Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Application Security Engineer

Bugcrowd

Application Security Engineer

Remote - Brazil

We are Bugcrowd. Since 2012, we've been empowering organizations to take back control and stay ahead of threat actors by uniting the collective ingenuity and expertise of our customers and trusted alliance of elite hackers, with our patented data and AI-powered Security Knowledge Platform™. Our network of hackers brings diverse expertise to uncover hidden weaknesses, adapting swiftly to evolving threats, even against zero-day exploits. With unmatched scalability and adaptability, our data and AI-driven CrowdMatch™ technology in our platform finds the perfect talent for your unique fight. We aim to create a new era of modern crowdsourced security that outpaces threat actors. Unleash the ingenuity of the hacker community with Bugcrowd.

Job Summary

At Bugcrowd, we handle application security assessment at an epic scale. As an Application Security Engineer (ASE) you will curate and manage the incoming security vulnerability submissions to some of the world's biggest companies' bug bounty programs. Here are just a few of the reasons why we are the best:

  • A tenure at Bugcrowd often means you have worked on not only one company's security program but potentially on hundreds.
  • As an ASE at Bugcrowd you will be exposed to the Internet's best security researchers and their cutting-edge security testing methodologies. Our ASEs quickly become technically fluent in obscure/complex XSS, SQLi, XXE, IDOR, SSTI, SSRF, and many other vulnerability types. There is no other organization that offers the learning opportunity that Bugcrowd does.
  • You will be exposed to things outside of your comfort zone. We routinely run security programs for cars, IoT devices, embedded systems, mobile applications, and more!
  • We have an awesome team and tons of perks. We've even been selected as one of "The 10 Coolest Security Startups Of 2016" by crn.com.

Essential Duties & Responsibilities

An ASE is responsible for the ongoing triage and validation services of Bugcrowd managed programs. Under the direction of the Director of Technical Operations, you will take incoming submission data and curate it for validity, accuracy, and severity as well as communicate directly with Bugcrowd's clients or researchers when additional information is required. ASEs also handle Incident Response – escalating and communicating about the highest severity bugs to clients. ASEs need to have strong knowledge of OWASP Top Ten type vulnerabilities. They also usually require a strong skill set in one scripting/development language, often to assist with the design or development of tooling for improving the triage/validation process. The ASE position is perfect for security professionals looking to take their skills to the next level.

Education, Experience, Skills, & Abilities

  • Bachelor's degree or previous security consulting experience
  • Published and demonstrated passion for security assessment research
  • High proficiency with Burp Suite (or any other interception proxy) and a working level of experience with other industry standard tools (nmap, sqlmap, anything included in Kali Linux)
  • Ability to execute on individual projects but still contribute to the team
  • Ability to complete tasks on time
  • Strong organization, influencing, and communication skills

Working Conditions

The ideal candidate must be able to complete all physical requirements of the job with or without reasonable accommodation.

Sitting and/or standing - Must be able to remain in a stationary position 50% of the time

Carrying and /or lifting - Must be able to carry / move laptop as needed throughout the work day.

Environment - remote, work-from-home 100% of the time.

ADA Statement

Bugcrowd is committed to the full inclusion of all qualified individuals. In keeping with our commitment, Bugcrowd will take the steps to assure that people with disabilities are provided reasonable accommodations. Accordingly, if reasonable accommodation is required to fully participate in the job application or interview process, to perform the essential functions of the position, and/or to receive all other benefits and privileges of employment, please contact HR at View email address on click.appcast.io.

Culture

  • At Bugcrowd, we understand that diversity in the workplace is vital to a company's success and growth. We strive to make sure that people are included and have a sense of being part of making Bugcrowd not only a great product but a great place to work.
  • We regularly hear from both customers and researchers that Bugcrowd feels like a family, and we strive to maintain that internally as well.
  • Our team consists of a broad range of people: musicians, adventure sports junkies, nature lovers, parents, cereal enthusiasts, night owls, cyclists, artists—you get the point.

At Bugcrowd, we are solving security threats and vulnerabilities that are relevant to everyone, therefore we believe solving these problems takes all kinds of backgrounds. We value the perspectives and experiences people from underrepresented backgrounds bring.

