
SecOps Engineer
Required Skills
About micro1
Our goal is to enable 1 billion people to do meaningful work by applying their expertise to AI. We’ve raised $40M+ in funding, and our AI recruiter has powered over 1 million AI-led interviews as our global network of experts grows into the human intelligence layer for AI.
Job Description
Job Title: SecOps Engineer
Job Type: Contractor (10-12 hours per week)
Location: Remote
Job Summary:
We are looking for experienced SecOps Engineers, who have a software engineering background to help train and evaluate next-generation AI systems through real-world software engineering tasks.
This role is best suited for developers who can reason through unfamiliar codebases, explain engineering decisions clearly, and solve practical backend, full-stack, systems, or infrastructure-related problems.
No prior AI experience is required. What matters most is strong software engineering judgment, clean technical communication, and the ability to evaluate code, architecture, tradeoffs, and implementation quality.
Key Responsibilities:
- Perform expert-level secure code reviews with a focus on OWASP Top 10 and CWE vulnerability classes.
- Identify, triage, and remediate application-layer vulnerabilities, including broken access control, IDOR, SQL injection, command injection, and deserialization flaws.
- Develop and maintain security automation tools using Python, GoLang, or JavaScript/TypeScript to streamline vulnerability detection and remediation processes.
- Conduct and document penetration tests, collaborating cross-functionally to drive remediation initiatives.
- Advise development teams on secure coding practices, bringing a proactive security mindset into the software lifecycle.
- Stay informed of emerging threats and incorporate best practices within the customer's environments.
- Communicate effectively through detailed written reports and verbal briefings, ensuring security findings are clearly understood and actionable.
Required Skills and Qualifications:
- 5+ years of hands-on experience in software engineering or security operations with a focus on application-layer security.
- Proficiency in Python, GoLang, Rust, JavaScript, or TypeScript.
- Demonstrated expertise in secure code review and professional penetration testing.
- Strong familiarity with OWASP Top 10, CWE, and modern vulnerability classes.
- Proven ability to detect, prioritize, and remediate vulnerabilities in production applications.
- Exceptional written and verbal communication skills, with a strong emphasis on clarity and detail.
- Fluent English and availability for at least 6+ hours overlap with Eastern Time.
Preferred Qualifications:
- Experience deploying, integrating, or maintaining vulnerability management platforms.
- Certifications such as OSCP, GIAC, or equivalent are advantageous.
- Background in cloud or container security practices.