Micro1
Micro1Verified listing
RemoteHot

Vulnerability Researcher and Staff Security Engineer

7–8/hr
Remote
Posted July 21, 2026
contract

Overview

Remote role for a vulnerability researcher and staff-level security expert who operates as an internal adversary to uncover novel attack paths. You’ll study threats across AI agents, cloud infrastructure, developer platforms, and production systems, then collaborate with engineering to raise the stack’s resilience. Expect to build offensive tooling and publish internal research to shape security strategy. The position is full-time and focused on practical, hands-on security work in a remote setting. Bold Multi-Cloud, Red Teaming, AI security.

What You'll Do9

  • 1Perform advanced offensive security testing across AWS and GCP environments, production services, internal tooling, and AI platforms.
  • 2Create and run realistic attacker simulations focused on identity systems, cloud control planes, supply chains, and distributed architectures.
  • 3Identify and exploit weaknesses in proprietary apps, APIs, IaC, CI/CD pipelines, and AI-powered developer workflows.
  • 4Study new attack methods targeting LLMs, AI agents, retrieval systems, prompt orchestration, and autonomous workflows.
  • 5Reverse engineer critical services to reveal architectural gaps and new exploitation techniques.
  • 6Simulate insider and sophisticated threat scenarios, evaluating privilege escalation, lateral movement, and evasion techniques in enterprise setups.
  • 7Build custom offensive tools, automation scripts, fuzzers, and PoCs to speed up vulnerability discovery.
  • 8Work with infrastructure, product, and AI engineering teams to verify fixes and strengthen secure-by-design practices.
  • 9Document attack methodologies and share internal research to influence long-term security planning.

Requirements8

  • 1Proven background in offensive security, vulnerability research, red teaming, or exploit development.
  • 2Solid knowledge of cloud security for AWS and GCP, including IAM, networking, Kubernetes, containers, and identity systems.
  • 3Strong experience in application security, code auditing, reverse engineering, and vulnerability discovery.
  • 4Experience spotting weaknesses in modern software supply chains, CI/CD, APIs, and infrastructure automation.
  • 5Proficiency in Python, Go, Rust, C/C++, or similar languages used for security tooling.
  • 6Solid grasp of operating system internals, networking, authentication protocols, and contemporary security architectures.
  • 7Ability to investigate ambiguous problems independently and develop novel attack techniques.
  • 8Clear written communication skills to explain complex vulnerabilities to engineering teams.

Who Should Apply

The ideal candidate has a track record in offensive security and vulnerability research with hands-on work in cloud environments and AI-related security. This role suits someone who can operate autonomously, design new attack techniques, and collaborate with engineers to validate fixes. It may not be a fit for those without deep experience in cloud security, code auditing, or reverse engineering. Common rejection factors include limited exposure to IAM or Kubernetes in cloud contexts and lack of prior work on supply-chain or CI/CD security.

Salary Insight

Pay range is not provided in this posting; compensation is discussed later. The job mentions a national range previously, but no specific figure is included for this listing.

Location

TypeRemote
LocationRemote
This is a remote position

Required Skills

Multi-Cloud ExploitationRed TeamingStrategic RemediationControl Validation

Application Tip

Highlight concrete wins: mention a validated exploit or PoC, cloud security impact, and a published research item or bug bounty outcome with specifics.

Share:

See NearSkill jobs more often in your search

How your application is processed

  1. 1Application received

    Your resume and details are logged the moment you apply.

  2. 2ATS + eligibility screening

    We check your profile against the role’s skills, seniority, and requirements.

  3. 3Employer sees qualified profiles only

    Only candidates who clear screening move forward.

See your fit score for every role

Similar open positions

Explore active roles that match your skills and interests.

Mercor

Mercor

1mo agoRemotehourly

Cybersecurity Research Expert – Offensive Security & Vulnerability Research

Mercor is hiring experienced Cybersecurity Research Experts to test how well frontier AI models handle advanced security reasoning, vulnerability analysis, and exploit development. In this remote, hourly contract role, you'll review AI-generated security assessments, validate root-cause findings, and help build benchmarks that push AI security capabilities forward. This is a fit for practitioners with a strong track record in offensive security and a public portfolio of technical contributions.

200–250/hr
· 5 openings
Offensive SecurityVulnerability ResearchExploit Development+17 more
Micro1

Micro1

30d agoRemotecontract
Hot

Red Team Lead (Offensive Cybersecurity)

This remote contractor role with micro1 puts your offensive cybersecurity expertise to work in a unique way: you'll help train next-generation AI systems by designing evaluation frameworks and attack simulations. No prior AI experience is required—your hands-on knowledge of exploit chains, cloud/appsec, and social engineering is what makes you the ideal candidate. You'll shape how models learn about real-world threats while operating under strict ethical boundaries.

50–90/hr
Cyber SecurityExploit ChainsCloud/appsec+1 more
Mercor

Mercor

9d agoRemotehourly

CVE Vulnerability Expert

You will review vulnerability-reproduction and remediation assignments that feed the training and evaluation pipeline of a frontier AI lab. Each assignment asks you to judge whether CVE reproductions match the real-world flaw, whether the proposed fix actually eliminates the risk, and whether the verification logic can catch a regression. You will also inspect Docker Compose environments to confirm they recreate the exploitable condition described in the CVE. The output is a structured, rubric-based evaluation that shapes how the lab improves its model training data. The role is a remote, hourly engagement for security professionals based in the United States.

70–90/hr
· 3 openings
CveCvssCwe+15 more
Micro1

Micro1

1mo agoRemotecontract

Network Security Engineer

This role is a unique opportunity to apply your network security expertise to train cutting-edge AI systems. You'll provide real-world knowledge that helps models learn and reason more effectively. No AI background is needed—your hands-on security skills are what count. This is a remote contract position with flexible hours.

30–90/hr
· 10 openings
AzureAWSCloud Platform+4 more
Micro1

Micro1

1mo agoRemotecontract

Product Security Engineer

This is a chance to shape the future of security engineering at a company building AI-native systems. As a Product Security Engineer, you'll design autonomous security platforms that use machine learning and large language models to find and fix vulnerabilities at scale. You'll work remotely with a team that values deep technical expertise and a proactive approach to securing modern software and AI workloads.

400K
AI & SecurityApp Security ToolingLLM Security+1 more
Micro1

Micro1

30d agoRemotefull-time

Cyber Security Analyst

This role lets you put your cybersecurity expertise to work in a unique way—helping train next-generation AI systems. You won't need any prior AI experience; your domain knowledge in security is what counts. As a part-time, remote contractor, you'll test and guide AI models through hands-on prompts and analysis.

20–80/hr
· 6 openings
Threat DetectionNetwork SecurityPenetration Testing