Vulnerability Research Analyst

Konvu

1w ago 1 views 0 applications
Paris Onsite
Competitive
Full-time

Job Description

About Konvu: Making Security Invisible
At Konvu, we're tackling a massive challenge: securing the AI-generated code of the future. We envision a world where vulnerabilities are automatically detected, prioritized, and remediated without hindering development speed. We're building the next generation of agentic security, and we need your expertise.

Our founders, veterans of Sqreen (acquired by Datadog), have a proven track record of building impactful security solutions. We've secured $5M in Seed funding from leading European and US VCs and prominent industry figures at Datadog, GitHub, Docker, Cloudflare, Sumo Logic, and Vanta.

Join us as a Vulnerability Research Analyst in Paris and help build the intelligence backbone of Konvu's cutting-edge security platform.

What You'll Do: Dive Deep into Vulnerability Research
As a key member of our team, you'll be at the forefront of vulnerability research, fueling our automated triage and remediation engine. This isn't just about reading CVEs; it's about understanding the real-world impact of vulnerabilities and shaping our product's intelligence.

Define Exploitability: Analyze CVE reports, patch notes, and proof-of-concept exploits to determine actual risk and prioritize remediation efforts. Distill signal from noise.
Enrich the Konvu Vulnerability Database: Leverage LLMs and hands-on research to build and maintain a comprehensive and highly accurate structured database of vulnerabilities. We're not just collecting data; we're building knowledge.
Integrate Human Insight: Develop processes and tooling for human-in-the-loop validation, ensuring unparalleled accuracy and reliability in our vulnerability data.
Collaborate Cross-Functionally: Work closely with engineering and product teams to translate your research into actionable data models and impactful product features.
Stay Ahead of the Threat Landscape: Continuously track emerging vulnerabilities, attacker techniques, and evolving threat landscapes to proactively inform our product roadmap and drive accuracy improvements.

Who You Are: A Passionate Security Expert
You're a security enthusiast who thrives on ownership, embraces curiosity, and tackles challenges with intensity. You possess the analytical skills to transform raw intelligence into structured, actionable insights.

1+ year of experience in security research, vulnerability analysis, or threat intelligence.
A strong interest in CVE databases, exploit development, and software patching processes.
A genuine passion for security, staying current on emerging threats, attacker tools, and defensive strategies. You're driven to build impactful products for enterprise customers.
Exceptional analytical skills and a keen eye for detail; you have a knack for spotting patterns and edge cases that others miss.
Comfortable writing scripts (Python, SQL, or similar) to automate data extraction and validation processes.
Excellent communication skills in English, with the ability to write clear and concise research reports.
Eager to collaborate in person from our Paris office.

Why Konvu? Shape the Future of Security

Impact: Directly shape the intelligence that powers the future of AI-driven security.
Autonomy: Work in a high-impact, autonomous environment where your expertise has a direct influence on our product.
Global Team: Join an English-speaking, globally ambitious team based in Paris and New York.
Compensation: Competitive salary, meaningful equity, and comprehensive benefits package.
Culture: An inclusive culture that values diverse perspectives and fosters collaboration.

Our Commitment to Diversity
Konvu is dedicated to building a team that reflects a wide range of backgrounds and perspectives. We believe that diverse viewpoints are essential to creating a stronger product and a more vibrant culture.

Our Hiring Process

Introductory call with our CEO (30 minutes)
Technical exercise: A real-world vulnerability research or analysis task.
Technical interview with our CTO (1 hour)
Onsite interview with the team in Paris (2 hours)
Reference checks