Security Researcher

1 Month ago • All levels

Job Summary

Job Description

Snyk is looking for a Security Researcher to join their Rules Intelligence team. The role involves developing rules for the Snyk Code SAST engine, focusing on new languages, technologies, and frameworks. The researcher will write security rules, collaborate with Program Analysis and Machine Learning teams, learn programming language mechanics, engage with customers, and contribute to the product roadmap. The researcher will be responsible for identifying potential security vulnerabilities before code reaches production. This role demands a passion for cybersecurity and active participation in the security community.
Must have:
  • Experience with Application Security Vulnerabilities
  • Proficiency in Python and/or Javascript
  • Interest in language mechanics and frameworks
  • Passion for cybersecurity
Good to have:
  • Experience with AppSec tools
  • Experience with low-level languages and vulnerabilities
  • Active participation in community efforts
  • Experience in researching and disclosing vulnerabilities
Perks:
  • Flexible working hours, work-from home allowances
  • In-office perks and time off for learning
  • Generous vacation and wellness time off
  • Health benefits and employee assistance plans
  • Country-specific life insurance and retirement programs

Job Details

Every day, the world gets more digital thanks to tens of millions of developers building the future faster than ever. But with exponential growth comes exponential risk, as outnumbered security teams struggle to secure mountains of code. This is where Snyk (pronounced “sneak”) comes in. Snyk is a developer security platform that makes it easy for development teams to find, prioritize, and fix security vulnerabilities in code, dependencies, containers, and cloud infrastructure — and do it all right from the start. Snyk is on a mission to make the world a more secure place by empowering developers to develop fast and stay secure.

 

 

Joining Snyk means embracing our core values: One Team, Care Deeply, Customer Centric, and Forward Thinking. As a member of our team, you’ll have the opportunity to thrive in a dynamic environment where fostering collaboration, leading with empathy, driving business impact, and inspiring trust are at the heart of everything we do.

Our Opportunity

We’re looking for a Security Researcher to join Snyk’s Rules Intelligence team and take part in research-led work developing rules for the Snyk Code SAST engine. We regularly look at new and emerging languages, technologies and frameworks to better model threats and vulnerabilities in source code, helping developers identify potential security vulnerabilities before their code reaches production. 

You’ll Spend Your Time:

  • Writing security rules to detect known and unknown vulnerabilities using a proprietary language and built-for-purpose tooling. 
  • Working closely with our Program Analysis and Machine Learning teams to shape our engine capabilities.
  • Learning the mechanics of a programming language or a framework, including looking at best practices and common vulnerable patterns.
  • Working with customers, understanding their pain points and challenges, and helping secure the world’s largest companies.
  • Helping shape our product roadmap and driving innovation and guidance to the business with regards to up-and-coming security risks.
  • Taking part in research endeavors (where applicable), contributing back to the security community and publishing written papers, i.e: https://snyk.io/blog/finding-yaml-injection-with-snyk-code/, https://snyk.io/blog/the-dangers-of-setattr-avoiding-mass-assignment/

What You’ll Need:

  • Demonstrated experience and knowledge of Application Security Vulnerabilities.
  • Proficiency with Python and/or Javascript, as well as some familiarity with OOP languages such as Java or C#.
  • Interest in learning about the mechanics and inner workings of a language or a framework, and the ability to self-study highly technical concepts.
  • A passion for cybersecurity, and a desire to contribute and be an active participant in the security community.

We’d be Lucky if You:

  • Are experienced working with, developing, or using AppSec tools.
  • Have experience programming or researching low-level languages and vulnerabilities.
  • Are an active participant in “community efforts”, such as CTFs, bug-bounty programs or similar.
  • Have experience researching and (responsibly) disclosing security vulnerabilities or any CVE/paper publications.

#LI-CR1

We care deeply about the warm, inclusive environment we’ve created and we value diversity – we welcome applications from those typically underrepresented in tech. If you like the sound of this role but are not totally sure whether you’re the right person, do apply anyway!

 

About Snyk

Snyk is committed to creating an inclusive and engaging environment where our employees can thrive as we rally behind our common mission to make the digital world a safer place. From Snyk employee resource groups, to global benefits that help our employees prioritize their health, wellness, financial security, and a work/life blend, we aim to support our employees along their entire journeys here at Snyk.

Benefits & Programs

Prioritize health, wellness, financial security, and life balance with programs tailored to your location and role.

