MechabitsMechabits
← All careers

Cybersecurity

Security engineer

Contract or full-time · Remote · worldwide

Posted
October 8, 2026
Apply by
October 15, 2026
Compensation
Up to $30,000 USD per year (experience and region)

Help clients and Mechabits teams design, review, and harden modern applications — with findings engineers can actually ship.

Match CV & apply

About this role

You will partner with product engineers on AppSec and cloud baselines that stick after the engagement ends. We want clear risk language, practical remediation, and playbooks teams can keep running — not fear-based reports nobody acts on.

What success looks like

  • Delivers findings with severity, impact, and a shippable fix path
  • Helps a team adopt a secure auth or secrets baseline
  • Adds at least one reusable CI or review gate clients keep
  • Explains risk calmly to non-security stakeholders

Responsibilities

  • Perform architecture and application reviews aligned to OWASP practices
  • Guide secure auth, secrets, and cloud baselines
  • Support remediation with product engineering teams
  • Contribute to reusable DevSecOps playbooks and CI gates
  • Explain risk clearly to non-security stakeholders

Requirements

  • Hands-on application or cloud security experience
  • Ability to explain risk without unnecessary jargon
  • Familiarity with OWASP and modern web / API stacks
  • Clear written English for async collaboration

Nice to have

  • SAST/DAST tooling experience
  • Threat modeling facilitation
  • Arabic reading/writing is a plus

How to apply

Use Match CV & apply on this role: we score your CV against the opening, show you the gaps, and submit your application with your PDF and match summary. Prefer to write yourself? Use the email link below. We typically reply within a few business days.

Match CV & apply

Or write directly to careers@mechabits.com