
Security Engineer
Posted 4 days ago

Posted 4 days ago
This is a fully remote position, open to applicants anywhere in the world.
• Oversee the vulnerability management program by assessing, reproducing, and triaging security vulnerabilities reported via Bug Bounty initiatives.
• Collaborate closely with engineering teams to prioritize and address security weaknesses.
• Engage in threat modeling alongside engineering teams to evaluate proposed solutions and pinpoint potential attack vectors prior to implementation.
• Manage the security incident response by analyzing penetration testing outcomes and SIEM reports.
• Convert technical findings into actionable remediation tasks and monitor their resolution until completion.
• Enhance security infrastructure by updating Web Application Firewalls and other security systems.
• Assess and deploy security software solutions, including overseeing vendor demonstrations and procurement procedures.
• Offer security consultation and guidance to development teams regarding secure software development and architecture.
• Share security updates, progress reports, and recommendations with stakeholders.
• Keep current security policies and procedures up to date.
• Bachelor's degree in Computer Science, Information Security, or a related technical field, or equivalent professional experience.
• At least 3+ years of professional experience specifically in web application security.
• Proficiency with security testing tools such as Burp Suite or similar web request analysis and tampering tools.
• Strong written communication skills in English with the ability to clarify technical security concepts to varied audiences.
• Experience working effectively in fully distributed or remote team environments.
• Capability to collaborate cross-functionally with engineering and development teams.
• Prior hands-on experience managing or being involved in Bug Bounty programs.
• Programming experience in PHP or JavaScript.
• Familiarity with penetration testing methodologies and tools.
• Knowledge of SIEM platforms and security monitoring systems.
• Understanding of Web Application Firewall (WAF) configuration and management.
• Knowledge of secure software development lifecycle (SDLC) practices.
• Experience with Jira or similar project management and issue tracking tools.
• Strong sense of ownership and accountability.
• Eagerness for continuous learning and keeping abreast of evolving security threats and technologies.
• Fully remote work-from-anywhere arrangement.
• Flat, no-corporate culture.
• Full-time opportunity.
VMD Corp
GR8 Tech
Modern Health
Accumulus Technologies
Get handpicked remote jobs straight to your inbox weekly.