|
Salary
unspecified
|
|
|
Employment Type
contract
|
Posted
2d ago
|
2d ago - Eclipse Foundation is hiring a remote Application Security Engineer, AI-Assisted Vulnerability Management. πΈ Salary: unspecified πLocation: USA, Canada, Germany, France, India, Brazil, Australia, Estonia, Japan, Portugal
Role Description
We are looking for an Application Security Engineer to design, build, and operate AI-assisted vulnerability management workflows across Eclipse Foundation open source projects. This role combines application security, security automation, and practical use of large language models to help identify, triage, and remediate vulnerabilities at a scale that would be difficult to achieve manually.
This is not a role focused on casually prompting a chatbot. You will build pipelines, integrate AI-assisted analysis into developer and CI/CD workflows, evaluate findings critically, reduce false positives, and collaborate with project maintainers to land real fixes. The goal is to deliver measurable improvements in how the Foundation discovers, prioritizes, and resolves security issues across its project portfolio.
This is an initial 12-month fixed-term role, fully remote and open to candidates located in the European Union, Canada, and the United States. Depending on organizational needs, funding, performance, and mutual fit, there may be an opportunity for renewal or transition to an ongoing/permanent position.
Responsibilities
Success in This Role
Success in this role means helping the Eclipse Foundation improve the speed, accuracy, and consistency of vulnerability discovery and remediation. This includes reducing triage time, improving true-positive rates, increasing the number of actionable findings delivered to projects, and helping maintainers land verified fixes. The role requires careful human review of AI-generated findings before they are shared with maintainers. We value accuracy, reproducibility, and respectful collaboration over the volume of reports produced.
Qualifications
Must-Have Qualifications
Nice-to-Have Qualifications
Working Style
We are looking for someone who values practical impact over theoretical findings. You should be comfortable working across many projects, dealing with incomplete information, validating results carefully, and communicating findings in ways that help maintainers take action.
This role requires good judgment, discretion with sensitive vulnerability information, and the ability to balance security urgency with open source community realities.
Compensation and Benefits
We offer highly competitive compensation along with a comprehensive benefits package. We thank all applicants for their interest; however, only those to be interviewed will be contacted.
Eclipse respects the dignity and independence of people with disabilities, and is committed to providing accommodation and support to persons with disabilities throughout any recruitment process, once made aware of a need for accommodation. If you require any special accommodation or support during the recruitment process, please indicate in your email to us.
|
|
Be aware of the location restriction for this remote position: USA, Canada, Germany, France, India, Brazil, Australia, Estonia, Japan, Portugal |
| βΌ | Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more. | οΈ
|
Salary
unspecified
|
|
|
Employment Type
contract
|
Posted
2d ago
|
|
|
Be aware of the location restriction for this remote position: USA, Canada, Germany, France, India, Brazil, Australia, Estonia, Japan, Portugal |
| βΌ | Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more. | οΈ
Access 150,000+ vetted remote jobs and get daily alerts.