2

Remote Exploit Developer Jobs in Texas (NOW HIRING)

Salesforce Solution Architect

Dallas, TX · Remote

$150K - $180K/yr

... exploit new technology components. * Model processes, architecture, data structures, and ... Set standards for programming tools and techniques, and advise on their application and compliance

Remote Exploit Developer information

What are some common challenges faced by remote exploit developers when working collaboratively with distributed security teams?

Remote Exploit Developers often work closely with global security teams, which can present challenges such as coordinating across different time zones, ensuring secure and clear communication, and managing sensitive information. Collaboration typically involves using encrypted channels, detailed code documentation, and regular virtual meetings to share progress and address vulnerabilities. Adapting to asynchronous workflows and maintaining strong team relationships are essential for overcoming these challenges and delivering effective, timely exploit solutions.

What are the key skills and qualifications needed to thrive as a remote exploit developer?

To thrive as a Remote Exploit Developer, you need advanced knowledge of operating systems, vulnerability research, reverse engineering, and strong programming skills in languages like C, C++, Python, or Assembly, often supported by a relevant degree or certifications in cybersecurity. Familiarity with tools such as IDA Pro, Ghidra, Metasploit, and debuggers, as well as experience with fuzzing frameworks and exploit development environments, is crucial. Exceptional problem-solving, persistence, and attention to detail, along with ethical judgment, set top performers apart in this field. These skills are vital for responsibly identifying and demonstrating vulnerabilities, enabling organizations to improve their security and minimize risk.

What is a remote exploit developer?

A Remote Exploit Developer is a cybersecurity professional who specializes in identifying, creating, and testing software exploits that can be executed remotely over a network. Their work typically involves finding vulnerabilities in software or hardware systems and developing code that can take advantage of these flaws without physical access to the target device. This role is essential in both offensive security research and defensive security, as it helps organizations understand and mitigate potential risks. Remote Exploit Developers must have strong programming skills, knowledge of operating systems, and an in-depth understanding of security protocols.

What is the difference between Remote Exploit Developer vs Penetration Tester?

AspectRemote Exploit DeveloperPenetration Tester
CredentialsKnowledge of security vulnerabilities, programming skills, certifications like OSCP or CEHSecurity certifications (OSCP, CEH), testing experience, technical background
Work EnvironmentFocus on developing exploits, testing security flaws, often in a controlled environmentSimulating attacks, assessing security posture, often in client or corporate settings
Industry UsageCybersecurity, software security, vulnerability researchCybersecurity, consulting, IT security teams

While both roles require security knowledge and technical skills, Remote Exploit Developers focus on creating and testing exploits to identify vulnerabilities, whereas Penetration Testers simulate attacks to evaluate security defenses. Both roles are essential in cybersecurity but differ in their primary objectives and methods.

What are the most commonly searched types of Exploit Developer jobs in Texas? The most popular types of Exploit Developer jobs in Texas are:
What job categories do people searching Remote Exploit Developer jobs in Texas look for? The top searched job categories for Remote Exploit Developer jobs in Texas are:
What cities in Texas are hiring for Remote Exploit Developer jobs? Cities in Texas with the most Remote Exploit Developer job openings:

Senior Application Security Engineer

Qualia

Austin, TX • Remote

$180K - $210K/yr

Full-time

Medical, Retirement

This job post has expired today. Applications are no longer accepted.


Job description

At Qualia, we\'ve built the leading B2B real estate technology that transforms the home buying and selling experience into a simple, secure, and enjoyable process. Our SMB and Enterprise products bring together users from across the real estate ecosystem---homebuyers and sellers, lenders, title and escrow agents, and real estate agents---onto a single shared digital closing platform, providing greater clarity and transparency to real estate transactions. Today, through our business customers across the country, millions of consumers use Qualia to close on homes every year.

WHAT YOU\'LL WORK ON

We\'re hiring a Senior Application Security Engineer to join a small, high-leverage AppSec team. This is a deep-technical IC role with a staff-leaning scope: you\'ll set the technical direction and own delivery on how we find, fix, and prevent vulnerabilities across Qualia\'s products and cloud infrastructure, and you\'ll be the person other engineers want in the room when an architecture decision has a security dimension.

You\'ll partner daily with product engineering, infrastructure, and platform teams, and you\'ll work closely alongside our existing AppSec engineers - raising the technical bar of the team while staying deeply hands-on with code, tooling, and adversarial testing. This is the right role for someone who is as comfortable writing a Burp extension or a Semgrep rule as they are pairing with a product engineer to land a fix.

