CommIT logo

Application Security Research Engineer

CommIT

On-site
Philippines
Full-time
Senior
5+ yrs
Salary not listedPosted 3w ago

Real job — pulled straight from CommIT’s careers page · Verified July 21, 2026 · No reposts.

Job description

CommIT is hiring a Application Security Research Engineer — a full-time, based in Philippines role. Apply directly on CommIT's careers page below.

Application Security Research Engineer

Location: Philippines (PH)

Experience Level: Senior

Description

We're a global leader in software supply chain management, trusted by thousands of customers including the majority of Fortune 100 companies to manage, accelerate, and secure their software delivery from code to production.

We're looking for an Application Security Research Engineer to join a team of researchers and ethical hackers focused on offensive security testing, automated exploit discovery, and advanced application security research. This hands-on role emphasizes offensive security, code exploitation, automation, and innovation — directly shaping our product security posture and scaling secure-by-design principles.

Responsibilities:

  • Help to reshape company Product Security
  • Plan and execute advanced penetration testing campaigns.
  • Develop tools and frameworks for scalable security testing and fuzzing.
  • Lead Security innovation by building and managing penetration testing tools \ AI Agents
  • Analyze vulnerabilities, perform root cause analysis, and develop proofs of concept.
  • Identify systemic product weaknesses and help define long-term mitigations.
  • Collaborate with engineering teams to reproduce, triage, and fix vulnerabilities.
  • Contribute to security research publications, CVE submissions, and industry knowledge sharing.
  • Continuously evolve internal testing capabilities using modern tooling and AI-assisted approaches.


Requirements

Requirements

  • 5+ year experience in Research and penetration testing.
  • Strong coding skills and deep technical understanding of web, API, cloud-native, and backend technologies.
  • AI and LLM Penetration testing knowldge and Experience
  • Experience with penetration testing tools (Burp Suite, Metasploit, etc.) and Custom Security Tools development.
  • Familiarity with modern architectures (e.g., Cloud, microservices, containers, Kubernetes).
  • Familiarity with secure software architecture and typical attack vectors.
  • Demonstrated ability to lead security testing engagements and report technical findings effectively.
  • Experience building or integrating automated PT or fuzzing pipelines is a strong advantage.
  • Knowledge and hands-on experience with SSDLC tools and CI/CD pipelines,
  • Publications or open-source contributions in the security domain are a plus.


Get Security Engineer jobs like this

New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.

Email me new jobs
Westpac New Zealand logo

Platform Engineer

Auckland, NZ
✓ From careers page· 24m ago
Westpac New Zealand logo

Senior Software Engineer

Auckland, NZ
✓ From careers page· 24m ago
Westpac New Zealand logo

Software Engineer

Auckland, NZ
✓ From careers page· 25m ago
Westpac New Zealand logo

Software Engineer - Front End

Auckland, NZ
✓ From careers page· 25m ago

Frequently asked questions

What skills are required for Application Security Research Engineer at CommIT?

The required skills for Application Security Research Engineer at CommIT include: CI/CD, AI.

What is the seniority level for Application Security Research Engineer at CommIT?

Application Security Research Engineer at CommIT is a Senior level position.

How do I apply for Application Security Research Engineer at CommIT?

You can view the full description and apply for Application Security Research Engineer at CommIT on EchoJobs: https://echojobs.io/job/commit-application-security-research-engineer-rzon9.