
Security Analyst
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in United States.
• Evaluate and authenticate web application vulnerabilities across various targets.
• Verify the exploitability and scope of identified issues.
• Reproduce findings hands-on utilizing tools such as Burp Suite.
• Assess severity using frameworks like CVSS and OWASP.
• Compose clear, precise, customer-facing descriptions of findings along with remediation advice.
• Uphold consistent standards across a high volume of findings.
• Highlight patterns, edge cases, and atypical behaviors to the wider team.
• Recognize trends in findings and provide feedback on how Sybil can enhance its processes.
• A minimum of 2 years of practical experience with web application vulnerabilities through bug bounty programs, penetration testing, application security, or a comparable role.
• Strong, hands-on understanding of the OWASP Top 10 and prevalent web vulnerability categories.
• Experience in reproducing and validating findings manually, including in complex or noisy environments.
• Familiarity with tools such as Burp Suite, browser developer tools, or similar for practical verification.
• Excellent written communication skills.
• High attention to detail and consistency.
• Ability to work independently.
• Legally authorized to work in the United States.
• Must respond to required application questions regarding security interests, a significant bug or finding, vulnerability write-ups, and confidence in web vulnerability assessments.
• Meaningful equity.
• Ownership in the projects we are developing.
Cobalto Talent
Cobalto Talent
Cobalto Talent
Cobalto Talent
Get handpicked remote jobs straight to your inbox weekly.