Job Closed

This listing is no longer active.

The Mill Adventure logo
The Mill Adventure

“When the winds of change blow, some people build walls and others build windmills.” – Chinese proverb

Senior Security Engineer – AppSec, Offensive

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 11-50H1B No SponsorCompany SiteLinkedIn

Location

Malta

Posted

53 days ago

Salary

0

Seniority

Senior

Job Description

Senior Security Engineer – AppSec, Offensive

The Mill Adventure

• Own Application & Offensive Security: Drive the application security lifecycle. Lead architecture reviews, conduct deep-dive threat modeling sessions, and perform targeted internal penetration tests and secure code reviews to uncover blind spots early. • Drive DevSecOps Excellence: Architect and deeply integrate security tooling (SAST, DAST, SCA, secrets detection) directly into our CI/CD pipelines. Ensure high-signal alerts, low friction for developers, and seamless automation. • Own Vulnerability Management: Triage, validate, and prioritize application-level vulnerabilities based on actual business context and risk, guiding engineering teams through pragmatic remediation. • Support Cloud & Core IT Security: While AppSec is your primary focus, you will leverage your general working knowledge of AWS security and foundational IT controls (IAM, endpoint, zero-trust) to support the wider security team and ensure holistic coverage. • Be a Role Model & Culture Champion: Lead by example. Act as a definitive senior technical mentor for developers and a highly collaborative peer to our existing security team. Champion a culture of security ownership and actively spread security awareness across the entire technical organization. • Act as a Business Enabler: Eradicate the "security as a blocker" mentality. Partner proactively with product and engineering teams to find secure paths to "yes," ensuring our security initiatives accelerate rather than hinder product velocity.

Job Requirements

  • 7+ years of Security Engineering experience, with your deepest expertise rooted in Application Security, DevSecOps, and Offensive Security.
  • Proactive Ownership & Mentorship: You are a proven role model. You proactively assess the environment, propose strategies, and drive the execution collaboratively.
  • The Attacker & Defender Mindset: You are highly capable of writing an exploit payload to demonstrate a vulnerability, and equally skilled at writing the secure coding guidelines to prevent it.
  • Strong Programming Skills: Deep proficiency in at least one modern programming language, specifically JavaScript/TypeScript, to effectively review code and build custom automation scripts.
  • Broad Baseline Knowledge: While AppSec is your superpower, you have a solid, general understanding of Cloud Security (AWS) and foundational IT/Corporate security principles to support a holistic security posture.
  • iGaming Experience is a Strong Plus: A deep understanding of the technology-led, highly regulated iGaming environment is highly desirable (or experience in similarly complex sectors like fintech, SaaS, or payments).
  • Exceptional Communication: The ability to translate complex technical vulnerabilities into clear business impacts, commanding respect and influencing both technical peers and leadership.
  • Alignment with our Values: High integrity, ownership, transparency, and a continuous drive for performance and improvement.

Benefits

  • A lean, focused company, offering a flexible working environment
  • The opportunity to work with and learn form a highly skilled, talented team
  • A great company culture, where accountability is innate, transparency is key and competency is virtue
  • Being part of a small, tight knit, caring community
  • Work equipment of your choice
  • Private health insurance
  • Learning budget
  • Fitness benefit
  • Parking/transport or co-working allowance
  • Company wide and team based get togethers

Related Categories

Related Job Pages

More Security Engineer Jobs

Full TimeRemoteTeam 1,001-5,000Since 1985H1B Sponsor

• Own end-to-end product development — from idea, research, and architecture to production. • Build and ship AI-powered security products across frontend, backend, and APIs. • Develop scalable, high-quality interfaces and systems that power real user workflows. • Work with minimal specs — define problems, make decisions, and execute independently. • Collaborate when needed, but primarily operate with lean ownership and high autonomy. • Drive adoption and impact — iterate based on real usage, not just requirements. • Leverage LLMs and AI tooling to accelerate development and improve team productivity. • Continuously improve systems, code quality, and developer workflows.

Canada
$125K - $255K / year
L3HHCM20 logo

Lead, Security Research Engineer

L3HHCM20

L3Harris Australia excels as a prime defence contractor, providing integrated tech solutions for over four decades. Specialising in technology that connects and shapes operations spanning multiple domains: space, air, land, sea, cyber and first responders. Today, we employ over 500 professionals in all major cities who understand the region’s unique requirements.

