Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Trail of Bits

Security Engineer II, Application Security

Trail of Bits

. Independently lead security assessments of substantial client components, modules, or systems from scoping through delivery .

Posted 9/25/2026full-timeRemote • United StatesJuniorMid-Level💰 $140,000 - $180,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in application security and vulnerability research, with strong programming skills in languages such as Rust, Go, C, C++, Python, JavaScript, or TypeScript. Capable of leading security assessments, producing actionable findings, and effectively communicating technical conclusions to diverse teams.

Highest-signal resume keywords
Application SecurityVulnerability ResearchCode AnalysisProgramming in Rust, Go, C, C++, Python, JavaScript, TypeScriptMemory-Corruption Vulnerabilities

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Security AssessmentsVulnerability DiscoveryProof-of-Concept DevelopmentCode ReviewTechnical Writing
Soft Skills
Clear CommunicationTechnical Discussion LeadershipCollaboration
Tools & Technologies
Custom Security ToolsAutomation Tools
Industry Keywords
Security-Focused Software EngineeringOperating SystemsIPCPrivilege BoundariesSystem Internals

Tech Stack

Tools & technologies
JavaScriptPythonRustTypeScriptC++Go

About the role

Key responsibilities & impact
  • Independently lead security assessments of substantial client components, modules, or systems from scoping through delivery
  • Find and validate vulnerabilities, establish root causes and exploitation paths, assess impact, and develop proof-of-concept code when appropriate
  • Design and build custom security tools, harnesses, tests, and automation
  • Review software architectures, attack surfaces, data flows, trust boundaries, and privilege boundaries; recommend mitigations
  • Produce clear, actionable findings and lead technical discussions with client engineering teams
  • Review other engineers' code and analysis, share techniques, and improve the team's technical approach
  • Contribute new methods, open-source tools, and technical writing to Trail of Bits and the broader security community
  • Collaborate with project leads and security engineers while exercising independent technical judgment

Requirements

What you’ll need
  • Typically 2+ years of directly relevant experience in application security, vulnerability research, security-focused software engineering, or a closely related area
  • Repeated vulnerability-discovery experience, including personally finding or validating vulnerabilities
  • Strong code-analysis skills across unfamiliar and complex codebases
  • Strong programming and debugging ability in at least two relevant languages, such as Rust, Go, C, C++, Python, JavaScript, or TypeScript
  • Working knowledge of memory-corruption vulnerabilities and mitigations
  • Strong systems knowledge, including operating systems, IPC, privilege boundaries, and system internals
  • Ability to independently scope and execute code-level security-assessment workstreams
  • Clear written and verbal communication, including presenting technical conclusions to engineers or clients and contributing to a distributed team
  • Must be eligible for employment verification in the United States

Benefits

Comp & perks
  • Competitive salary complemented by performance-based bonuses
  • Fully company-paid insurance packages, including health, dental, vision, disability, and life
  • 401(k) plan with a 5% match of base salary
  • 20 days of paid vacation with flexibility for more, adhering to jurisdictional regulations
  • 4 months of parental leave
  • $10,000 relocation assistance for moving to NYC
  • $1,000 Working-from-Home stipend
  • Annual $750 Learning & Development stipend
  • Company-sponsored all-team celebrations, including travel and accommodation
  • Philanthropic contribution matching up to $2,000 annually