Application Security Engineer (Junior, Low-Level)

EUR 26,400-38,400 per year
JUNIOR
✅ Hybrid

SCRAPED

Used Tools & Technologies

Not specified

Required Skills & Competences ?

Security @ 3 Go @ 3 Manual Testing @ 3 Networking @ 2 Rust @ 3 HTTP @ 2 JWT @ 3 OAuth @ 3 Reporting @ 1 Compliance @ 6

Details

The world’s most advanced VPN, and a whole lot more.

If you’re a curious problem-solver who carves their own path, join the team behind Threat Protection Pro, the NordLynx protocol, and the fastest VPN on the planet—tools that put privacy, security, and control back in people’s hands.

Your impact? Helping millions take back control of their online security, privacy, and data.

Risk Department plays a vital role in protecting the organization, ensuring resilience and security across all operations. By assessing risks, ensuring compliance, and managing security audits, this team helps build a strong and trustworthy foundation.

Responsibilities

  • Help to conduct security reviews of application designs, source code, and third-party libraries.
  • Support the team during application vulnerability assessments using both automated tools and manual testing techniques (e.g., SAST, DAST, SCA, penetration testing).
  • Help maintain security tools, scripts, and processes to support secure development.
  • Stay current with industry trends, zero-day vulnerabilities, and best practices in application security.
  • Develop scripts and security automation tools to enhance application security testing processes.
  • Support internal and external audits.

Requirements

  • Experience in mobile/desktop application security assessment planning, testing, methodologies, and vulnerability reporting would be an advantage.
  • Knowledge of secure coding practices.
  • Basic knowledge in at least one low-level programming language (e.g., C, C++, Rust, Go).
  • Familiarity with networking protocols such as TCP, UDP and the HTTP protocol.
  • Bonus points for familiarity with debuggers (e.g. GDB, LLDB, WinDbg) and reverse engineering tools (e.g. Ghidra, IDA).
  • Basic knowledge of memory corruption issues, buffer overflows and related vulnerability classes.
  • Basic knowledge of common authentication and authorization protocols (OAuth, SAML, JWT, etc.).
  • Ability to work with networking tools such as Wireshark and tcpdump.
  • Ability to quickly assimilate new technologies and tools.
  • Bonus points for community contributions like public CVEs, bug bounty recognition, open-source tools, blogs, etc.

Location & Work Model

  • Workplace: Hybrid
  • Primary locations: Vilnius, Kaunas (Lithuania)

Compensation

  • Gross Salary: 2200–3200 EUR per month (gross)