Application Security Engineer

Bugcrowd empowers organizations to stay ahead of threat actors by uniting customers and elite hackers with their patented Security Knowledge Platform™.
Security
Mid-Level Software Engineer
Remote
501 - 1,000 Employees
3+ years of experience
Cybersecurity
This job posting may no longer be active. You may be interested in these related jobs instead:
Software Development Engineer II, AGI Security

Software Development Engineer II position focused on building security solutions for AGI systems at Amazon

Security Engineer, AWS AppSec Vendor Security

AWS Security Engineer role focusing on vendor security, application security analysis, and implementing security controls at scale.

Software Development Engineer, AWS Security

AWS Security Software Development Engineer position focusing on building and scaling security telemetry solutions for cloud infrastructure protection.

Security Engineer, Incident Response, SIRT

Security Engineer position at Amazon's SIRT team in Sydney, focusing on incident response, threat analysis, and security engineering for Amazon's e-commerce platform.

Support Engineer, Amazon Stores Security

Support Engineer role at Amazon Stores Security, combining technical troubleshooting with customer support to maintain and improve security systems.

Description For Application Security Engineer

Bugcrowd, founded in 2012, is a leading crowdsourced security platform that empowers organizations to stay ahead of threat actors. As an Application Security Engineer (ASE) at Bugcrowd, you'll be at the forefront of application security assessment at an epic scale.

Your role involves curating and managing incoming security vulnerability submissions for some of the world's biggest companies' bug bounty programs. This position offers unique opportunities:

  1. Exposure to hundreds of company security programs
  2. Interaction with top security researchers and cutting-edge methodologies
  3. Rapid proficiency in complex vulnerabilities (XSS, SQLi, XXE, IDOR, SSTI, SSRF, etc.)
  4. Diverse experience across various platforms (IoT, embedded systems, mobile applications, etc.)

Key Responsibilities:

  • Triage and validate submissions for Bugcrowd managed programs
  • Assess validity, accuracy, and severity of incoming data
  • Communicate with clients and researchers when additional information is needed
  • Handle Incident Response, escalating high-severity bugs to clients
  • Assist in designing/developing tools to improve the triage/validation process

Requirements:

  • Bachelor's degree or previous security consulting experience
  • Strong knowledge of OWASP Top Ten vulnerabilities
  • High proficiency with Burp Suite and other industry-standard tools
  • Published security assessment research
  • Strong organization, communication, and time management skills

Bugcrowd offers a remote work environment and values diversity in the workplace. The company culture is described as family-like, with a team comprising various backgrounds and interests.

Join Bugcrowd to be part of a dynamic team solving critical security threats and vulnerabilities, while working with cutting-edge technologies and methodologies in the cybersecurity field.

Last updated 8 months ago

Responsibilities For Application Security Engineer

  • Curate and manage incoming security vulnerability submissions
  • Triage and validate submissions for accuracy and severity
  • Communicate with clients and researchers for additional information
  • Handle Incident Response and escalate high-severity bugs
  • Assist in designing/developing tools for improving triage/validation process

Requirements For Application Security Engineer

Python
  • Bachelor's degree or previous security consulting experience
  • Published security assessment research
  • High proficiency with Burp Suite and other industry standard tools
  • Strong knowledge of OWASP Top Ten vulnerabilities
  • Strong organization, influencing, and communication skills
  • Ability to execute individual projects and contribute to the team
  • Ability to complete tasks on time

Benefits For Application Security Engineer

  • Remote work environment
  • Exposure to cutting-edge security methodologies
  • Opportunity to work on diverse security programs

Interested in this job?