> Markdown version of [/jobs/ext/2046327-application-security-specialist-100-en-remoto](https://www.wearedevelopers.com/jobs/ext/2046327-application-security-specialist-100-en-remoto). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Application Security Specialist, 100% En Remoto - **Company:** Zone3000 Technologies - **Location:** Barcelona, Spain (Remote available) - **Contract:** Permanent contract - **Skills:** Server Applications, Software Applications, C++ (Programming Language), Cloud Computing Security, Static Program Analysis, Software Debugging, Dynamic Program Analysis, Python (Programming Language), Reverse Engineering, Software Engineering, Software Security, Information Technology, Operating System Security, Vulnerability Analysis - **Published:** August 14, 2026 - **Apply:** https://www.buscojobs.com.es/application-security-specialist-100-en-remoto-en-barcelona-ID-367147341 ## About the Role BSc / MS in computer science or a related field Previous CVEs in desktop applications Proficiency with reverse engineering tools Significant experience in memory exploitation techniques (e.g. gaining code execution from memory vulnerabilities in modern operating systems) Familiarity with cloud security best practices 3+ years of industry experience OSCP / OSWE / OSED / RET2 certification Will definitely be a plus: An attacker mindset: engineers will often want proof before fixes are implemented Eagerness to learn you are not expected to know everything coming in, but you should continuously learn new techniques on the job The ability to communicate clearly, acknowledge mistakes, and disagree when necessary Demonstrable passion for offensive security Experience reading, writing and debugging C++ and Python code Basic experience with memory exploitation techniques Demonstrable experience with web exploitation techniques and tools (e.g. PortSwigger lab scoreboards) Excellent written and oral communication skills You will be involved into, We are looking for a highly motivated and talented Application Security Engineer to join their team. In this role, you will help make security decisions that impact millions of users while gaining hands-on experience in exploit development, vulnerability research, and CVE discovery. The ideal candidate combines an attacker mindset with strong attention to detail and enjoys collaborating with engineering teams to build secure, scalable solutions. ## Description Application Security SpecialistLocation: RemoteYour expertise:BSc / MS in computer science or a related fieldPrevious CVEs in desktop applicationsProficiency with reverse engineering toolsSignificant experience in memory exploitation techniques (e.g. gaining code execution frommemory vulnerabilities in modern operating systems)Familiarity with cloud security best practices3+ years of industry experienceOSCP / OSWE / OSED / RET2 certificationWill definitely be a plus:An attacker mindset: engineers will often want proof before fixes are implementedEagerness to learn you are not expected to know everything coming in, but you should continuously learn new techniques on the jobThe ability to communicate clearly, acknowledge mistakes, and disagree when necessaryDemonstrable passion for offensive securityExperience reading, writing and debugging C++ and Python codeBasic experience with memory exploitation techniquesDemonstrable experience with web exploitation techniques and tools (e.g. PortSwigger lab scoreboards)Excellent written and oral communication skillsYou will be involved into:Reproduce and triage incoming vulnerabilities from security automation/bug bounty programs, then propose granular fixes to engineersDiscover vulnerabilities and construct exploits for core Parallels applications such as ParallelsRemote Application ServerAssist in the CVE disclosure processProvide threat models and design reviews for teams throughout the companyAssist in tuning existing static analysis, dynamic analysis, and dependency management toolsAbout the company and project:ZONE**** is a ****+ people family that forms a new cultural code in the software development business.For 25 years we have been focusing on the highest quality of projects and empowering people to think big and make a difference.We are looking for talents who want to create and improve technological solutions for tomorrow and make things as best possible.We are looking for a highly motivated and talented Application Security Engineer to join their team.In this role, you will help make security decisions that impact millions of users while gaining hands-on experience in exploit development, vulnerability research, and CVE discovery.The ideal candidate combines an attacker mindset with strong attention to detail and enjoys collaborating with engineering teams to build secure, scalable solutions.Our client is a global technology company whose products are used by millions of customers worldwide.They are investing heavily in security, innovation, and engineering excellence, offering an opportunity to work on meaningful challenges with real-world impact.Youll be joining the company at an exciting stage of growth, working alongside experienced professionals in a collaborative environment where new ideas are encouraged and technical expertise is valued.The company also promotes a flexible, people-first culture, empowering employees to work in the way that suits them best while maintaining a healthy work-life balance.Reverse Engineering, Memory Exploitation, Vulnerability Research, Desktop Application Security, Operating Systems Security, Cloud Security ## Related Videos - [Software Security 101: Secure Coding Basics](https://www.wearedevelopers.com/videos/220-software-security-101-secure-coding-basics) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Using AI Without Losing Your Skills](https://www.wearedevelopers.com/videos/2045-using-ai-without-losing-your-skills) - [2021: Familiar APIs on Kickass Runtimes #slideless](https://www.wearedevelopers.com/videos/102-2021-familiar-apis-on-kickass-runtimes-slideless) - [Security Blindspots and How to Learn About Them - Anna Oliveira](https://www.wearedevelopers.com/videos/1754-security-blindspots-and-how-to-learn-about-them-anna-oliveira) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) ## Related Articles - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Where to Find Entry-Level Software Engineering Jobs](https://www.wearedevelopers.com/magazine/397-where-to-find-entry-level-software-engineering-jobs) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)