  • Flexible working hours, work-from home allowances, in-office perks, and time off for learning and self development
  • Generous vacation and wellness time off, country-specific holidays, and 100% paid parental leave for all caregivers
  • Health benefits, employee assistance plans, and annual wellness allowance
  • Country-specific life insurance, disability benefits, and retirement/pension programs, plus mobile phone and education allowances

Similar Jobs

quience - Staff - SDET

quience

Bengaluru, Karnataka, India (On-Site)
1 Month ago
GameJobs - Principal Software Engineer, Account Authentication

GameJobs

San Mateo, California, United States (On-Site)
1 Month ago
Cognite - Senior Full Stack Engineer

Cognite

Austin, Texas, United States (Hybrid)
7 Months ago
Playrix - Lead SDET

Playrix

Ukraine (Remote)
7 Months ago
Valeo - Project Test Engineer

Valeo

Wemding, Bavaria, Germany (On-Site)
2 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

ARHS - Java Jee Developer

ARHS

Luxembourg (On-Site)
8 Months ago
ByteDance - Senior Backend Software Engineer - Global E-Commerce Supply Chain Merchant Platform

ByteDance

San Jose, California, United States (On-Site)
7 Months ago
Google - Software Engineer, PhD, Early Career, Campus, Machine Learning, Systems and Cloud AI, 2025 start

Google

Sunnyvale, California, United States (On-Site)
5 Months ago
ByteDance - Software Developer (Routing Verification & Emulation)

ByteDance

Seattle, Washington, United States (On-Site)
2 Months ago
Glean - Software Engineer, Machine Learning

Glean

Palo Alto, California, United States (On-Site)
1 Month ago
Nagarro - Senior Staff Engineer, Java

Nagarro

Bengaluru, Karnataka, India (On-Site)
8 Months ago
ARHS - Senior Java Developer

ARHS

Luxembourg (On-Site)
8 Months ago
NVIDIA - Software Test Development Engineer

NVIDIA

(Remote)
3 Months ago
SailPoint - Technical Account Manager | Technical Support Engineer

SailPoint

Tokyo, Japan (Hybrid)
1 Month ago
Google - Software Engineer III, Performance, Google Maps

Google

Mountain View, California, United States (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Jobs in London, England, United Kingdom

Acceldata - Enterprise Account Executive

Acceldata

London, England, United Kingdom (Remote)
1 Year ago
Playtech - Executive Assistant

Playtech

London, England, United Kingdom (On-Site)
1 Month ago
Rebellion - Marketing Manager

Rebellion

England, United Kingdom (Hybrid)
2 Months ago
Critical mass - Art Director, Design

Critical mass

London, England, United Kingdom (On-Site)
1 Month ago
gravitee.io - Software Architect

gravitee.io

London, England, United Kingdom (Hybrid)
4 Months ago
Monzo - Technology Risk Analyst

Monzo

London, England, United Kingdom (Hybrid)
1 Month ago
Aera Technology - Client Partner | Enterprise Platform Sales | Decision Intelligence

Aera Technology

London, England, United Kingdom (On-Site)
7 Months ago
playground - Lighting Artist

playground

Royal Leamington Spa, England, United Kingdom (Hybrid)
1 Month ago
Rocksteady Studios - Expert Lead Designer

Rocksteady Studios

London, England, United Kingdom (Hybrid)
3 Months ago
Fortis Games - Director of Business Development

Fortis Games

United Kingdom (Remote)
3 Weeks ago

Get notifed when new similar jobs are uploaded

Similar Category Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

Founded in London and Tel Aviv in 2015, we’ve grown to a united global team of more than 1000+ employees. No matter where we are in the world, we operate as one team and work together to shape the future of application security. We take immense pride in the diversity of our people, cultures, and experiences. Every team member at Snyk contributes to our vision for a more secure digital world. By combining developer-first tooling and deep cybersecurity intelligence, we deliver solutions that help any developer build securely without slowing down productivity.

Boston, Massachusetts, United States (Hybrid)

Bucharest, Bucharest, Romania (Hybrid)

Boston, Massachusetts, United States (On-Site)

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)

London, England, United Kingdom (On-Site)

London, England, United Kingdom (On-Site)

Denver, Colorado, United States (On-Site)

Boston, Massachusetts, United States (On-Site)

London, England, United Kingdom (On-Site)

London, England, United Kingdom (Hybrid)

View All Jobs

Get notified when new jobs are added by Snyk

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug