Product Security Analyst

🕒 August 4

🏄 California, District of Columbia, +3 more states – Remote

infoinfo

💵 $120k - $155k / year

⏰ Full Time

🟡 Mid-level

🟠 Senior

🔐 Security Analyst

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 1%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of HackerOne

HackerOne

201 - 500 employees

Founded 2012

💼 Consulting

🏥 Healthcare

📦 Logistics

💰 $49M Series E on 2022-01

Consulting • Healthcare • Logistics

HackerOne is a platform that connects businesses with ethical hackers to identify and fix security vulnerabilities. It offers services like bug bounty programs, pentest as a service, continuous security testing, vulnerability disclosure programs, AI safety and security testing, and application and cloud security. HackerOne engages a global community of ethical hackers who help businesses secure their digital assets by finding and addressing vulnerabilities. By leveraging both human and AI resources, HackerOne aims to outmatch cybercriminals and enhance security for various sectors, including automotive, financial services, government, healthcare, and retail. The company also provides educational resources, such as Hacker101, to train and develop the skills of people interested in cybersecurity.

📋 Description

• Evaluate vulnerability reports submitted by security researchers for validity, severity, exploitability, and business impact using data-driven decision making and frameworks such as CVSS • Independently reproduce reported vulnerabilities across web and mobile applications, validate findings, identify root causes, and communicate impact • Collaborate with security researchers to gather missing information and clarify technical details • Communicate clearly and professionally with customers • Create technically accurate summaries including reproduction steps, impact analysis, and remediation guidance • Adapt to changing customer environments, program scopes, attack techniques, and operational priorities • Leverage automation and AI-enabled workflows to improve report analysis and vulnerability triage • Partner with Technical Services teammates and customer-facing teams to ensure timely vulnerability handling and a high-quality customer experience • Improve internal processes, documentation, tooling, and triage workflows • Work some weekend shifts

🎯 Requirements

• 3+ years of hands-on experience performing security testing, vulnerability research, or ethical hacking on web and mobile applications • Strong understanding of common application security vulnerabilities, including the OWASP Top 10 • Experience using security testing tools such as Burp Suite • Familiarity with vulnerability scoring frameworks including CVSS • Excellent written and verbal communication skills in English • Ability to communicate technical concepts clearly to technical and non-technical audiences • Ability and desire to work occasional weekend shifts • Experience participating in bug bounty or vulnerability disclosure programs preferred • Experience reproducing and validating vulnerabilities submitted by external researchers or customers preferred • Familiarity with scripting or automation used in security testing or operational workflows preferred • Ability to manage competing priorities and maintain operational excellence in a fast-paced, globally distributed environment preferred • Must be authorized to work in the applicable country; visa/work permit sponsorship is not available • Employment is contingent on a background check

🏖️ Benefits

• Health (medical, vision, dental), life, and disability insurance • Equity stock options • Retirement plans • Paid public holidays and unlimited PTO • Paid maternity and parental leave • Leaves of absence, including caregiver leave and leave under CO's Healthy Families and Workplaces Act • Employee Assistance Program • Flexible Work approach • Remote work • Global team collaboration • Eligibility may differ by country

Apply Now

Similar Jobs

🕒 August 4

ExamWorks

5001 - 10000

🏥 Healthcare

💼 Consulting

⚖️ Legal

Information Security Analyst securing ExamWorks’ healthcare services systems, networks, and applications. Managing vulnerabilities, audits, customer security requests, and compliance initiatives.

🕒 August 4

ExamWorks

5001 - 10000

🏥 Healthcare

💼 Consulting

⚖️ Legal

Information Security Analyst securing systems for ExamWorks, a healthcare services provider. Managing vulnerabilities, firewalls, audits, and customer security requests remotely.

🕒 August 4

HITRUST

51 - 200

🔒 Cybersecurity

🏥 Healthcare

📋 Compliance

Senior analyst reviewing IT audits and security assessments for HITRUST, a cybersecurity assurance and certification provider. Ensuring certification quality, assessor consistency, and defensible security validation.

🕒 July 30

CoLab Software

51 - 200

🏭 Manufacturing

💼 Consulting

📦 Logistics

Senior Security Analyst protecting CoLab’s AI platform for mechanical engineering teams. Leading cloud detection, incident response, FedRAMP compliance, and continuous monitoring.

🕒 July 27

Gartner

10,000+ employees

📣 Marketing

📦 Logistics

🏥 Healthcare

Senior Director Analyst guiding CIOs on cybersecurity strategy and defense against evolving threats. Delivering research, recommendations, and engaging with technology leaders globally.