Application Security Engineer
Bugcrowd
Application Security Engineer
Remote - Brazil
We are Bugcrowd. Since 2012, we've been empowering organizations to take back control and stay ahead of threat actors by uniting the collective ingenuity and expertise of our customers and trusted alliance of elite hackers, with our patented data and AI-powered Security Knowledge Platform™. Our network of hackers brings diverse expertise to uncover hidden weaknesses, adapting swiftly to evolving threats, even against zero-day exploits. With unmatched scalability and adaptability, our data and AI-driven CrowdMatch™ technology in our platform finds the perfect talent for your unique fight. We aim to create a new era of modern crowdsourced security that outpaces threat actors. Unleash the ingenuity of the hacker community with Bugcrowd.
Job Summary
At Bugcrowd, we handle application security assessment at an epic scale. As an Application Security Engineer (ASE) you will curate and manage the incoming security vulnerability submissions to some of the world's biggest companies' bug bounty programs. Here are just a few of the reasons why we are the best:
- A tenure at Bugcrowd often means you have worked on not only one company's security program but potentially on hundreds.
- As an ASE at Bugcrowd you will be exposed to the Internet's best security researchers and their cutting-edge security testing methodologies. Our ASEs quickly become technically fluent in obscure/complex XSS, SQLi, XXE, IDOR, SSTI, SSRF, and many other vulnerability types. There is no other organization that offers the learning opportunity that Bugcrowd does.
- You will be exposed to things outside of your comfort zone. We routinely run security programs for cars, IoT devices, embedded systems, mobile applications, and more!
- We have an awesome team and tons of perks. We've even been selected as one of "The 10 Coolest Security Startups Of 2016" by crn.com.
Essential Duties & Responsibilities
An ASE is responsible for the ongoing triage and validation services of Bugcrowd managed programs. Under the direction of the Director of Technical Operations, you will take incoming submission data and curate it for validity, accuracy, and severity as well as communicate directly with Bugcrowd's clients or researchers when additional information is required. ASEs also handle Incident Response – escalating and communicating about the highest severity bugs to clients. ASEs need to have strong knowledge of OWASP Top Ten type vulnerabilities. They also usually require a strong skill set in one scripting/development language, often to assist with the design or development of tooling for improving the triage/validation process. The ASE position is perfect for security professionals looking to take their skills to the next level.
Education, Experience, Skills, & Abilities
- Bachelor's degree or previous security consulting experience
- Published and demonstrated passion for security assessment research
- High proficiency with Burp Suite (or any other interception proxy) and a working level of experience with other industry standard tools (nmap, sqlmap, anything included in Kali Linux)
- Ability to execute on individual projects but still contribute to the team
- Ability to complete tasks on time
- Strong organization, influencing, and communication skills
Working Conditions
The ideal candidate must be able to complete all physical requirements of the job with or without reasonable accommodation.
Sitting and/or standing - Must be able to remain in a stationary position 50% of the time
Carrying and /or lifting - Must be able to carry / move laptop as needed throughout the work day.
Environment - remote, work-from-home 100% of the time.
ADA Statement
Bugcrowd is committed to the full inclusion of all qualified individuals. In keeping with our commitment, Bugcrowd will take the steps to assure that people with disabilities are provided reasonable accommodations. Accordingly, if reasonable accommodation is required to fully participate in the job application or interview process, to perform the essential functions of the position, and/or to receive all other benefits and privileges of employment, please contact HR at View email address on click.appcast.io.
Culture
- At Bugcrowd, we understand that diversity in the workplace is vital to a company's success and growth. We strive to make sure that people are included and have a sense of being part of making Bugcrowd not only a great product but a great place to work.
- We regularly hear from both customers and researchers that Bugcrowd feels like a family, and we strive to maintain that internally as well.
- Our team consists of a broad range of people: musicians, adventure sports junkies, nature lovers, parents, cereal enthusiasts, night owls, cyclists, artists—you get the point.
At Bugcrowd, we are solving security threats and vulnerabilities that are relevant to everyone, therefore we believe solving these problems takes all kinds of backgrounds. We value the perspectives and experiences people from underrepresented backgrounds bring.