RESPONSIBILITIES
  • Run offensive assessments against Qualia\'s applications and infrastructure: manual penetration testing, exploit development, authenticated web/API testing, and adversarial review of new designs before they ship
  • Lead threat modeling and secure design review for the highest-risk initiatives across the company, and mentor engineers to do the same for their own work
  • Own and evolve our AppSec tooling stack end-to-end - SAST, DAST, SCA, secret scanning, IaC scanning, and the CI/CD gates that tie them together. Build the custom rules, detections, and automation that generic tooling doesn\'t give us
  • Harden our cloud posture: review AWS configurations, IAM policies, Kubernetes/EKS workloads, and networking boundaries; build automation and guardrails that prevent the same class of issue from recurring
  • Reduce toil for the team - write the tools, scripts, and integrations that turn a day of triage into a few minutes
  • Partner with Infrastructure and Platform on detection engineering, incident response support, and cross-cutting programs (secrets management, supply chain, runtime security)
  • Set the technical bar for the AppSec team: raise the quality of reviews, establish patterns others can reuse, and mentor peers across seniority levels
  • Represent AppSec in architectural reviews, vendor evaluations, and compliance efforts
YOUR BACKGROUND THAT LIKELY MAKES YOU A MATCH
  • 8+ years of hands-on experience in application security, offensive security, or security engineering, with demonstrable depth in at least two of: offensive testing, security tooling/automation, and cloud/infra security
  • Strong offensive skills - you can manually exploit real web and API vulnerabilities beyond what a scanner will find, and you can teach others to do the same
  • Deep familiarity with building and operating security tooling in a modern engineering org: SAST/DAST/SCA pipelines, custom detection rules, secrets scanning, and CI/CD security gates. You\'ve written tooling, not just configured it
  • Production experience with AWS (IAM, VPC, networking, data services), containerized workloads (Docker, Kubernetes/EKS), and infrastructure-as-code (Terraform or similar)
  • Comfort reading, reviewing, and contributing code in at least one language common to modern web stacks (Python, Go, Ruby, TypeScript, or similar)
  • Clear, direct communication style. You can make a sharp technical argument to senior engineers, translate risk into business terms for leadership, and write a bug report an engineer actually wants to fix
  • Strong partnership instincts - you get leverage by making other teams faster, not by blocking them

NICE TO HAVE

  • Experience in fintech, proptech, healthcare, or another regulated industry where data sensitivity is high
  • Background meaningfully contributing to a bug bounty program
  • Experience with identity and access systems (OIDC, SAML, federation, fine-grained authorization)
  • Detection engineering, DFIR, or red-team experience
  • Open source contributions to security tooling, published research, or CVE credits
  • Relevant certifications (OSCP, OSWE, GWAPT, GPEN, etc.) - valued but not required

While this role is remote work eligible, we have three office locations: San Francisco, California; Concord, New Hampshire; and Austin, Texas.

This role has a base annual salary of $180,000-$210,000  plus a competitive equity and benefits package. (Salary to be determined by relevant experience, location, knowledge, and skills of the applicant, internal equity, and alignment with market data.)

WHY QUALIA

Qualia is made up of incredibly bright, mission-driven coworkers who are passionate about using technology to solve real-world problems---and we\'re growing quickly. In order to continue building an engaging and dynamic organization, we\'re committed to giving everyone the support they need to do great work.

Our benefits package is designed to allow our team members to be their best selves, both in and out of the workplace. In addition to comprehensive health plans, a 401k program, and commuter benefits, we prioritize family and personal well-being through professional development, parental leave, and a flexible time off policy. Qualia offers a robust online onboarding program to train new hires, biweekly all hands meetings, and a variety of internal virtual events to keep employees connected.

We believe diverse perspectives and backgrounds are critical to building great technology, and our goal is to cultivate an environment where people feel equally valued and respected. Qualia is proud to be an equal-opportunity workplace, and we welcome applicants from all backgrounds regardless of race, color, ancestry, religion, gender identity or expression, sexual orientation, marital status, age, citizenship, socioeconomic status, disability, or veteran status.

By submitting your application, you acknowledge and agree to the collection, processing, and use of your personal information as described in our Employee Data Privacy Notice.

#LI-Remote