Curated jobs from companies hiring worldwide — engineering, design, product, marketing, support, and more. Remote‑first, updated daily.
Sign in to save this search and get notified by Telegram or email the moment a matching job is posted.
No account? Create one
Pick a job to read the details
Tap any role on the left — its description and apply link will open here.
Mercor's mission is to organize human intelligence to power the AI economy. We partner with leading AI labs and enterprises to provide the human intelligence essential to AI development. Our vast talent network trains frontier AI models in the same way teachers teach students: by sharing knowledge, experience, and context that can't be captured in code alone. Today, more than 30,000 experts in our network collectively earn over $2 million a day.
Mercor is creating a new category of work where expertise powers AI advancement. Achieving this requires an ambitious, fast-paced and deeply committed team. You’ll work alongside researchers, operators, and AI companies at the forefront of shaping the systems that are redefining society. Mercor is a profitable Series C company valued at $10 billion. We work in-person five days a week in our San Francisco, NYC, or London offices.
You'll own application security at a company where the app layer is the highest-priority security surface. This is not a scan-and-triage role. You'll embed in the development lifecycle, review code for exploitable flaws, build security tooling into CI/CD, and drive vulnerability remediation across a platform serving 300K+ experts and enterprise clients processing sensitive AI training data.
We use AI heavily in our own security work. You should be comfortable building alongside AI code-gen tools, using LLMs to accelerate code review and threat modeling, and automating away the repetitive work that slows AppSec programs down. If you'd rather write a CodeQL query than file a Jira ticket, you'll fit in here.
We're in-person five days a week at our SF headquarters, with first Fridays remote.
Security review workflows embedded in the SDLC - PR-level analysis that catches auth bugs, injection flaws, and business logic errors before they ship
SAST/DAST pipelines integrated into CI/CD - shifting security left without slowing down deploys
Vulnerability management processes that prioritize by real exploitability, not CVSS score
Secure coding standards and guardrails that make the safe path the easy path for 50+ engineers
Threat models for new features and architecture changes - especially around AI data pipelines, payment flows, and multi-tenant boundaries
Bug bounty program operations - triaging HackerOne reports, validating findings, and driving fixes to closure
You've found and fixed real vulnerabilities in production applications - not just run scanners
Deep understanding of web application security: OWASP Top 10 is baseline, you think in terms of attack chains and business logic flaws
Strong in at least one of Python, TypeScript, or Go - you can read a PR and spot the auth bypass
Experience building or tuning SAST/DAST tooling (Semgrep, CodeQL, Snyk, Burp, or similar)
You understand modern web frameworks, APIs, and authentication patterns well enough to threat model them
Experience managing a vulnerability pipeline - from discovery through prioritization to verified remediation
5+ years of professional experience in application security, security engineering, or software engineering with a strong security focus
Experience running or triaging a bug bounty program (HackerOne, Bugcrowd)
Offensive security skills - you've done penetration testing and can think like an attacker
Experience securing AI/ML applications - model serving APIs, training data pipelines, prompt injection defense
Familiarity with supply chain security - dependency scanning, registry firewalls (Socket, Snyk)
You've built custom security tooling that a team still uses
Contributions to open source security projects or published vulnerability research
The problem is real. Application security at scale is hard - you'll build defenses that matter across a fast-moving platform.
AI-native AppSec. You'll use frontier AI tools daily - for code review, vulnerability analysis, and anything that benefits from an AI co-pilot.
Ownership from day one. You'll own the entire application security domain - from code review processes to CI/CD security to bug bounty operations.
See the future early. Working alongside AI labs means you'll understand frontier model capabilities months before the market.
Bi-annual performance bonus structure
Generous equity grant vested over 4 years
Up to $15k Relocation bonus
$10K housing bonus (if you live within 0.5 miles of our office)
$1.5K monthly stipend for meals
Free Equinox membership
$200 monthly laundry reimbursement
$200 monthly personal wellness reimbursement
Health, Dental, Vision insurance
Ready to apply?
Apply to Mercor
Share this job
Ready to apply?
Apply to Devsu
Share this job
Ready to apply?
Apply to Rentokil Initial
Share this job
Ready to apply?
Apply to Rentokil Initial
Share this job
Ready to apply?
Apply to QualDerm Partners
Share this job
Ready to apply?
Apply to QualDerm Partners
Share this job
Ready to apply?
Apply to EarthCam
Share this job
Ready to apply?
Apply to YouTrip
Share this job
Ready to apply?
Apply to Liberty Behavioral & Community Services, Inc.
Ready to apply?
Apply to DataVisor
Share this job
Ready to apply?
Apply to DataVisor
Share this job
Ready to apply?
Apply to Centorrino Technologies
Share this job
Ready to apply?
Apply to Mindful Support Services
Share this job
Ready to apply?
Apply to Ripple Effect
Share this job
Ready to apply?
Apply to Kognitive Sales Solutions
Share this job
Ready to apply?
Apply to TP-Link Systems Inc.
Share this job
Ready to apply?
Apply to Vertin
Share this job
Ready to apply?
Apply to 1915 South / Ashley
Share this job
Ready to apply?
Apply to Attadale Partners, LLC
Share this job
Ready to apply?
Apply to Attadale Partners, LLC
Share this job
Ready to apply?
Apply to Living in a Bubble
Ready to apply?
Apply to Boost
Ready to apply?
Apply to Boost
Ready to apply?
Apply to Solarvest
Ready to apply?
Apply to Sangoma
Share this job
Ready to apply?
Apply to Behavioral Health Works
Share this job
Ready to apply?
Apply to DaCodes
Share this job
Ready to apply?
Apply to Whizz
Ready to apply?
Apply to Birdman
Share this job
Ready to apply?
Apply to LawnStarter
Share this job
Ready to apply?
Apply to Michael & Associates, Attorneys at Law
Share this job
Ready to apply?
Apply to Datacom
Share this job
Ready to apply?
Apply to Datacom
Share this job
Ready to apply?
Apply to RightSite Health
Share this job
Ready to apply?
Apply to FlexTal Staffing LLC
Share this job
Ready to apply?
Apply to Lafrance Hospitality
Share this job
Ready to apply?
Apply to Telestream
Share this job
Ready to apply?
Apply to Our Home
Share this job
Ready to apply?
Apply to Distalmotion SA
Share this job
Ready to apply?
Apply to Kia Veterans Technician Apprenticeship Program (VTAP)
Share this job
Ready to apply?
Apply to Phoenix Home Care and Hospice
Share this job
Ready to apply?
Apply to Phoenix Home Care and Hospice
Share this job
Ready to apply?
Apply to Aretum
Share this job
Ready to apply?
Apply to Punch Studio
Share this job
Ready to apply?
Apply to Punch Studio
Share this job
Ready to apply?
Apply to Gypsy Collective
Share this job
Ready to apply?
Apply to Valsoft Corporation
Share this job
Ready to apply?
Apply to Woundlocal
Share this job
Ready to apply?
Apply to Woundlocal
Share this job
Ready to apply?
Apply to Woundlocal
Share this job
Ready to apply?
Apply to Woundlocal
JobsRadar was built for real people having a rough time in their job search — not for automated requests. You're clicking way too fast and you're now temporarily blocked.
Come back later. If you're genuinely job hunting, we've got your back — just act like a human.
Cookies & analytics
This site uses cookies from third-party services to deliver its features and to analyze traffic.
Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.
Free forever · takes 30 seconds · already have one?
Every worldwide-remote role pushed to our Telegram the moment it goes live. Subscribers apply hours before this page even refreshes.