
Application Security Engineer
Posted 20 hours ago

Posted 20 hours ago
This is a fully remote position, open to applicants in Brazil.
• Curate and oversee incoming security vulnerability reports for Bugcrowd-managed bug bounty initiatives.
• Assess and authenticate submissions for validity, precision, and severity.
• Engage directly with Bugcrowd clients or researchers when further information is necessary.
• Manage incident response by escalating and discussing the highest-severity vulnerabilities with clients.
• Utilize knowledge of the OWASP Top Ten vulnerabilities in security assessment operations.
• Support the design or development of tools aimed at enhancing the triage and validation process.
• Operate under the guidance of the Director of Technical Operations.
• Bachelor’s degree or relevant experience in security consulting.
• A published track record and evident enthusiasm for security assessment research.
• High level of proficiency with Burp Suite or an equivalent interception proxy.
• Hands-on experience with industry-standard tools such as nmap, sqlmap, and those found in Kali Linux.
• In-depth understanding of OWASP Top Ten vulnerabilities.
• Strong capability in at least one scripting or programming language.
• Ability to manage individual projects while contributing to team efforts.
• Capacity to complete tasks within deadlines.
• Excellent organizational, influencing, and communication skills.
• Capability to fulfill the physical demands of the position with or without reasonable adjustments.
• Must be able to maintain a stationary position for 50% of the time.
• Must be able to transport or move a laptop as necessary throughout the workday.
• Requires integrity to uphold highly confidential and sensitive information with strict confidentiality.
• Subject to background checks for employment purposes.
• Opportunity to engage with security programs for numerous companies.
• Access to elite security researchers and advanced security testing methods.
• Educational opportunities across a variety of security programs and vulnerability types.
• Involvement in security programs related to vehicles, IoT devices, embedded systems, mobile applications, and more.
• Fully remote work-from-home arrangement.
• Reasonable accommodations available for qualified individuals with disabilities.
• Commitment to equal employment opportunity and fostering an inclusive workplace.
Trimble Inc.
ExactCare
Devexperts
Get handpicked remote jobs straight to your inbox weekly.