Logo for True Logic Solutions

Senior Vulnerability Resercher - Cybersecurity Company

Key Facts

Remote From: 
Full time
Senior (5-10 years)
English

Other Skills

  • Collaboration
  • Communication
  • Time Management

Roles & Responsibilities

  • 5+ years of hands-on experience in vulnerability research, penetration testing, bug bounty programs, or offensive security
  • Strong web application and API security expertise with deep understanding of authentication/authorization flows (JWT, OAuth, SSO, sessions, cookies) and access to control vulnerabilities
  • Proven experience identifying vulnerabilities (IDOR, BOLA, business logic flaws, authentication bypasses, privilege escalation) and using offensive security tools (Burp Suite, Postman, curl, Browser DevTools); ability to analyze HTTP requests/responses
  • Ability to translate manual penetration testing workflows into automated testing logic; scripting experience in Python or JavaScript; strong communication and documentation skills; conversational English; must be located in Latin America

Requirements:

  • Conduct security research on web applications, APIs, and complex workflows; identify, validate, and reproduce real-world vulnerabilities
  • Analyze authentication, authorization, session management, and access control mechanisms; translate manual testing into automated detection and exploitation logic
  • Develop and refine payloads, exploit strategies, and vulnerability validation methods; analyze HTTP traffic and browser/app flows
  • Collaborate with engineering teams to improve the platform's automation and offensive security capabilities; document findings with technical details, impact, and reproduction steps

Job description

About Truelogic

At Truelogic we are a leading provider of nearshore staff augmentation services headquartered in New York. For over two decades, we’ve been delivering top-tier technology solutions to companies of all sizes, from innovative startups to industry leaders, helping them achieve their digital transformation goals.

Our team of 600+ highly skilled tech professionals, based in Latin America, drives digital disruption by partnering with U.S. companies on their most impactful projects. Whether collaborating with Fortune 500 giants or scaling startups, we deliver results that make a difference.

By applying for this position, you’re taking the first step in joining a dynamic team that values your expertise and aspirations. We aim to align your skills with opportunities that foster exceptional career growth and success while contributing to transformative projects that shape the future.

Our Client

A hypergrowth cybersecurity startup focused on building advanced Agentic Red Team capabilities. Their platform automates offensive security techniques to help organizations continuously identify vulnerabilities, attack paths, and security gaps across modern environments.

Designed for mid-market and enterprise organizations, the platform enables security teams to proactively strengthen their defenses through scalable, automated security testing and intelligent attack simulation.


Job Summary

We are looking for a highly skilled Vulnerability Researcher to identify real-world security vulnerabilities across modern web applications and translate those findings into scalable, automated testing logic.

This role combines hands-on offensive security expertise with an automation-focused mindset. You’ll work on replicating sophisticated attack scenarios at scale, helping evolve the platform’s automated red team capabilities.

You’ll collaborate closely with engineering and product teams to improve detection logic, expand testing coverage, and continuously enhance the platform’s offensive security engine.

Responsibilities

  • Perform security research on web applications, APIs, and complex application workflows.

  • Identify, validate, and reproduce real-world vulnerabilities in modern applications.

  • Analyze authentication, authorization, session management, and access control mechanisms.

  • Translate manual penetration testing techniques into automated detection and exploitation logic.

  • Develop and refine payloads, exploit strategies, and vulnerability validation methods.

  • Analyze HTTP traffic, browser behavior, and application flows to uncover security weaknesses.

  • Collaborate with engineering teams to improve the platform’s automation and offensive security capabilities.

  • Document findings clearly, including technical details, impact analysis, and reproduction steps.

Qualifications and Job Requirements

  • 5+ years of hands-on experience in vulnerability research, penetration testing, bug bounty programs, or offensive security.

  • Strong expertise in web application and API security.

  • Deep understanding of Authentication and authorization flows; JWT, OAuth, SSO, sessions, and cookies; Access control vulnerabilities and privilege escalation.

  • Proven experience identifying vulnerabilities (IDOR / BOLA, Business logic flaws, Authentication bypasses, Privilege escalation vulnerabilities).

  • Experience using offensive security tools (Burp Suite, Postman, curl, Browser DevTools).

  • Ability to analyze and manipulate HTTP requests/responses and application behavior.

  • Scripting experience with Python or JavaScript.

  • Experience converting manual pentesting workflows into automated testing logic.

  • Strong communication and documentation skills.

  • Conversational English proficiency.

  • Must be located in Latin America.

Nice to have

  • Strong Python development skills.

  • Experience with browser automation (Playwright, Selenium, Puppeteer).

  • Experience with GraphQL, gRPC, WebSockets, and mobile APIs.

  • Exposure to cloud security environments.

  • Familiarity with AI-driven security or automated exploitation workflows.

  • Familiarity with tools such as Nuclei or custom vulnerability scanners.

What We Offer

  • 100% Remote Work: Enjoy the freedom to work from the location that helps you thrive. All it takes is a laptop and a reliable internet connection.

  • Highly Competitive USD Pay: Earn an excellent, market-leading compensation in USD, that goes beyond typical market offerings.

  • Paid Time Off: We value your well-being. Our paid time off policies ensure you have the chance to unwind and recharge when needed.

  • Work with Autonomy: Enjoy the freedom to manage your time as long as the work gets done. Focus on results, not the clock.

  • Work with Top American Companies: Grow your expertise working on innovative, high-impact projects with Industry-Leading U.S. Companies.

Why You’ll Like Working Here

  • A Culture That Values You: We prioritize well-being and work-life balance, offering engagement activities and fostering dynamic teams to ensure you thrive both personally and professionally.

  • Diverse, Global Network: Connect with over 600 professionals in 25+ countries, expand your network, and collaborate with a multicultural team from Latin America.

  • Team Up with Skilled Professionals: Join forces with senior talent. All of our team members are seasoned experts, ensuring you're working with the best in your field.

Apply now!

Related jobs

Other jobs at True Logic Solutions

We help you get seen. Not ignored.

We help you get seen faster — by the right people.

🚀

Auto-Apply

We apply for you — automatically and instantly.

Save time, skip forms, and stay on top of every opportunity. Because you can't get seen if you're not in the race.

AI Match Feedback

Know your real match before you apply.

Get a detailed AI assessment of your profile against each job posting. Because getting seen starts with passing the filters.

Upgrade to Premium. Apply smarter and get noticed.

Upgrade to Premium

Join thousands of professionals who got noticed and hired faster.