Source Job

$190,000–$319,000/yr
US

  • Design and ship security workflows combining deterministic analysis with LLM reasoning to find real vulnerabilities across languages and frameworks.
  • Engineer agentic pipelines and prompts that are precise, cost-aware, and trustworthy for security-critical work.
  • Push on hard problems in automated triage and validation to close the gap between finding and actionable fix.

Application Security Program Analysis Python

20 jobs similar to Security Researcher

Jobs ranked by similarity.

$190,800–$267,100/yr
US

  • Review and threat model AI-powered product features, LLM integrations, and agentic workflows before launch.
  • Build reusable AI security primitives like guardrails, scanners, and policy checks to secure AI development.
  • Design security tooling to detect and prevent prompt injection, jailbreaks, and data leakage in AI systems.

Reddit is a community of communities built on shared interests, passion, and trust, hosting open conversations. With over 100,000 active communities and 126 million daily active users, it is one of the largest sources of information online.

UK

  • Perform hands-on security testing and code review across web applications and APIs.
  • Conduct threat modeling and embed secure development practices into the SDLC.
  • Build and tune security tooling, including SAST, DAST, and CI/CD automation.

Prolific builds human data infrastructure for AI development, connecting researchers with a global participant pool to collect high-quality, ethically sourced behavioral data. They are a mission-driven company trusted by world-leading research institutions and AI labs, with a remote-first culture.

US

  • Design, build, and operate an AI-augmented red teaming harness using frontier LLM APIs.
  • Conduct adversarial testing across four attack perspectives to discover and chain vulnerabilities.
  • Assume ownership of security stage-gates within our CI/CD pipeline.

We provide a cloud-native platform called Silo that enables digital analysts to securely and anonymously investigate threats. We serve over 750 organizations and value integrity, collaboration, and innovation.

Global Unlimited PTO

  • Conduct application security reviews including threat modeling, code review, and risk assessment for new features.
  • Perform and improve SAST/DAST operations, triage, validation, and remediation tracking in CI/CD pipelines.
  • Apply and improve AI security review processes for LLM-integrated features and agentic attack surfaces.

Monarch is a powerful, all-in-one personal finance platform designed to simplify money management. They are a fully remote team of do-ers led by experienced entrepreneurs, passionate about building a product people love.

US 18w maternity 16w paternity

  • Contribute to secure-by-design practices and advance the S-SDLC program.
  • Mentor engineers on secure coding and career growth.
  • Evaluate and recommend AI-assisted security tooling.

Spring Health is a global mental health company eliminating every barrier to mental health. They reach more than 170 million people worldwide and are an AI-native company focused on expanding the reach, quality, and humanity of care.

US

  • Secure AI systems and use AI to scale security, conducting security reviews and threat modeling of AI-integrated product features.
  • Deliver end-to-end application security reviews for high-risk features, working directly with engineering teams to surface and close risk.
  • Advance CI/CD pipeline security by operating and evolving security scanning controls in GitLab pipelines.

Smartsheet empowers teams to manage work and scale solutions by uniting human teams with AI agents. They are a large company with over 20 years of experience, fostering a culture where ideas are heard and contributions have real impact.

India

  • Partner with engineering, product, and DevOps teams to integrate security practices throughout the SDLC, focusing on cloud-native environments and automated pipelines.
  • Design, implement, and maintain security tooling and gates within CI/CD pipelines covering SAST, DAST, SCA, secrets detection, and container scanning.
  • Lead threat modeling, conduct application security assessments including code review and manual penetration testing, and triage bug bounty reports.

Hyland is the pioneer of the Content Innovation Cloud, delivering ubiquitous enterprise intelligence to organizations. With a team of nearly 4,000 employees, the company fosters an employee-centric culture focused on community impact and innovation.

Europe

  • Define security requirements and design application architectures following a secure-by-default approach.
  • Conduct threat modeling, code reviews, and penetration testing on cloud-based web and mobile apps.
  • Implement, manage, and automate SAST/DAST/SCA security controls and WAF rules to enforce protection at scale.

Prima is a motor insurance company that uses data and technology to provide a great experience for drivers. They are trusted by over 5 million drivers and have over 350 engineers in their Engineering department, fostering a culture of curiosity and collaboration.

India

  • Monitor enterprise AI usage end to end to detect unauthorized AI tools and rogue agent activity.
  • Investigate alerts related to autonomous agents and AI-powered workflows, including data exfiltration and credential misuse.
  • Partner with security, legal, and engineering teams to align findings with incident response processes and support ISO 42001 audits.

AlphaSense provides AI-driven market intelligence and search to help companies make informed decisions. With over 2,000 employees across the globe, the company fosters a collaborative and innovative culture.

$100,000–$150,000/yr
United States

  • Design and implement security controls for AI systems, including LLMs and ML pipelines.
  • Develop threat models and guardrails to protect against adversarial ML risks like prompt injection and model abuse.
  • Collaborate with cross-functional teams to ensure secure and responsible deployment of AI capabilities at scale.

Jobgether is a platform that uses AI-powered matching to connect candidates with job opportunities. They partner with companies to manage applications and next steps, focusing on efficient and fair hiring processes.

North America Unlimited PTO 12w maternity 8w paternity

  • Lead state-of-the-art research and development in AI/ML, advanced statistical modeling, and applied mathematics to solve security problems.
  • Develop novel AI workflows and models to address Ent's security challenges, incorporating and advancing current SOTA approaches.
  • Collaborate with the team to invent frameworks and theoretical grounding while thinking outside the box to combine multiple techniques.

