Senior Security Engineer, Bug Bounty in United States Embassy at Jobgether
Explore Related Opportunities
Job Description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior Security Engineer, Bug Bounty based in United States.
This role offers the opportunity to help protect a global technology platform by strengthening security practices and improving how vulnerabilities are discovered and resolved.
You will take ownership of a large-scale bug bounty program, working closely with security teams, engineers, and external researchers.
The position combines offensive security expertise, vulnerability management, and strategic program development.
You will play a key role in identifying security risks, driving remediation efforts, and improving secure development practices.
The ideal candidate is passionate about cybersecurity, curious about emerging threats, and motivated by protecting user privacy and safety.
This is a collaborative environment where technical expertise, creativity, and continuous learning are highly valued.
The Senior Security Engineer, Bug Bounty will lead vulnerability discovery and remediation initiatives while helping scale security programs and improve organizational resilience.
- Own and evolve the bug bounty program strategy, including prioritization, performance metrics, researcher engagement, and continuous improvement initiatives.
- Serve as the primary point of contact for external security researchers and vulnerability platforms, maintaining strong relationships and encouraging high-quality submissions.
- Manage vulnerability intake, triage, validation, and analysis across multiple reporting channels while ensuring accurate risk assessment.
- Partner with engineering and security teams to drive end-to-end remediation efforts and ensure vulnerabilities are resolved effectively.
- Investigate root causes of security issues and recommend long-term improvements to secure development processes.
- Collaborate with incident response teams on active security events, investigations, and post-incident reviews.
- Conduct targeted code reviews and security assessments, particularly within JavaScript and Python-based environments.
- Develop and improve internal tooling, automation, and reporting capabilities to increase vulnerability management efficiency.
The ideal candidate brings hands-on security engineering experience, strong problem-solving skills, and the ability to collaborate across technical teams.
- 3+ years of experience working in a security engineering role with practical vulnerability management experience.
- Demonstrated experience operating, scaling, or contributing to bug bounty programs and security research initiatives.
- Experience analyzing applications, systems, and code to identify vulnerabilities, determine root causes, and prevent future issues.
- Familiarity with modern cloud environments such as AWS, Google Cloud Platform, Microsoft Azure, or similar technologies.
- Background in software development, engineering operations, or security-focused programming.
- Ability to create security tools or automation scripts using languages such as Python, Go, Rust, or JavaScript is a plus.
- Strong understanding of application security concepts, vulnerability assessment methodologies, and secure development practices.
- Excellent communication and collaboration skills, with the ability to influence engineering teams and communicate complex security topics clearly.
- A growth mindset, curiosity, and a passion for continuous learning are highly valued.
- Competitive compensation package with performance-based bonus opportunities.
- Comprehensive medical, dental, and vision coverage.
- Retirement contributions with immediate vesting.
- Quarterly company-wide wellness days.
- Paid holidays and an additional birthday day off.
- One-time home office setup stipend.
- Annual professional development budget.
- Quarterly well-being stipend.
- Paid parental leave.
- Employee referral bonus program.
- Additional benefits including life insurance, disability coverage, and employee assistance programs.
- Flexible remote work environment designed to support productivity and work-life balance.