Review CVE reproductions, remediation patches, verification tests, and Docker environments that help train AI systems for application security. This remote US contractor role pays $70-$90 per hour.
About OpenTrain
OpenTrain AI is the hiring and contracting organization for this role. OpenTrain is the leading platform for finding and building careers in AI training and data labeling, helping contributors discover projects, build a professional profile, and apply to opportunities in minutes.
About AI Training Work
AI training is the human work behind modern artificial intelligence. Technical contributors review examples, evaluate model outputs, and provide expert feedback so AI systems can learn accurate reasoning and useful behavior.
This role applies application-security expertise to specialized AI training. Your judgments about vulnerabilities, patches, tests, and lab environments can help improve how AI systems understand real-world security work.
- Remote work that can fit flexible schedules
- Direct contribution to cutting-edge AI development
- Specialized work for experienced security professionals
The Role
OpenTrain is seeking a CVE Vulnerability Reproduction and Remediation Reviewer to evaluate application-security training tasks. You will assess whether vulnerability reproductions accurately recreate exploitable conditions, whether remediation patches address underlying issues, and whether verification logic tests both functionality and security.
- Review CVE reproduction tasks and remediation approaches
- Assess Docker and Docker Compose lab environments
- Provide consistent, rubric-based written feedback
- Evaluate technical accuracy and task completeness
What You'll Do
You will examine technical tasks involving vulnerability reproduction, secure coding, remediation, and testing. The work requires careful judgment about whether an application behaves as intended and whether security controls meaningfully address the reported vulnerability.
- Determine whether CVE reproductions faithfully recreate exploitable conditions
- Evaluate whether remediation patches fix the underlying vulnerabilities
- Review functionality and vulnerability verification tests
- Check Docker and Docker Compose environments for technical accuracy
- Write clear, consistent feedback using established evaluation criteria
Requirements and Preferred Experience
The project is categorized as entry level in the listing metadata, but applicants must meet the stated hands-on experience requirement. You need at least three years of experience in application security, penetration testing, or vulnerability research, along with strong technical judgment and written communication.
- At least three years of application-security, penetration-testing, or vulnerability-research experience
- Knowledge of CVE, CVSS, CWE, and CAPEC frameworks
- Secure coding and remediation expertise across common vulnerability classes
- Experience evaluating functionality and vulnerability verification tests
- Proficiency with Docker and Docker Compose, including multi-container environments
- Experience with SQL injection, command injection, buffer overflow, deserialization, SSRF, misconfiguration, or privilege escalation
- Offensive-security certifications, CVE disclosure experience, exploit proof-of-concept maintenance, DevSecOps or security-gating experience, and technical content review or QA experience are valuable additional qualifications
Schedule, Location, and Pay
This is a remote contractor opportunity for workers eligible to work in the United States. The listing supports part-time contractor work, with a minimum commitment of 20 hours per week and a default commitment of about 40 hours per week.
- Location: United States
- Work arrangement: Remote
- Employment type: Contractor, part time
- Time requirement: 20+ hours per week
- Default commitment: About 40 hours per week
- Compensation: $70-$90 per hour
Build Your AI Training Career With OpenTrain
OpenTrain gives contributors a place to build a lasting AI training portfolio while applying specialized expertise to real projects. Create a free account, present your experience clearly, and apply to this opportunity through OpenTrain.
- Create a free OpenTrain account
- Highlight application-security and technical review experience
- Apply to this role in minutes
- Build a profile that supports long-term AI training work