Application Security Engineer II

🔥 6 minutes ago

🇧🇷 Brazil – Remote

⏰ Full Time

🟡 Mid-level

🟠 Senior

💻 Application Engineer

👻 Ghost score 10%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Bugcrowd

Bugcrowd

201 - 500 employees

Founded 2012

💼 Consulting

🏥 Healthcare

📦 Logistics

💰 $30M Series D on 2020-04

Consulting • Healthcare • Logistics

Bugcrowd is a leading platform that provides continuous security testing solutions, enabling organizations to stay ahead of cyberthreats. By leveraging a global community of trusted security researchers, Bugcrowd offers services such as penetration testing as a service, vulnerability disclosure, bug bounty programs, and attack surface management. The company assists industries such as financial services, healthcare, and technology in identifying and prioritizing vulnerabilities, ensuring proactive protection against potential cyber attacks. Driven by data and AI, Bugcrowd's comprehensive approach integrates seamlessly with existing systems to streamline the remediation of security issues, enhancing the overall security posture of its clients.

📋 Description

• Curate and manage incoming security vulnerability submissions for Bugcrowd-managed bug bounty programs • Triage and validate submissions for validity, accuracy, and severity • Communicate directly with Bugcrowd clients or security researchers when additional information is required • Handle incident response by escalating and communicating about the highest-severity vulnerabilities to clients • Apply knowledge of OWASP Top Ten vulnerabilities • Use scripting or development skills to assist with designing or developing tooling that improves the triage and validation process • Report to the Director of Technical Operations

🎯 Requirements

• Bachelor’s degree or previous security consulting experience • Published and demonstrated passion for security assessment research • High proficiency with Burp Suite or another interception proxy • Working-level experience with industry-standard tools, including nmap and sqlmap, and tools included in Kali Linux • Strong knowledge of OWASP Top Ten vulnerabilities • Strong skill set in at least one scripting or development language • Ability to execute individual projects while contributing to the team • Ability to complete tasks on time • Strong organization, influencing, and communication skills • Ability to complete all physical requirements with or without reasonable accommodation • Must be able to remain in a stationary position 50% of the time • Must be able to carry or move a laptop as needed throughout the workday • Requisite integrity to maintain confidential information in strict confidence • Subject to employment background checks

🏖️ Benefits

• Exposure to security programs for hundreds of companies and diverse technologies • Exposure to elite security researchers and cutting-edge security testing methodologies • Learning opportunities and professional growth • Team perks • Reasonable accommodations for qualified individuals with disabilities

Apply Now

Similar Jobs

🕒 July 30

Devsu

51 - 200

🤝 B2B

🏢 Enterprise

☁️ SaaS

Application Support Engineer providing L2/L3 support for cloud-native media applications on GCP and Kubernetes. Troubleshooting issues in high-availability environments for live streaming and transcoding workflows.

Cloud

Google Cloud Platform

Grafana

Kubernetes

Prometheus

ServiceNow

Go

🕒 May 29

ROIT

51 - 200

💼 Consulting

⚖️ Legal

☁️ SaaS

Application Security Engineer leading and evolving Application Security & DevSecOps initiatives at ROIT. Collaborating with engineering teams to enhance security maturity in applications, infrastructure, and culture.

🗣️🇧🇷🇵🇹 Portuguese Required

AWS

Azure

Cloud

Google Cloud Platform

Kubernetes

SDLC