FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Security Engineer II, Application Security
Trail of Bits. Independently lead security assessments of substantial client components, modules, or systems from scoping through delivery .
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in application security and vulnerability research, with strong programming skills in languages such as Rust, Go, C, C++, Python, JavaScript, or TypeScript. Capable of leading security assessments, producing actionable findings, and effectively communicating technical conclusions to diverse teams.
Highest-signal resume keywords
Application SecurityVulnerability ResearchCode AnalysisProgramming in Rust, Go, C, C++, Python, JavaScript, TypeScriptMemory-Corruption Vulnerabilities
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Security AssessmentsVulnerability DiscoveryProof-of-Concept DevelopmentCode ReviewTechnical Writing
Soft Skills
Clear CommunicationTechnical Discussion LeadershipCollaboration
Tools & Technologies
Custom Security ToolsAutomation Tools
Industry Keywords
Security-Focused Software EngineeringOperating SystemsIPCPrivilege BoundariesSystem Internals
Tech Stack
Tools & technologiesJavaScriptPythonRustTypeScriptC++Go
About the role
Key responsibilities & impact- Independently lead security assessments of substantial client components, modules, or systems from scoping through delivery
- Find and validate vulnerabilities, establish root causes and exploitation paths, assess impact, and develop proof-of-concept code when appropriate
- Design and build custom security tools, harnesses, tests, and automation
- Review software architectures, attack surfaces, data flows, trust boundaries, and privilege boundaries; recommend mitigations
- Produce clear, actionable findings and lead technical discussions with client engineering teams
- Review other engineers' code and analysis, share techniques, and improve the team's technical approach
- Contribute new methods, open-source tools, and technical writing to Trail of Bits and the broader security community
- Collaborate with project leads and security engineers while exercising independent technical judgment
Requirements
What you’ll need- Typically 2+ years of directly relevant experience in application security, vulnerability research, security-focused software engineering, or a closely related area
- Repeated vulnerability-discovery experience, including personally finding or validating vulnerabilities
- Strong code-analysis skills across unfamiliar and complex codebases
- Strong programming and debugging ability in at least two relevant languages, such as Rust, Go, C, C++, Python, JavaScript, or TypeScript
- Working knowledge of memory-corruption vulnerabilities and mitigations
- Strong systems knowledge, including operating systems, IPC, privilege boundaries, and system internals
- Ability to independently scope and execute code-level security-assessment workstreams
- Clear written and verbal communication, including presenting technical conclusions to engineers or clients and contributing to a distributed team
- Must be eligible for employment verification in the United States
Benefits
Comp & perks- Competitive salary complemented by performance-based bonuses
- Fully company-paid insurance packages, including health, dental, vision, disability, and life
- 401(k) plan with a 5% match of base salary
- 20 days of paid vacation with flexibility for more, adhering to jurisdictional regulations
- 4 months of parental leave
- $10,000 relocation assistance for moving to NYC
- $1,000 Working-from-Home stipend
- Annual $750 Learning & Development stipend
- Company-sponsored all-team celebrations, including travel and accommodation
- Philanthropic contribution matching up to $2,000 annually