Jr. Security Engineer

Bugcrowd · Remote

Company

Bugcrowd

Location

Remote

Type

Full Time

Job Description

Regular, Non-Exempt

We are Bugcrowd. Since 2012, we’ve been empowering organizations to take back control and stay ahead of threat actors by uniting the collective ingenuity and expertise of our customers and trusted alliance of elite hackers, with our patented data and AI-powered Security Knowledge Platform™. Our network of hackers brings diverse expertise to uncover hidden weaknesses, adapting swiftly to evolving threats, even against zero-day exploits. With unmatched scalability and adaptability, our data and AI-driven CrowdMatch™ technology in our platform finds the perfect talent for your unique fight. We aim to create a new era of modern crowdsourced security that outpaces threat actors. Unleash the ingenuity of the hacker community with Bugcrowd, visit www.bugcrowd.com. Based in San Francisco, Bugcrowd is supported by Rally Ventures, Costanoa Ventures, Blackbird Ventures, Triangle Peak Partners, and others.

A successful candidate will be passionate about security and be hungry to learn more, while adapting to a constantly changing environment. 


Description

The Junior Security Engineer’s role is to aid the security efforts of Bugcrowd, while proactively making changes to further improve our security posture. To achieve this goal, we require a motivated team who are willing to push their own boundaries and step out of their comfort zones. You will be challenged on a regular basis, especially because you are the last line of defence for one of the largest crowdsourced security platforms! The Junior Security Engineer will receive mentoring from multiple senior security professionals and will work closely with these professionals on a daily basis. 


Responsibilities

  • Security Architecture - Working with developers to uplift the current security controls and architecting solutions
  • Risk Management - Assess the risk behind security issues, track core metrics
  • Pen Testing / Red Team - Performing penetration tests and red teams of Bugcrowd assets (and vendors)
  • Operations / Incident Response - Aid with the process of Incident Response, security operational activities when required


Position Requirements

  • Familiarity with Pentesting techniques
  • Knowledge of OWASP Top 10
  • Basic knowledge of Incident Response
  • Knowledge of threat intelligence
  • Ability to understand a vulnerability and work with developers to patch it
  • Scripting knowledge of at least one of: Python, JavaScript, Ruby
  • Great communicator who is comfortable communicating across multiple teams
  • Self motivated and organised - must be able to operate from a calendar and be punctual
  • Some cloud experience (AWS preferred)
  • Basic understanding of Identity and Access Management (IAM)
  • Ability to figure things out themselves (look at configurations, learn what they mean, and solve problems)
  • Has the desire to be self-sufficient and strives towards it
  • Basic red team knowledge
  • Familiarity with git and pull requests is a must
  • Familiarity with a ticketing system / issue tracking system is a must (e.g: Jira)


Knowledge, Skills, and Abilities

 Experience with writing IR plans and operating within an IR practice (experience responding to incidents)

Working knowledge of Threat Intelligence and how it can be used to proactively create security controls (automation)

Familiarity with Pentesting techniques and OWASP Top 10

Ability to understand a vulnerability and work with developers to patch it

Scripting knowledge in at least one of: Bash, Python, JavaScript, Ruby

Self motivated and organized - must be able to operate from a calendar and be punctual

Cloud security experience or holds cloud certifications (AWS strongly preferred)

Experience with Identity and Access Management (IAM) controls

Ability to work autonomously within a global company, and critically think without intervention

Familiarity with git

Familiarity with a ticketing system / issue tracking system is a must (e.g: Jira)

Culture

At Bugcrowd, we understand that diversity in the workplace is vital to a company’s success and growth. We strive to make sure that people are included and have a sense of being part of making Bugcrowd not only a great product but a great place to work.

We regularly hear from both customers and researchers that Bugcrowd feels like a family, and we strive to maintain that internally as well.

Our team consists of a broad range of people: musicians, adventure sports junkies, nature lovers, parents, cereal enthusiasts, night owls, cyclists, artists—you get the point.

At Bugcrowd, we are solving security threats and vulnerabilities that are relevant to everyone, therefore we believe solving these problems takes all kinds of backgrounds. We value the perspectives and experiences people from underrepresented backgrounds bring. We are a supportive & collaborative team who understand that reaching Bugcrowd’s potential depends on the happiness of the employee.

Disclaimer

This position has access to highly confidential, sensitive information relating to the technologies of Bugcrowd. It is essential that the applicant possess the requisite integrity to maintain the information in the strictest confidence.

The company is authorized to obtain background checks for employment purposes under state and federal law. Background checks will be conducted for positions that involve access to confidential or proprietary information (including trade secrets).

Background checks may include Social Security verification, prior employment verification, personal and professional references, educational verification, and criminal history. Applicants with conviction histories will not be excluded from consideration to the extent required by law.

Equal Employment Opportunity:

Bugcrowd is EOE, Disability/Age Employer. 

Individuals seeking employment at Bugcrowd are considered without regards to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, gender identity, or sexual orientation. 




Apply Now

Date Posted

03/20/2024

Views

3

Back to Job Listings Add To Job List Company Profile View Company Reviews
Positive
Subjectivity Score: 0.9

Similar Jobs

Senior Product Designer - Org & Security - Typeform

Views in the last 30 days - 0

This job description outlines a role in developing an intelligent contact management system with AI capabilities The position involves designing user ...

View Details

Software Engineer Networking Software and Services - xAI

Views in the last 30 days - 0

The text describes xAIs mission to develop AI systems for understanding the universe and advancing human knowledge It outlines a role involving networ...

View Details

Associate Technical Support Engineer - Recharge

Views in the last 30 days - 0

Recharge is a subscription platform for innovative brands offering customer retention solutions They seek Technical Support roles with 247 coverage em...

View Details

Full Stack Product Engineer - Jiga

Views in the last 30 days - 0

Jiga is a remotefriendly company focused on empowering engineers with trust autonomy and flexibility They emphasize simplicity ownership and impactful...

View Details

Senior Design Manager (Infrastructure) - Canonical

Views in the last 30 days - 0

Canonical a leading opensource provider seeks a Senior Design Manager to drive innovation in cloud and AI technologies The role offers remote work glo...

View Details

Executive Director Patient Advocacy - Kyverna Therapeutics

Views in the last 30 days - 0

Kyverna Therapeutics is seeking an Executive Director for Patient Advocacy to lead initiatives in autoimmune disease treatment The role involves build...

View Details