Location: Remote
Your expertise:
BSc / MS in computer science or a related field
Previous CVEs in desktop applications
Proficiency with reverse engineering tools
Significant experience in memory exploitation techniques (e.g. gaining code execution from
memory vulnerabilities in modern operating systems)
Familiarity with cloud security best practices
3+ years of industry experience
OSCP / OSWE / OSED / RET2 certification
Will definitely be a plus:
An attacker mindset: engineers will often want proof before fixes are implemented
Eagerness to learn — you are not expected to know everything coming in, but you should continuously learn new techniques on the job
The ability to communicate clearly, acknowledge mistakes, and disagree when necessary
Demonstrable passion for offensive security
Experience reading, writing and debugging C++ and Python code
Basic experience with memory exploitation techniques
Demonstrable experience with web exploitation techniques and tools (e.g. PortSwigger lab scoreboards)
Excellent written and oral communication skills
You will be involved into:
Reproduce and triage incoming vulnerabilities from security automation/bug bounty programs, then propose granular fixes to engineers
Discover vulnerabilities and construct exploits for core Parallels applications such as Parallels
Remote Application Server
Assist in the CVE disclosure process
Provide threat models and design reviews for teams throughout the company
Assist in tuning existing static analysis, dynamic analysis, and dependency management tools
About the company and project:
ZONE3000 is a 2400+ people family that forms a new cultural code in the software development business. For 25 years we have been focusing on the highest quality of projects and empowering people to think big and make a difference. We are looking for talents who want to create and improve technological solutions for tomorrow and make things as best possible.
We are looking for a highly motivated and talented Application Security Engineer to join their team.
In this role, you will help make security decisions that impact millions of users while gaining hands-on experience in exploit development, vulnerability research, and CVE discovery. The ideal candidate combines an attacker mindset with strong attention to detail and enjoys collaborating with engineering teams to build secure, scalable solutions.
Our client is a global technology company whose products are used by millions of customers worldwide. They are investing heavily in security, innovation, and engineering excellence, offering an opportunity to work on meaningful challenges with real-world impact.
You’ll be joining the company at an exciting stage of growth, working alongside experienced professionals in a collaborative environment where new ideas are encouraged and technical expertise is valued.
The company also promotes a flexible, people-first culture, empowering employees to work in the way that suits them best while maintaining a healthy work-life balance.



