Application Security Research Team Lead

Remote, Poland
About the role:

Our client is a global technology company building a platform that powers software delivery for thousands of organizations worldwide.

The company brings together a unique combination of innovation, engineering excellence, and talented people who are passionate about shaping the future of software development.

Software plays a central role in modern life, and our client’s platform helps organizations manage, accelerate, and secure their software delivery from code to production. Trusted by thousands of customers, including many Fortune 100 companies, the platform enables teams to deliver software faster and more securely.

The company is currently looking for an Application Security Team Lead to join the Chief Security Office. In this role, you will lead a team of researchers and ethical hackers focused on offensive security testing, automated exploit discovery, and advanced application security research. Your work will directly influence the security posture of the company’s products and help scale secure-by-design principles.
This is a hands-on technical role with a strong emphasis on offensive security, code exploitation, automation, and innovation.

Responsibilities:
  • Build and lead a team of security researchers and penetration testers.
  • 
Help shape and evolve the product security strategy.
  • 
Plan and execute advanced penetration testing campaigns.
  • Develop tools and frameworks for scalable security testing and fuzzing.
  • 
Drive security innovation by building and managing penetration testing tools and AI agents.
  • 
Analyze vulnerabilities, perform root cause analysis, and develop proof-of-concept exploits.
  • Identify systemic product weaknesses and help define long-term mitigations.
  • 
Collaborate with engineering teams to reproduce, triage, and remediate vulnerabilities.
  • 
Contribute to security research publications, CVE submissions, and industry knowledge sharing.
  • Continuously improve internal testing capabilities using modern tooling and AI-assisted approaches.
Requirements:
  • Proven 2+ years of experience leading application security research teams in a SaaS or software company.
  •  7+ years of experience in security research and penetration testing.
  • 
Strong coding skills and deep understanding of web, API, cloud-native, and backend technologies.
  • Experience with AI and LLM penetration testing.
  • 
Experience with penetration testing tools (Burp Suite, Metasploit, etc.) and development of custom security tools.
  • Familiarity with modern architectures (cloud, microservices, containers, Kubernetes).
  • Understanding of secure software architecture and common attack vectors.
  • 
Demonstrated ability to lead security testing engagements and clearly communicate technical findings.
  • Experience building or integrating automated penetration testing or fuzzing pipelines is a strong advantage.
  • 
Hands-on experience with SSDLC tools and CI/CD pipelines.
We offer:
  • 20 working days of paid vacation per year;
  • Official holidays of Ukraine – days off;
  • Modern equipment for work;
  • Corporate events;
  • External and internal training: conferences, professional events, courses, TechTalks;
  • English speaking club.
Thank You for Reaching Out!
Your submission has been received and our team will get back to you shortly.