Application Security Engineer

Bugcrowd
Brazil
Workplace: RemoteFull timeFunction: CybersecurityEducation: bachelorsSkills: ["Communication","Organization","Influencing","Time management"]

Curate and manage incoming vulnerability submissions for major bug bounty programs, performing ongoing triage and validation of reports for validity, accuracy, and severity. Communicate with clients and researchers for additional details and escalate highest-severity issues through incident response. You’ll work under the Director of Technical Operations, applying OWASP Top Ten knowledge and high proficiency with Burp Suite and common security tooling to improve triage workflows.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Bugcrowd
Bugcrowd
19 hours ago

Application Security Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 4 hours agoStatus: Live
Reposted: similar role first listed 6 months ago

Job Summary

Curate and manage incoming vulnerability submissions for major bug bounty programs, performing ongoing triage and validation of reports for validity, accuracy, and severity. Communicate with clients and researchers for additional details and escalate highest-severity issues through incident response. You’ll work under the Director of Technical Operations, applying OWASP Top Ten knowledge and high proficiency with Burp Suite and common security tooling to improve triage workflows.
Location: Brazil
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity

Key Responsibilities

  • •Perform ongoing triage and validation for Bugcrowd-managed application security programs.
  • •Curate incoming submission data for validity, accuracy, and severity under the direction of the Director of Technical Operations.
  • •Communicate directly with clients or researchers to obtain additional information when needed.
  • •Handle incident response by escalating and communicating highest-severity bugs to clients.
  • •Apply strong knowledge of OWASP Top Ten vulnerabilities and support tooling/automation efforts using one scripting/development language.

Key Requirements

  • •Bachelor’s degree or previous security consulting experience.
  • •Published and demonstrated passion for security assessment research.
  • •High proficiency with Burp Suite (or other interception proxy) and working experience with tools such as nmap and sqlmap (or tools in Kali Linux).
  • •Ability to execute on individual projects while still contributing to the team.
  • •Strong organization, influencing, and communication skills.
Education:Bachelor's
Skills:CommunicationOrganizationInfluencingTime management
Tech Stack:OWASP Top TenBurp SuiteInterception proxyNmapSqlmapKali Linux

Company Brief

Bugcrowd
Provides a crowdsourced security platform offering bug bounty programs, vulnerability disclosure, and managed security testing to help organizations find and remediate security weaknesses through a global community of security researchers.
Industry: Cybersecurity
Company Size: Large (251 to 1,000 employees)
Growth: Scaleup
Headquarters: San Francisco, United States
Founded: 2012
WebsiteLinkedIn