Checkmarx logo

Security Researcher

Checkmarx

Braga, Braga, PortugalFull-timeNo compensation foundPosted 1mo agoVerified open 3 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
No compensation found
Location
Braga, Braga, Portugal
Schedule
Full-time
Work Authorization
Not specified

Job overview

Checkmarx is hiring a Security Researcher. Checkmarx is seeking an experienced Application Security Researcher to join their Security Research team. This role involves owning research across application security, AI security, and emerging technologies, analyzing vulnerabilities, and translating expertise into improvements for Checkmarx's AST products. The researcher will work autonomously on complex problems, share findings, and help raise the technical bar of the team.

Key focus areas include Research security facets of multiple programming languages, frameworks, and technologies, Perform secure code review and analyze results from Checkmarx's AST solutions, and Analyze and reason about code containing vulnerabilities across languages and frameworks.

Important skills include Application Security, Security Concepts, Vulnerabilities, Mitigations, Coding Practices, and Secure Code Review. Preferred (not required): AI Security, Emerging Technologies, SAST, and SCA.

Skills & qualifications

RequiredNice to have

Skills

Application SecuritySecurity ConceptsVulnerabilitiesMitigationsCoding PracticesSecure Code ReviewInterpreted LanguagesCompiled LanguagesSoftware DevelopmentLearning New Programming LanguagesLearning New TechnologiesOrganizational SkillsInterpersonal SkillsCommunication SkillsCollaborationCreativityHandling Multiple RequestsEnglish WrittenEnglish Oral PresentationAI SecurityEmerging TechnologiesSASTSCADAST

Qualifications

Professional Security Experience

Full job description

Security Researcher

  • Product
  • Braga, Portugal
  • Experienced
  • Full time
  • ID: P2192 Description Who are we?

Checkmarx is the AI-powered application security leader helping the world’s most security-conscious enterprises secure the software that powers modern life. For more than two decades, our unified platform and services have helped organizations protect human- and AI-generated code from the first line through runtime, reducing risk across applications, cloud, and the software supply chain without slowing innovation.​

We’re trusted by 1,600+ customers in 70+ countries, including some of the largest enterprises and governments in the world. Guided by research-led innovation and a developer-first mindset, we help every developer, security team, and enterprise build software that is risk-free by design.

What are we looking for?

We are looking for an experienced Application Security Researcher to join our Security Research team. As an experienced researcher, you will own research across application security, AI security, and emerging technologies. Analyzing how vulnerabilities manifest across languages and frameworks, and translating that expertise into improvements to Checkmarx's AST products (SAST, SCA, DAST, and beyond).

You will work autonomously on complex problems, share your findings with the team, and help raise the technical bar of Security Research teams.

How will you make an impact?

  • Research the security facets of multiple programming languages, frameworks, and technologies, with depth and autonomy.

  • Perform secure code review and analyze the results produced by Checkmarx's AST solutions, identifying gaps and improvement opportunities.

  • Analyze and reason about code containing a wide range of vulnerabilities across multiple languages and frameworks.

  • Devise and propose improvements grounded in application security expertise to bring Checkmarx products to the next level (SAST, SCA, DAST, etc.).

  • Help improve detection capabilities by designing, refining, and validating detection logic and rules that power our AST solutions.

  • Support developers and relevant stakeholders on application security topics.

  • Share knowledge across the team, documenting findings, reviewing peers' work, and mentoring less-experienced researchers. Requirements What is needed to succeed?

  • Solid knowledge of Application Security with deep understanding of security concepts, vulnerabilities, mitigations, and coding practices.

  • Professional security experience (Security research, web application penetration testing, secure development, secure code review, or similar fields).

  • Familiarity with both interpreted and compiled languages.

  • Familiarity with software development and associated methodologies.

  • Ability to learn new programming languages and technologies independently.

  • Excellent organizational, interpersonal, and communication skills with the ability to drive collaboration and innovation.

  • Ability to handle multiple requests and work in a fast-paced environment.

  • Proficient in English – both writing and oral presentation skills. What we have to offer Checkmarx offers a great work environment, professional development, challenging careers, competitive compensation, great work-life balance, as well as great benefits and perks throughout the year.

Checkmarx is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national or ethnic origin, gender, sexual orientation, gender identity or expression, age, disability, or other characteristics protected by law.

You've read the whole posting — now see how you match it.