Application Security Engineer
DataAnnotation · 100% remote · Contract · Posted
- Pay
- $40–125/hr
- Location
- Worldwide
- Languages
- English
- Hours
- Flexible hours
- Openings
- Not listed
- Level
- Expert
Summary
Evaluate AI reasoning about secure design and vulnerabilities. Review code and cloud configurations, identify missed flaws, and write threat models and fixes.
What you'll do
- Evaluate secure design reasoning in code review, threat modeling, and cloud configuration
- Identify access control, injection, deserialization, and IAM vulnerabilities
- Write secure designs, threat models, and fixes
Requirements
- Professional experience in application or cloud security
- Experience with code review, threat modeling, or vulnerability research
- Ability to read code and cloud configurations for security flaws
- Clear written English
- No degree required
Skills
- Application Security
- Cloud Security
- Code Review
- Threat Modeling
- Vulnerability Research
- Access Control
- IAM
- Secure Design
Full description
Overview
Models are great at spotting the textbook SQL injection and blind to the flaw that only shows up in your architecture: the trust boundary drawn in the wrong place, the deserialization no scanner flags, the IAM policy that quietly grants the world. Someone has to threat-model the whole system, and that someone is you.
As an Application Security Engineer you'll evaluate how models reason about secure design and vulnerabilities, catch the flaws they miss, and write the guidance a strong AppSec reviewer would give.
What you’ll actually do
- Probe secure-design reasoning across code review, threat modeling, and cloud configuration, and see what the model overlooks.
- Hunt the real vulnerabilities: broken access control, injection, unsafe deserialization, and over-permissive IAM the scanner never flags.
- Write the secure design when the model falls short, with the threat model and the fix laid out clearly.
Roles this fits
Common backgrounds: Application Security Engineer, Cloud Security Engineer, Vulnerability Researcher.
What we look for
- Professional experience in application or cloud security: code review, threat modeling, or vulnerability research.
- Comfort reading real code and cloud configs for security flaws.
- Clear written English: your explanations are the training signal.
- No degree required. We care about what you can do, not where you learned it.
Compensation
Up to $40 – $125+/hr depending on task difficulty and specialization. Many contributors add $10k–$100k+ a year; some make it their full-time income.
Location: Remote. Hours: Flexible hours. Type: Independent contractor. Payouts: Weekly.
Similar jobs
Cybersecurity ExpertSecurity EngineeringAuthenticationCryptographyInput ValidationSecret ManagementThreat Modeling+7$40–125/hr
🌍 Worldwide
Incident ResponderIncident ResponseDigital ForensicsSOC OperationsLog AnalysisIntrusion AnalysisIncident Containment+6$40–125/hr
🌍 Worldwide
Penetration TesterPenetration TestingRed TeamingReconnaissanceExploitationPrivilege EscalationLateral Movement+6$40–125/hr
🌍 Worldwide
Software & Firmware Engineering ExpertsC/C++PythonRTOSVerilog/SystemVerilogFPGA ToolchainsJTAG/SWD Debuggers+3$100–120/hr
🌍 Worldwide