Disclaimer

This position has access to highly confidential, sensitive information relating to the technologies of Bugcrowd. It is essential that the applicant possess the requisite integrity to maintain the information in the strictest confidence.

The company is authorized to obtain background checks for employment purposes under state and federal law. Background checks will be conducted for positions that involve access to confidential or proprietary information (including trade secrets).

Background checks may include Social Security verification, prior employment verification, personal and professional references, educational verification, and criminal history. Applicants with conviction histories will not be excluded from consideration to the extent required by law.

Any personal data you submit in connection with your application will be processed in compliance with Bugcrowd's Privacy Policy, which you may review here:

Equal Employment Opportunity:

Bugcrowd is EOE, Disability/Age Employer. Individuals seeking employment at Bugcrowd are considered without regards to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, gender identity, or sexual orientation.

Bugcrowd is committed to the full inclusion of all qualified individuals. In keeping with our commitment, Bugcrowd will take the steps to assure that people with disabilities are provided reasonable accommodations. Accordingly, if reasonable accommodation is required to fully participate in the job application or interview process, to perform the essential functions of the position, and/or to receive all other benefits and privileges of employment, please contact HR at ADA at bugcrowd.com.

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Application Security Engineer in United States vacancy
  •  ...Seeking a Senior Application Security Engineer to work 3-days/week onsite in Rockville, MD. *Local candidates preferred - an onsite interview is required* The main function of Senior Application Security Engineer is to plan, coordinate and implement application security... 
    Suggested
    Local area
    3 days per week

    ManpowerGroup Global, Inc.

    Waterford, WI
    1 day ago
  • $110k

     ...Job Description We seek a highly motivated and experienced Application Security Engineer to join our growing security team. This role is highly technical and candidates must possess a solid understanding of the security and privacy of our company's applications and data... 
    Suggested
    Full time

    Ryder

    Denver, CO
    1 day ago
  • $200k - $245k

     ...founding in 2013, we have focused on enabling our clients to securely navigate the digital asset space. With a global presence...  ...and innovative problem-solving. We are seeking a Senior Application Security Engineer to lead the technical execution of our product security... 
    Suggested
    Full time
    Work at office
    Worldwide

    Blockchain Capital

    San Francisco, CA
    1 day ago
  •  ...methodology.This is a great opportunity to work in an international team, apply and learn modern IT technologies Responsibilities Application Security with strong AI/ML security exposureThreat modeling and risk assessment for AI systems, APIs, and cloud-native... 
    Suggested

    Luxoft

    Indianapolis, IN
    1 day ago
  • $110k

     ...Application Security Engineer Join our growing security team as a highly motivated and experienced Application Security Engineer. This technical role requires a solid understanding of application security and privacy, secure coding practices, and secure system configurations... 
    Suggested
    Full time

    Ryder

    Jefferson City, MO
    1 day ago
  •  ...The Application Security Engineer will play a critical role in safeguarding web, mobile, and backend systems from vulnerabilities and malicious activity. This role involves deep technical testing, fraud detection, and integration with development teams to build secure-... 

    Compunnel

    Englewood, CO
    2 days ago
  • $168k - $230k

     ...actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars. Sr. Application Security Engineer At the company we’re leveraging our experience in building rockets and spacecraft to deploy Starlink, the world’s most advanced... 
    Permanent employment
    Temporary work
    Work at office
    Worldwide
    Monday to Friday
    Flexible hours
    Weekend work

    United States Digital Space LLC

    Redmond, WA
    1 day ago
  •  ...Implement and develop, and integrate information security risk management into application and software development lifecycles. Develop and maintain security policies and standards. Provide risk assessments and/or threat modeling. Review source code, perform tests to enhance... 

    Target Labs

    Vienna, VA
    1 day ago
  •  ...qualify. Key qualifications ~6+ years of Information Technology experience ~3+ years of experience with supporting Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and IDE plug-in environments using Veracode and Burp Suite ~2... 
    Remote work
    Overseas

    Sibitalent

    Huntsville, AL
    2 days ago
  • $110k - $130k

     ...Ryder System, Inc. is seeking a highly motivated Application Security Engineer based in Indianapolis, Indiana. This role requires a solid understanding of application security, coding, and development practices. The engineer will conduct security assessments, collaborate... 