Disclaimer
This position has access to highly confidential, sensitive information relating to the technologies of Bugcrowd. It is essential that the applicant possess the requisite integrity to maintain the information in the strictest confidence.
The company is authorized to obtain background checks for employment purposes under state and federal law. Background checks will be conducted for positions that involve access to confidential or proprietary information (including trade secrets).
Background checks may include Social Security verification, prior employment verification, personal and professional references, educational verification, and criminal history. Applicants with conviction histories will not be excluded from consideration to the extent required by law.
Any personal data you submit in connection with your application will be processed in compliance with Bugcrowd's Privacy Policy, which you may review here:
Equal Employment Opportunity:
Bugcrowd is EOE, Disability/Age Employer. Individuals seeking employment at Bugcrowd are considered without regards to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, gender identity, or sexual orientation.
Bugcrowd is committed to the full inclusion of all qualified individuals. In keeping with our commitment, Bugcrowd will take the steps to assure that people with disabilities are provided reasonable accommodations. Accordingly, if reasonable accommodation is required to fully participate in the job application or interview process, to perform the essential functions of the position, and/or to receive all other benefits and privileges of employment, please contact HR at ADA at bugcrowd.com.
- ...Seeking a Senior Application Security Engineer to work 3-days/week onsite in Rockville, MD. *Local candidates preferred - an onsite interview is required* The main function of Senior Application Security Engineer is to plan, coordinate and implement application security...SuggestedLocal area3 days per week
$110k
...Job Description We seek a highly motivated and experienced Application Security Engineer to join our growing security team. This role is highly technical and candidates must possess a solid understanding of the security and privacy of our company's applications and data...SuggestedFull time$200k - $245k
...founding in 2013, we have focused on enabling our clients to securely navigate the digital asset space. With a global presence... ...and innovative problem-solving. We are seeking a Senior Application Security Engineer to lead the technical execution of our product security...SuggestedFull timeWork at officeWorldwide- ...methodology.This is a great opportunity to work in an international team, apply and learn modern IT technologies Responsibilities Application Security with strong AI/ML security exposureThreat modeling and risk assessment for AI systems, APIs, and cloud-native...Suggested
$110k
...Application Security Engineer Join our growing security team as a highly motivated and experienced Application Security Engineer. This technical role requires a solid understanding of application security and privacy, secure coding practices, and secure system configurations...SuggestedFull time- ...The Application Security Engineer will play a critical role in safeguarding web, mobile, and backend systems from vulnerabilities and malicious activity. This role involves deep technical testing, fraud detection, and integration with development teams to build secure-...
$168k - $230k
...actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars. Sr. Application Security Engineer At the company we’re leveraging our experience in building rockets and spacecraft to deploy Starlink, the world’s most advanced...Permanent employmentTemporary workWork at officeWorldwideMonday to FridayFlexible hoursWeekend work- ...Implement and develop, and integrate information security risk management into application and software development lifecycles. Develop and maintain security policies and standards. Provide risk assessments and/or threat modeling. Review source code, perform tests to enhance...
- ...qualify. Key qualifications ~6+ years of Information Technology experience ~3+ years of experience with supporting Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and IDE plug-in environments using Veracode and Burp Suite ~2...Remote workOverseas
$110k - $130k
...Ryder System, Inc. is seeking a highly motivated Application Security Engineer based in Indianapolis, Indiana. This role requires a solid understanding of application security, coding, and development practices. The engineer will conduct security assessments, collaborate...- ...This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Application Security Engineer based in Switzerland. Join a high-impact security engineering environment where you will play a key role in...Remote workFlexible hours
- ...We are seeking a Sr. Application Security or DevSecOps Engineer with broad set of experiences to have an early and formative impact in many areas of the ZetaChain security program. The ideal candidate will be responsible for ensuring the security of our applications throughout...Contract workRemote workFlexible hours
$85.7k - $125.69k
...The Application Security Engineer is responsible for securing the software and applications that Credit Acceptance builds, buys, and operates. This role partners closely with engineering, product, architecture, and business teams to ensure that applications handling sensitive...Work at officeWork from homeShift work$93.6k - $157.56k
...Overview As someone experienced with securing a wide variety of applications, you are looking for an opportunity to use your skills in an innovative... ...technology-oriented environment. As an Application Security Engineer at Esri, you will fill a critical role in helping...$130k - $180k
...advanced black-box and grey-box penetration tests on web applications, APIs (REST/GraphQL), and internal systems. Perform deep-dive mobile security assessments on iOS and Android, including reverse engineering and bypassing client-side controls like root detection and...- ...within a Vulnerability Management Program that understands Application Security with 5-7 years of security experience. Experience with any... ...Secure code review experience using automated toolsets Software Engineering career experience Following Certifications: CISSP, CEH,...