Full TimeRemoteTeam 10,001

Job Title: Lead, Security Research Engineer Job Code: 35904 Job Location: Remote Job Schedule: 9/80: Employees work 9 out of every 14 days – totaling 80 hours worked, and have every other Friday off Job Description: L3Harris has an immediate opening for a Senior Security Software Research Engineer with our security group, Trenchant. Trenchant is responsible for devising and implementing a sophisticated commercial cyber toolkit. Our teams are comprised of elite security researchers and former intelligence professionals with a fixation on realizing mission outcomes. We are pursuing top-tier senior security researching talent with experience across a host of technologies and paradigms. Our researchers, engineers and specialists work on tight-knit interdisciplinary teams. These teams generate thoughtful capability designs and incremental feature releases that reliably deliver cyber solutions into operational environments. Our business unit offers an exceptional value-proposition for individuals looking to make an impact. Trenchant is an elite global team of engineers and security researchers charged with building world-class computer security products. Trenchant’s expertise is the by-product of the L3Harris acquisition of two highly-regarded information security businesses – Azimuth Security and Linchpin Labs. United under Trenchant, we are a key component of L3Harris’ Intelligence and Cyber International Division. We are a trusted, discrete partner furnishing security products, consultancy, training and integration services to allied security, defense, and law enforcement agencies. Essential Functions: - Finding vulnerabilities in ubiquitous Internet-deployed software and/or popular devices’ software or firmware. - Constructing exploits for vulnerabilities discovered by the company. - Research & development on security technologies in such fields as exploitation, bug-finding, reverse engineering and static analysis. - Working with and for officers, employees or contractors of the company. - Training, management and provision of guidance to junior staff. - Regular interaction with managers, clients, vendors, and customers to field queries and questions. - Take an active role in cross-team projects when needed. - Ability to obtain and maintain security clearance. Qualifications: - Bachelor’s Degree and minimum 9 years of prior relevant experience. Graduate Degree and a minimum of 7 years of prior related experience. In lieu of a degree, minimum of 13 years of prior related experience. Preferred Additional Skills: - 5+ years of Vulnerability Research, reverse engineering, and bug-hunting. - Experience with static and dynamic binary analysis. - Experience with iOS, Android, Windows, Linux, or embedded systems kernel, user land, and internals or browser internals. - Experience with common tools in security research (e.g. IdaPro, Ghidra, Radare, Binary Ninja, AFL, SysInternals, GDB, WinDBG, etc). - Experience with common programming languages (e.g. C/C++, Python, Swift, etc). - Experience with common architectures (e.g. x86/64, ARM, AARCH64, MIPS, PowerPC, TILEGX, etc). - Experience with modern security system features, exploit mitigations, and evasion techniques (e.g. defeating ASLR, DEP, Control Flow Guard, ROP, Security Product/AV Evasion, etc). - Experience with a wide-range of modern exploitation concepts and techniques. - Service in the US Intelligence Community or US Military working in cyber operations. - Experience with Computer Network Operations / Computer Network Exploitation. - Experience with symbolic execution and emulation software (e.g. QEMU, Corellium, VHDL, etc). - Cryptographic experience (e.g. side-channel attacks, implementing AES, etc). - Experience teaching and mentoring junior vulnerability researchers. - Bespoke fuzzer development experience. In compliance with pay transparency requirements, the salary range for this role in California, Massachusetts, New Jersey, Washington, and the Greater D.C, Denver, or NYC areas is $111,500 - $207,500. The salary range for this role in Colorado state, Hawaii, Illinois, Maryland, Minnesota, New York state, and Vermont is $97,000 - $180,000. This is not a guarantee of compensation or salary, as final offer amount may vary based on factors including but not limited to experience and geographic location. L3Harris also offers a variety of benefits, including health and disability insurance, 401(k) match, flexible spending accounts, EAP, education assistance, parental leave, paid time off, and company-paid holidays. The specific programs and options available to an employee may vary depending on date of hire, schedule type, and the applicability of collective bargaining agreements. #LI-FS1

United States
$97K - $207K / year
Full TimeRemoteTeam 10,001+H1B Sponsor

• Deliver design, deployment, and configuration of Palo Alto Networks solutions across cloud environments • Serve as a subject matter expert in cloud-native architectures • Provide technical leadership on complex engagements • Interact with stakeholders and project teams to design secure solutions • Script and automate repetitive tasks for streamlined operations

Texas
$140K - $192.5K / year
Accenture Federal Services logo

Security Auditor

Accenture Federal Services

We believe in the power of change, harnessed in ways that matter for our country and communities.

Full TimeRemoteTeam 10,001+Since 2017H1B No Sponsor

• Perform independent assessments of management, operational, and technical security controls. • Conduct security reviews and risk analyses to identify vulnerabilities and architectural weaknesses. • Recommend mitigation strategies to strengthen system security and reduce identified risks. • Monitor and evaluate systems for compliance with cybersecurity requirements, standards, and policies. • Use vulnerability assessment and security testing tools to evaluate system security posture. • Prepare audit reports, findings, and documentation to communicate assessment results. • Collaborate with IT, cybersecurity, and compliance teams to support remediation activities. • Maintain knowledge of current cybersecurity principles, frameworks, and best practices. • Assist in continuous improvement of cybersecurity processes, policies, and assessment procedures. • Manage multiple assessment tasks effectively while maintaining accuracy and attention to detail.

Virginia
$116.9K - $243.1K / year
Job Closed