Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Anyone AI

Application Security Engineer – CVE, Vulnerability Research

Anyone AI

. Review technical security tasks involving CVE vulnerability reproduction, exploit proof-of-concepts, vulnerability remediation, secure coding, application security testing, Docker-based vulnerability labs, exploit verification scripts, security regression testing, CVSS, CWE, vulnerability classification, environment and configuration analysis, and alternative attack paths .

Posted 10/10/2026part-timeRemote • ArgentinaMid-LevelSenior💰 $65 per hourWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in application security, vulnerability remediation, and secure coding practices, with a strong focus on CVE, CVSS, and CWE standards. Proficient in Docker and automated security testing, ensuring robust vulnerability management and remediation strategies.

Highest-signal resume keywords
Application SecurityVulnerability RemediationCVE UnderstandingDocker ProficiencyExploit Proof-of-Concept Development

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Vulnerability ResearchPenetration TestingSecure CodingSQL Injection RemediationCommand Injection RemediationSSRF RemediationPython AutomationExploit VerificationSecurity Regression TestingConfiguration Analysis
Soft Skills
Technical WritingClear Communication
Tools & Technologies
DockerDocker ComposeSAST ToolsDAST ToolsCI/CD Security Tooling
Certifications & Qualifications
OSCPGPENGWAPT
Industry Keywords
CVECVSSCWEVulnerability ClassificationExploit DevelopmentResponsible Vulnerability DisclosureCybersecurity AssessmentsTechnical Security Challenges

Tech Stack

Tools & technologies
Cyber SecurityDockerPythonSQL

About the role

Key responsibilities & impact
  • Review technical security tasks involving CVE vulnerability reproduction, exploit proof-of-concepts, vulnerability remediation, secure coding, application security testing, Docker-based vulnerability labs, exploit verification scripts, security regression testing, CVSS, CWE, vulnerability classification, environment and configuration analysis, and alternative attack paths
  • Determine whether vulnerability environments accurately recreate original attack conditions
  • Determine whether proposed fixes eliminate vulnerabilities without breaking legitimate functionality
  • Review CVE reproduction environments for technical accuracy
  • Evaluate proposed security fixes and remediation strategies
  • Review test suites to verify normal application functionality remains intact and the original exploit no longer succeeds
  • Identify incomplete fixes and alternative exploitation paths
  • Review Docker environments for correct software versions, services, networking, and configuration
  • Detect regressions or new vulnerabilities introduced by fixes
  • Provide recommendations for improving vulnerability reproductions, fixes, and verification logic

Requirements

What you’ll need
  • 3+ years of hands-on experience in application security, penetration testing, or vulnerability research
  • Strong understanding of CVE, CVSS, CWE, and common vulnerability classes
  • Experience identifying and remediating SQL injection, command injection, SSRF, deserialization vulnerabilities, buffer overflows, privilege escalation, access control issues, and security misconfigurations
  • Strong understanding of secure coding and vulnerability remediation
  • Experience reviewing or developing exploit proof-of-concepts
  • Experience validating whether security fixes address the root cause
  • Proficiency with Docker and Docker Compose
  • Ability to provide clear, technically rigorous written feedback
  • OSCP, GPEN, GWAPT, or equivalent security certification is a plus
  • Experience with responsible vulnerability disclosure or CVE reporting is a plus
  • Experience maintaining exploit proof-of-concept code is a plus
  • Experience writing automated security tests using Python, requests, curl, pwntools, or custom exploit harnesses is a plus
  • DevSecOps experience is a plus
  • Familiarity with SAST, DAST, and CI/CD security tooling is a plus
  • Experience developing or reviewing cybersecurity assessments or technical security challenges is a plus
  • Experience with AI evaluation, RLHF, or technical data projects is a plus

Benefits

Comp & perks
  • Remote work
  • Part-time, project-based consulting engagement
  • Hourly compensation of $65