focused on reviewing real-world software vulnerabilities,

Job Remote Source description available
Anyone Ai Careers Source published Oct 10, 2026 Source retrieved Oct 10, 2026
Source: Anyone Ai Careers · A retrieval date records when our system last obtained the source record. It does not guarantee the vacancy is still open or that every detail has been independently checked.
Description from the source The source description is formatted below for discovery. The provider owns the original wording and may change its requirements or close applications.
EmploymentContract
Work modeRemote / location-flexible

Overview

Anyone AI is recruiting experienced Application Security Engineers and Vulnerability Researchers for a specialized project focused on reviewing real-world software vulnerabilities,

Full job description

Anyone AI is recruiting experienced Application Security Engineers and Vulnerability Researchers for a specialized project focused on reviewing real-world software vulnerabilities, CVE reproductions, remediation approaches, and exploit verification environments. We’re looking for security professionals with hands-on experience in penetration testing, vulnerability research, or application security who can determine whether vulnerabilities are reproduced accurately, fixes address the actual root cause, and security tests reliably demonstrate that an exploit has been mitigated. WHAT YOU’LL WORK ON You’ll review technical security tasks involving:

  • CVE vulnerability reproduction
  • Exploit proof-of-concepts
  • Vulnerability remediation and secure coding
  • Application security testing
  • Docker-based vulnerability labs
  • Exploit verification scripts
  • Security regression testing
  • CVSS, CWE, and vulnerability classification
  • Environment and configuration analysis
  • Edge cases and alternative attack paths A key part of the role is determining whether a vulnerability environment accurately recreates the original attack conditions and whether a proposed fix genuinely eliminates the vulnerability without breaking legitimate functionality. WHAT WE’RE LOOKING FOR
  • 3+ years of hands-on experience in application security, penetration testing, or vulnerability research
  • Strong understanding of CVE, CVSS, CWE, and common vulnerability classes
  • Experience identifying and remediating vulnerabilities such as:
  • SQL injection
  • Command injection
  • SSRF
  • Deserialization vulnerabilities
  • Buffer overflows
  • Privilege escalation
  • Access control issues
  • Security misconfigurations
  • Strong understanding of secure coding and vulnerability remediation
  • Experience reviewing or developing exploit proof-of-concepts
  • Experience validating whether security fixes address the root cause rather than only the immediate exploit
  • Proficiency with Docker and Docker Compose
  • Ability to provide clear, technically rigorous written feedback WHAT YOU’LL BE RESPONSIBLE FOR
  • Reviewing CVE reproduction environments for technical accuracy
  • Determining whether vulnerabilities faithfully reproduce the original attack vector and impact
  • Evaluating proposed security fixes and remediation strategies
  • Reviewing test suites that verify both:
  • Normal application functionality remains intact
  • The original exploit no longer succeeds
  • Identifying incomplete fixes and alternative exploitation paths
  • Reviewing Docker environments for correct software versions, services, networking, and configuration
  • Detecting potential regressions or new vulnerabilities introduced by a fix
  • Providing recommendations for improving vulnerability reproductions, fixes, and verification logic NICE TO HAVE
  • OSCP, GPEN, GWAPT, or equivalent security certification
  • Experience with responsible vulnerability disclosure or CVE reporting
  • Experience maintaining exploit proof-of-concept code
  • Experience writing automated security tests using tools such as:
  • Python
  • requests
  • curl
  • pwntools
  • Custom exploit harnesses
  • DevSecOps experience
  • Familiarity with SAST, DAST, and CI/CD security tooling
  • Experience developing or reviewing cybersecurity assessments or technical security challenges
  • Experience with AI evaluation, RLHF, or technical data projects ENGAGEMENT Work Type: Remote Engagement: Part-time, project-based consulting Focus: Application security, vulnerability research, CVE reproduction, and remediation This role is ideal for security engineers who enjoy understanding how vulnerabilities actually work, reproducing exploits in controlled environments, evaluating security fixes, and identifying subtle gaps that traditional testing may miss.

Tips for this job

Practical JobOpportunity guidance. These tips do not replace official rules or create new eligibility requirements.

  1. Tailor the CV and application to the responsibilities and required skills stated on the official employer page.
  2. Use concrete evidence of relevant work, projects and measurable results rather than generic claims.
  3. Confirm location, work authorization, remote restrictions and sponsorship terms before applying.
  4. Apply through the original employer or official recruitment destination shown on this page.
Original authoritative source

JobOpportunity.info helps you discover and organize source listings. Confirm eligibility, dates, salary/funding and application instructions on the original source before submitting anything.

Apply through JobOpportunity →

Browse current JobOpportunity listings from Anyone Ai Careers →

Related opportunities

Other source-listed records you may want to review.

Job

Engineering Operations Tech, ADC Infraops AG

Amazon Data Services, Inc. · United States

The Data Center Engineering Operations Technicians (EOTs) are Amazon’s front line responders for hands-on electrical and mechanical operations an...

Job

Network Deploy Technician , Global Network Delivery

Amazon Data Services, Inc. · United States

AWS Infrastructure Services owns the design, planning, delivery, and operation of all AWS global infrastructure. In other words, we’re the people...

Job

Supply Chain Manager, Consumables (Health & Wellness)

Amazon.com Services LLC · United States

Are you ready to take your supply chain expertise to the next level? As a Supply Chain Manager, you will be at the forefront of strategic plannin...

Job

Amazon Ads Account Manager, Large Customer Sales (LCS)

Amazon Support Services Costa Rica SRL · Costa Rica

Amazon Ads operates at the intersection of eCommerce and advertising, offering a rich array of advertising solutions. We partner with advertisers...

Job

Equipment Maint Technician, Amazon Leo

Amazon Kuiper Manufacturing Enterprises LLC · United States

Amazon Leo is Amazon’s low Earth orbit satellite network. Our mission is to deliver fast, reliable internet connectivity to customers beyond the...

Job

Infra Delivery Install Technician

Amazon Data Services, Inc. · United States

Transform network infrastructure by joining our dynamic team! You'll be at the forefront of developing innovative solutions that drive network st...

More ways to save

Discover deals, coupons and free courses on our sister site.

Explore DealVorio
Save more with DealVorio: deals, coupons, free courses, apps and books