Senior Application Security Researcher
CommIT · Toronto, Canada ·
- Work mode
- Remote
- Seniority
- Senior
- Category
- Security
- Experience
- 5+ years
CommIT · Toronto, Canada ·
capital · Warsaw, Mazowieckie, Poland
Spring Health · Remote
BioRender · CAN
Pindrop · US - Remote; US-Remote
Senior, hands-on application security researcher at CommIT advancing next-gen AppSec detection, including autonomous agentic pen-testing. Day to day is build-and-break: research web/API vulnerabilities, build and tune SAST/DAST/SCA detection logic, and apply LLMs and large datasets to ship production-quality tooling with Python or Go.
The company secures the AI-driven SDLC from prompt to production, unifying development and cloud context to stop vulnerabilities at the source. The Security Research group is hiring a senior, hands-on Application Security Researcher to push modern AppSec forward — working with engineers, researchers and AI/data scientists on next-generation detection, including autonomous, agentic pen-testing capabilities. This is a build-and-break role, not a typical AppSec position.
Must-have skills:
Nice to have:
forcepoint · Flex - Tel Aviv