Unlock Full Resume Report

New offer - be the first one to apply!

September 14, 2026

Cyber Security Web Application Research Engineer

Mid • Hybrid

87,000 - 168,000 USD/yr

Chandler, AZ

Quick Facts

Cyber Security Web Application Research Engineer. In this technical role, you will be responsible for performing penetration testing on applications, identifying potential defects and supporting remediation conversations.

Description

Conduct application penetration testing for web applications, mobile applications and APIs to identify security defects and weaknesses using manual penetration testing skills and automated tools. Configure automated tools to complete successful scanning, validate and triage automated scan results (including false positives), and generate accurate, detailed technical reports with identified defects. Collaborate with development and security teams to ensure clear understanding of defects and remediation paths, while supporting continuous improvement of testing methodologies leveraging industry standards and best practices.

In This Role, You Will

  • Conduct application penetration testing for web applications, mobile applications and APIs to identify security defects and weaknesses using manual penetration testing skills and automated tools.
  • Configure automated tools to complete successful scanning.
  • Defect analysis, including reviewing and validating automated scan results, triage and disposition false positive.
  • Generate accurate and detailed technical reports with identified defects.
  • Collaborate with development and security teams to ensure clear understanding of defects and remediation paths.
  • Support continuous improvement of testing methodologies and processes leveraging industry standards and best practices.
  • Collaborate with other members of the team to share knowledge and complete peer reviews of reports.
  • Communicate with various stakeholders.
  • Demonstrate proficiency in using AI enhanced security scanners and Tools.
  • Leverage AI to accelerate defect identification and validation.
  • Apply strong technical judgment when validating and integrating AI assisted outputs into solutions.
  • Understand and account for model limitations, security risks, and operational considerations.
  • Ensure AI usage aligns with security, compliance, privacy, and ethical standards.

Requirements

Required Qualifications (US)

  • 2+ years of Cyber Security Research experience, or equivalent demonstrated through work experience, training, military experience, education (one or a combination).
  • 2+ years of Web application penetration testing.
  • 2+ years Dynamic Application Security Testing (DAST).

Desired Qualifications

  • Advanced experience in DAST tools such as Invicti, Appscan, Webinspect, Fiddler, Burp Suite.
  • Advanced knowledge of application security and common vulnerabilities (OWASP Top 10).
  • Experience with scripting and automation (e.g., Python, Shell).
  • Knowledge of security best practices and compliance standards (e.g., PCI DSS, GDPR).
  • Excellent communication skills and ability to collaborate cross-functionally.
  • Strong problem-solving and analytical skills.
  • Security certifications such as OSCP, BSCP, GWAPT, GPEN, GXPN (or equivalent) are a plus.

Benefits

  • Health benefits
  • 401(k) Plan
  • Paid time off
  • Disability benefits
  • Life insurance, critical illness insurance, and accident insurance
  • Parental leave
  • Critical caregiving leave
  • Discounts and savings
  • Commuter benefits
  • Tuition reimbursement
  • Scholarships for dependent children
  • Adoption reimbursement

Pay Range

$87,000.00 - $168,000.00

Similar jobs you might like