{"id":1141593,"url":"https://alion.io/job/24mag-remote-application-security-engineer-appsec-30-100hour","title":"Remote | Application Security Engineer (AppSec) - $30-$100/hour","company":{"id":2667046,"name":"24Mag","domain":"24-mag.com","url":"https://alion.io/company/24mag","size_band":"51-200","is_staffing_agency":false,"is_intermediary":false,"ats_vendor":null,"truth_index":null},"role":"Security","role_family":"Security","seniority":null,"employment_type":"contractor","work_mode":"remote","remote_scope":"stated_countries","hiring_geo_confidence":"inferred","locations":["New York, United States"],"countries":["US"],"hiring_countries":["US"],"hiring_countries_total":1,"salary":null,"salary_estimate":{"min_usd":108000,"max_usd":246000,"period":"year","method":"role_country_seniority_unknown","sample_n":1647},"experience_years_min":null,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"C++","optional":false},{"name":"CWE","optional":false},{"name":"Go","optional":false},{"name":"Java","optional":false},{"name":"Node JS","optional":false},{"name":"OWASP","optional":false},{"name":"Python","optional":false},{"name":"Rust","optional":false},{"name":"TypeScript","optional":false},{"name":"JavaScript","optional":true}],"status":"live","first_seen_at":"2026-09-23T12:13:03Z","employer_posted_date":null,"last_verified_at":"2026-09-23T12:13:03Z","board_verified":false,"closed_at":null,"days_open":0,"trust":{"level":"not_scored","repost_count":null,"flags":[],"days_open":0},"description":"This a Full Remote job, the offer is available from: New York (USA)\nWe are sharing a specialised consulting opportunity for experienced Application Security Engineers with strong expertise in secure software development, backend engineering, penetration testing, vulnerability assessment, security auditing, and code review to contribute to an advanced AI training and software-engineering evaluation project.\nSelected professionals will create realistic coding tasks involving feature implementation, bug fixing, and security-sensitive application scenarios, while developing deterministic verifiers that accept valid solutions and reject incorrect or unsafe implementations. No prior experience in AI is required.\nKey Responsibilities\nApplication Security & Secure Engineering\nEvaluate software for application-security weaknesses and unsafe implementation patterns\n\nApply secure-coding practices across realistic backend engineering scenarios\n\nIdentify vulnerabilities affecting confidentiality, integrity, or system reliability\n\nAssess security implications of architectural and implementation decisions\n\nApply professional AppSec judgement across production-style codebases\n\nPenetration Testing & Security Review\nApply experience with penetration testing, vulnerability assessment, and security audits\n\nIdentify weaknesses aligned with common OWASP and CWE categories\n\nReview code for exploitable behaviour, insecure assumptions, and configuration risks\n\nEvaluate proposed fixes for effectiveness and unintended security consequences\n\nDocument security findings and technical reasoning clearly\n\nCoding Task & Backend Development\nDesign challenging coding tasks involving feature implementation and bug fixes\n\nWork across Java, Node.js, Go, Rust, TypeScript, Python, C++, or similar languages\n\nDevelop and evaluate scalable backend services and APIs\n\nDefine clear technical requirements, constraints, and expected behaviours\n\nApply algorithms, data structures, and sound software-engineering principles\n\nDebugging, Refactoring & Performance\nDiagnose complex software defects and identify underlying root causes\n\nResolve bugs and performance bottlenecks across varied codebases\n\nRefactor existing code to improve clarity, maintainability, and reliability\n\nImplement complex features within mature or large-scale applications\n\nValidate changes through automated testing and structured technical review\n\nDeterministic Verification & Code Quality\nBuild deterministic verifiers for coding tasks and submitted solutions\n\nEnsure verification accepts reasonable valid solutions while rejecting incorrect outputs\n\nDevelop tests covering expected behaviour, edge cases, and failure conditions\n\nReview code for correctness, maintainability, performance, and security\n\nProvide clear technical documentation supporting reproducible evaluation\n\nIdeal Profile\nStrong professional experience in application security, backend engineering, or cybersecurity\n\nExpertise in Java, Node.js, Go, Rust, TypeScript, Python, C++, or a comparable language\n\nProven experience building scalable services and APIs\n\nStrong background in secure coding and application-security review\n\nExperience with penetration testing, vulnerability assessment, or security auditing\n\nFamiliarity with OWASP, CWE, and common software-security weaknesses\n\nStrong debugging, automated-testing, and performance-optimisation skills\n\nExperience implementing complex features in production codebases\n\nStrong code-review instincts and attention to software quality\n\nExperience refactoring mature or large-scale systems\n\nSolid understanding of algorithms, data structures, and core computer-science concepts\n\nExcellent analytical, problem-solving, and technical communication skills\n\nAbility to work independently and apply professional judgement without outside assistance\n\nNo prior AI-training or model-evaluation experience is required\n\nEngagement Details\nIndependent contractor engagement\n\nFully remote\n\nExpected commitment: approximately 15 hours per week\n\nFlexible schedule; contributors may choose their working hours and days, including weekends\n\nDisplayed compensation range: $30-$100/hour\n\nActual compensation structure is output-based, with payment made per task that meets project specifications\n\nTask completion time may vary depending on individual experience and workflow\n\nMinimum weekly submission requirements apply; the source does not specify the exact number of required tasks\n\nWork will involve application security, backend engineering, coding-task development, bug fixing, deterministic verification, automated testing, and security review\n\nScreening includes an approximately 30-minute AI interview, a tentative technical assessment, and hiring-manager review\n\nRoles are typically filled within approximately 48 hours, with initial tasks expected within approximately 24-48 hours after onboarding\n\nInterviews, assessments, and project work are expected to be completed without outside assistance\n\nProject scope, workload, codebases, languages, and evaluation standards may evolve depending on project requirements\n\nWork must be completed without using confidential or proprietary information belonging to any employer, client, institution, or other third party\n\nAbout the Platform\nThis opportunity is available through 24-MAG LLC. We connect experienced professionals with remote consulting opportunities across technical, evaluation, and project-based workstreams.\nBy submitting this application, you acknowledge that your information may be processed by 24-MAG LLC for recruitment and opportunity matching in accordance with our Privacy Policy: https://www.24-mag.com/privacy-policy","description_format":"text","description_chars":5656,"description_truncated":false,"requirements":{"experience_years_min":null,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":["Flexible schedule"],"hiring_locations":[{"name":"United States","iso":"US","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Application Security"],"lifecycle":[{"event":"open","at":"2026-09-23T12:13:03Z"}],"liveness":{"score":86,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.86,"p_room":1,"age_days":0,"expected_fill_days":58,"reasons":["seen:0","win:early"],"computed_at":"2026-09-23T20:49:39Z"},"pay":null,"html_url":"https://alion.io/job/24mag-remote-application-security-engineer-appsec-30-100hour","json_url":"https://alion.io/job/24mag-remote-application-security-engineer-appsec-30-100hour.json","meta":{"generated_at":"2026-09-23T20:49:39Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers"}}