$85.7k - $125.69k
...provider of used and new car financing across the country.Our Engineering and Analytics Team Members utilize the latest technology to... ...work environment and Great Place to Work culture!The Application Security Engineer is responsible for securing the software and applications...Casual workWork at officeWork from homeShift work$221k - $250k
...the internet, people, institutions, and applications need a trusted way to confirm who is a... ...hardware, software, AI, cryptography, mobile engineering, and global operations. Our teams come... ...our Liftoff event. About the Team The Security team at Tools for Humanity operates at...Flexible hours$128.4k - $172.3k
...across Cisco. Our mission is to build secure, scalable AI platforms that empower teams... ...and security —partnering across engineering, security, compliance, and product teams... ...deployment phases. Integrate and optimize application security tooling, including SAST, DAST,...Full timeTemporary workLocal areaFlexible hours$40 per hour
...train AI models. In this role, you will evaluate AI-generated security content, solve technical cybersecurity problems, and provide feedback... ...testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat intelligence, or similar) ~ Some...Hourly payFull timePart timeRemote work$110k - $130k
...Ryder System, Inc. is seeking an experienced Application Security Engineer to join our security team. This role involves conducting security assessments, collaborating with development teams, and maintaining security documentation. The ideal candidate will have 5+ years...- ...The Application Security Engineer (ASE) is responsible for promoting, designing, and evaluating application security in all phases of the application life cycle. The ASE shall ensure that appropriate and effective security techniques and solutions are identified, implemented...Contract work
- ...meet their most challenging missions. We're looking for someone like you to help support national security. Whether modernizing legacy computing platforms and applications or creating new ones from scratch, you'll have the latest tech and brightest teammates at your fingertips...Work at office
$110k - $130k
...A leading logistics company in Tallahassee, Florida, is looking for a highly motivated Application Security Engineer. The ideal candidate will have 7+ years of experience in application security and a solid understanding of secure coding practices. Responsibilities include...$100k - $150k
...Bright Vision Technologies is seeking an Application Security Engineer to enhance security practices across the software development lifecycle. The ideal candidate should have over five years of application security experience, strong communication skills, and proven ability...Full timeRemote work$104k - $166k
...Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending... ...The Role We are seeking a highly skilled and innovative Application Security Engineer to join our team in the greater DMV area, supporting the...Contract workTemporary workShift work$231.9k - $318.25k
...directly with business data, and meets the highest standards of security and governance. AI is redefining what it means to build... ...program have grown with it. We’re looking for an Application Security Engineer who combines deep security fundamentals with real engineering...Shift work- ...operating modern, cloud-based products across multiple business verticals and technology stacks. We are looking for an Application Security Engineer to partner with Engineering, Product, and Security to make security an everyday part of how we build and ship software....Live inWork at officeLocal areaNight shift
- ...About Opal Security: At Opal, we’re building modern identity governance for the AI era... ...down innovation. The Role: Most security engineers spend their careers bolting locks onto... ...This is not that job. We're hiring an Application Security Engineer to own security across...
$50 - $80 per hour
...Software Security Firm looking for Application Security Engineer This Jobot Consulting Job is hosted by: John Erwin Are you a fit? Easy Apply now by clicking the "Quick Apply" button and sending us your resume. Salary: $50 - $80 per hour A bit about us: We are a Software...Hourly payLong term contractWork at officeLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Application Security Engineer. Be the first to apply!
- application operations engineer United States
- cnc applications engineer United States
- technical application engineer United States
- senior application security engineer United States
- project application engineer United States
- application system engineer United States
- senior application support engineer United States
- application performance engineer United States
- hydraulic application engineer United States
- application engineering manager United States

