Skip to content

Open nowPosted 43 hours ago

ML Scientist

OneSpan27 open roles

Where
Barcelona
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowML ScientistOneSpan · Barcelona
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on OneSpan's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.8% of postings close within 7 days. Measured by our own scanner across the market. OneSpan postings stay open a median of 31 days.

Share of postings closed within
  1. 1.7%1 day
  2. 3.5%3 days
  3. 7.8%7 days
  4. 14.6%14 days
  5. 34.1%30 days
This job: posted 43 hours ago

OneSpan median: 31 days open

The posting

At OneSpan, we specialize in digital identity and anti-fraud solutions that create exceptional and secure experiences.

We are looking for the first ML research hire on the team. Your job will be to turn our telemetry into new detection and prevention capabilities: from understanding the problem alongside the Security team, to ideating, prototyping, and validating models and algorithms on real data.

We are not looking for someone who applies recipes. We are looking for someone who enjoys tackling an open problem with an adversary that adapts, and who can move comfortably between the paper and the working prototype.

Here is a little taste of your challenge:

  • Work side by side with the Security team to understand current and emerging attack techniques against mobile apps, and translate them into well-framed data problems.
  • Explore and analyze our telemetry (datalake on ClickHouse and S3) to uncover signals, patterns, and anomalies with detection value.
  • Design, prototype, and evaluate attack detection and prevention models: anomaly detection, classification with scarce labels, behavioral models, event time-series analysis.
  • Define how success is measured: detection metrics, acceptable false-positive rates, and evaluation methodology when complete ground truth doesn't exist.
  • Take validated prototypes toward production in collaboration with the engineering team, and lay the foundations (features, datasets, labeling processes) for the team's ML capability to grow.
  • Stay current with research in ML applied to security (anomaly detection, adversarial ML, fraud) and bring actionable ideas.

Who are you?

  • Proven experience (5+ years, or PhD plus applied experience) researching and developing ML models on real-world problems, ideally in security, fraud, anti-bot, anti-malware, or similar adversarial domains.
  • Strong command of anomaly detection and unsupervised / semi-supervised learning: labeled data is scarce in this domain, and that shapes the entire approach.
  • Experience with large-scale telemetry or event data: logs, time series, user or device behavior data.
  • Full autonomy with raw data: solid Python (pandas/polars, scikit-learn, PyTorch or similar), advanced SQL, and comfort working directly against a datalake without prepared datasets.
  • Product mindset: the ability to go from a research idea to an evaluable prototype in weeks, not months, and to communicate results to non-technical stakeholders.
  • Genuine curiosity about cybersecurity and the drive to learn the domain in depth alongside the team's experts.

Nice to have

  • Prior experience in mobile security, EDR, banking anti-fraud, or intrusion detection systems.
  • Knowledge of adversarial machine learning (model evasion, robustness).
  • Experience with AWS S3, ClickHouse or other high-volume analytical databases.
  • Publications, open-source contributions, or talks in applied ML or security.
  • Experience deploying models to production (basic MLOps).

Practically Speaking, what's in it for you:

  • The chance to define the company's ML strategy from scratch, with direct product impact and full visibility.
  • A technically fascinating problem: a real adversary that evolves, massive untapped data, and freedom to research.
  • Daily collaboration with a Security team with deep domain expertise.
  • Optimized onboarding – for your optimal start and customized induction.
  • Technical ownership – take responsibility for key components and shape how we build our platform.
  • Enthusiastic team – waiting to help you succeed and collaborate with experienced engineers.
  • Beautiful office spaces – in the heart of Barcelona, 200m from Sants Estació with regular team/community events (breakfast, lunch, beers…).
  • Good transport connections – easy to reach by public transport.
  • Flexible working hours & Hybrid working!

#LI-Hybrid #LI-LS1

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against OneSpan's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on OneSpan's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    OneSpan's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.