Skip to main content
Back to Jobs

RFP -- Security Researcher

Conduct application security reviews across SecureDrop components

The contractor will conduct application security reviews across SecureDrop components and assist in threat modeling for new features and architectural changes. They will review pull requests and design documents with a focus on security properties and implications. They will also assist in preparing materials for and reviewing findings from third-party security audits, and advise on hardening strategies for deployment environments.

Why This Role?

Assist in preparing materials for and reviewing findings from third-party security audits

Key Responsibilities

  • Conduct application security reviews across SecureDrop components
  • Assist in performing threat modeling for new features and architectural changes
  • Review pull requests and design documents with a focus on security properties
  • Assist in preparing materials for and reviewing findings from third-party security audits
  • Advise on hardening strategies for SecureDrop’s deployment environments
  • Review and integrate security automation tooling such as LLMs and static code analyzers

Required Skills

securitythreat-modelingcode-reviewsecurity-auditsecurity-automationapplication securitythreat modelingcode reviewsecurity auditingdeployment hardeningsecurity automation

Indonesia Context

Working Hours Overlap:
Flexible — work your own hours
See remote (USD) vs local pay →

Keywords

SecureDropapplication securitythreat modelingsecurity auditdeployment hardeningLLM security tools
View Original Description from NoDesk

Original description from NoDesk

Scope of work In coordination with FPF’s other engineers and researchers, the contractor will: Conduct application security reviews across SecureDrop components. Assist in performing threat modeling for new features and architectural changes. Review pull requests and design documents with a focus on the security properties of new features and the security implications of architectural changes. Assist in preparing materials for and reviewing findings from third-party security audits. Advise on hardening strategies for SecureDrop’s deployment environments. Review and integrate security automation tooling, such as LLMs, static code analyzers, and other tools that can mitigate or discover security vulnerabilities. Desired qualifications

Track this application + get match alerts

Free account · no credit card · Log in

Pro $9/mo · unlimited applies + AI resume

Source
NoDesk
Job Type
full time
Location
Remote · Open worldwide
Category
Seniority
unknown
PostedFresh
Jul 7, 2026

Share this job

Help a friend find their next remote role.

Frequently asked questions

Is RFP -- Security Researcher at Freedom of the Press a remote job?
Yes. RFP -- Security Researcher at Freedom of the Press is a fully remote role open to candidates worldwide.
What type of employment is RFP -- Security Researcher at Freedom of the Press?
This is a full time position.
How do I apply?
Click the "Apply" button on this page to go to the official application at Freedom of the Press.

Explore related

Market data & reports

Salary & skill-demand research built from our own listings data.

From the blog

Track this application + get match alerts

Free account · no credit card · Log in

Pro $9/mo · unlimited applies + AI resume