Ent is an intent-aware workspace security platform that secures human and AI-driven work by understanding intent and intervening at the moment of risk. Founded by former RiskIQ co-founders, backed by leading VCs, and in production with Global 2000 customers, the company values a customer-first, humble, and urgent culture.

$131,250–$150,000/yr
United States Canada Dominican Republic Unlimited PTO

  • Lead application and product security across Forward-built, third-party, and AI-built software.
  • Evolve the pentest program and proactively build AI solutions within the appsec function.
  • Own remediation workflows and partner with teams to build controls for external exposure.

Forward Financing is a financial technology company that unlocks capital for small businesses across America. They are a recognized Best Place to Work with a remote-first culture and team members across the US, Canada, and Dominican Republic.

$175,000–$200,000/yr
United States Dominican Republic Canada

  • Lead application and product security across Forward-built, third-party, and AI-built software.
  • Evolve the pentest program to aggressively test and remediate vulnerabilities in existing and new software.
  • Build and integrate AI solutions within the appsec function.

Forward Financing is a financial technology company that unlocks capital for small businesses across America. Recognized as a Best Place to Work, it invests in employees, technology, and customer experience with a long-term focus.

Global

  • Be the security expert enterprise customers trust, owning calls and deep-dives with sophisticated security teams at Fortune 500 companies.
  • Lead AI security conversations credibly on agent behavior, MCP exposure, and governance frameworks like ISO 42001.
  • Build automation and AI agents that shrink manual security review work, turning reviews into a customer onboarding accelerator.

Atlan builds the context layer for enterprise AI, connecting business context behind data to ensure accuracy and confidence for AI agents. Backed by top investors and trusted by Fortune 500 companies like General Motors and Nasdaq, Atlan fosters an AI-native, high-trust, remote-first culture.

US 5w PTO

  • Own key security domains such as vulnerability management, application security, API security, and supply chain security.
  • Partner with engineering teams to integrate security into design reviews, threat modeling, CI/CD pipelines, and developer workflows.
  • Develop and improve security tooling and automation to reduce manual effort and leverage AI for triage and detection.

NinjaTrader is an industry-leading trading platform and futures broker that empowers traders with award-winning software and brokerage services. Since 2003, the company has grown to over 2 million users and is the number one rated futures brokerage worldwide, fostering a dynamic culture focused on social connection, professional development, and employee recognition.

$175,000–$217,000/yr
US Unlimited PTO

  • Build into the product by writing investigation flows, building integrations with security tools, and fixing bugs.
  • Evolve the investigation logic and pipelines to handle new classes of security alerts, balancing accuracy, performance, and maintainability.
  • Contribute directly to the Python codebase while influencing architectural decisions and long-term product strategy.

Dropzone AI scales cybersecurity beyond human limits by augmenting security engineers with AI specialists. The venture-backed company is disrupting the $200B+ cybersecurity market and has a team with deep experience in cybersecurity, AI/ML, and SaaS.

$130,000–$170,000/yr
US

  • Partner with product and engineering teams to identify risks early and build security into new features.
  • Lead threat modeling and secure design reviews for new products and architecture changes.
  • Perform security-focused code reviews and maintain application security tooling integrated into CI/CD.

Jump builds AI-powered tools that help financial advisors automate meeting prep, notes, and follow-up. It is a small startup with a culture that prioritizes security and trust, and security is core to the product.

Global

  • Conduct advanced offensive security research across cloud infrastructure (AWS, GCP), production services, internal tooling, and AI platforms.
  • Design and execute realistic adversary simulations targeting identity systems, cloud control planes, supply chains, and distributed architectures.
  • Research emerging attack vectors against LLMs, AI agents, retrieval systems, MCP integrations, prompt orchestration, and autonomous workflows.

This venture-backed AI company combines world-class human expertise with advanced machine learning workflows to help leading AI organizations build and improve cutting-edge models. Backed by over $40 million in funding and a rapidly expanding international network, it operates as a distributed, remote-first team.

$121,000–$181,600/yr
United States Canada

  • Analyze, assess, reproduce, and triage incoming security vulnerability reports from the bug bounty program.
  • Communicate clearly with security researchers and drive the lifecycle of submissions through to resolution.
  • Understand root causes of vulnerabilities and advise on mitigation strategies to improve security posture.

Stripe is a financial infrastructure platform for businesses, enabling millions of companies to accept payments, grow revenue, and accelerate new business opportunities. As a large, mission-driven company, Stripe fosters a culture of passion, grit, and integrity with diverse perspectives.

$120,000–$154,440/yr
US 12w maternity 12w paternity

  • Architect, design, and implement end-to-end security solutions including firewalls, intrusion detection, and cloud security controls.
  • Collaborate with DevOps to integrate security into CI/CD pipelines and automate secure deployments.
  • Conduct regular security assessments, threat modeling, and architecture reviews to identify risks and design mitigations.

Figure is transforming capital markets through blockchain, powering real products used by hundreds of thousands of consumers and institutions. With over 170 partners and $22 billion in home equity loans originated, Figure is the largest non-bank provider of home equity financing in the U.S., recognized as one of Forbes' Most Innovative Fintech Startups in 2025.