TechBaton
is an AI research, training, and consulting organization helping enterprises and institutions turn AI into practical business outcomes. We work across AI strategy, engineering, research, and education—and increasingly at the intersection of
AI and cybersecurity
.
We are building a team that wants to work on
real security problems at the frontier of AI-driven software security
.
The Role
We are looking for a
Code Security Engineer
to work on our AI-powered security research and engineering initiatives.
You will work with a hybrid platform combining
CodeQL, static analysis, and LLM-based security research agents
to understand how effectively AI can discover, validate, prioritize, and remediate vulnerabilities in real-world code.
Your work will include:
- Reviewing source code and static-analysis findings for security vulnerabilities.
- Evaluating and comparing AI agents for vulnerability discovery, triage, severity assessment, exploit/PoC generation, and automated remediation.
- Designing security experiments and analysing results across diverse codebases.
- Validating AI-generated findings and fixes using expert security judgement.
- Working with
CodeQL/QL
to turn AI-discovered vulnerabilities into deterministic queries and identify variants.
- Contributing to secure coding, threat modelling, and security engineering practices.
What we're looking for
We're particularly interested in engineers with strong hands-on expertise in:
- Application Security and secure code review
- Vulnerability analysis and threat modelling
- Static analysis / SAST
- C/C++
— one solid area of expertise
- C#, TypeScript, or Python
— depending on your primary strength
- Understanding of how vulnerabilities manifest across different application architectures
You don't need to be an expert in everything.
Deep expertise in one area, strong security fundamentals, and the ability to reason about unfamiliar code are more important.