    Ryder

    Indianapolis, IN
    1 day ago
  •  ...This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Application Security Engineer based in Switzerland. Join a high-impact security engineering environment where you will play a key role in... 
    Remote work
    Flexible hours

    Jobgether

    Indiana, PA
    1 day ago
  •  ...We are seeking a Sr. Application Security or DevSecOps Engineer with broad set of experiences to have an early and formative impact in many areas of the ZetaChain security program. The ideal candidate will be responsible for ensuring the security of our applications throughout... 
    Contract work
    Remote work
    Flexible hours

    ZetaChain

    San Francisco, CA
    3 days ago
  • $85.7k - $125.69k

     ...The Application Security Engineer is responsible for securing the software and applications that Credit Acceptance builds, buys, and operates. This role partners closely with engineering, product, architecture, and business teams to ensure that applications handling sensitive... 
    Work at office
    Work from home
    Shift work

    Nerdleveltech

    Southfield, MI
    3 days ago
  • $93.6k - $157.56k

     ...Overview As someone experienced with securing a wide variety of applications, you are looking for an opportunity to use your skills in an innovative...  ...technology-oriented environment. As an Application Security Engineer at Esri, you will fill a critical role in helping... 

    TryApplyNow

    Redlands, CA
    2 days ago
  • $130k - $180k

     ...advanced black-box and grey-box penetration tests on web applications, APIs (REST/GraphQL), and internal systems. Perform deep-dive mobile security assessments on iOS and Android, including reverse engineering and bypassing client-side controls like root detection and... 

    Tempus AI, Inc.

    Chicago, IL
    2 days ago
  •  ...within a Vulnerability Management Program that understands Application Security with 5-7 years of security experience. Experience with any...  ...Secure code review experience using automated toolsets Software Engineering career experience Following Certifications: CISSP, CEH,... 

    Bridge Technologies and Solutions

    San Francisco, CA
    1 day ago
  • $85.7k - $125.69k

     ...provider of used and new car financing across the country.Our Engineering and Analytics Team Members utilize the latest technology to...  ...work environment and Great Place to Work culture!The Application Security Engineer is responsible for securing the software and applications... 
    Casual work
    Work at office
    Work from home
    Shift work

    Credit Acceptance

    Southfield, MI
    3 days ago
  • $221k - $250k

     ...the internet, people, institutions, and applications need a trusted way to confirm who is a...  ...hardware, software, AI, cryptography, mobile engineering, and global operations. Our teams come...  ...our Liftoff event. About the Team The Security team at Tools for Humanity operates at... 
    Flexible hours

    Kubelt

    San Francisco, CA
    3 days ago
  • $128.4k - $172.3k

     ...across Cisco. Our mission is to build secure, scalable AI platforms that empower teams...  ...and security —partnering across engineering, security, compliance, and product teams...  ...deployment phases. Integrate and optimize application security tooling, including SAST, DAST,... 
    Full time
    Temporary work
    Local area
    Flexible hours

    Cisco

    Raleigh, NC
    2 days ago
  • $40 per hour

     ...train AI models. In this role, you will evaluate AI-generated security content, solve technical cybersecurity problems, and provide feedback...  ...testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat intelligence, or similar) ~ Some... 
    Hourly pay
    Full time
    Part time
    Remote work

    DataAnnotation

    Phoenix, AZ
    2 days ago
  • $110k - $130k

     ...Ryder System, Inc. is seeking an experienced Application Security Engineer to join our security team. This role involves conducting security assessments, collaborating with development teams, and maintaining security documentation. The ideal candidate will have 5+ years... 

    Ryder

    Jefferson City, MO
    2 days ago
  •  ...The Application Security Engineer (ASE) is responsible for promoting, designing, and evaluating application security in all phases of the application life cycle. The ASE shall ensure that appropriate and effective security techniques and solutions are identified, implemented... 
    Contract work

    Target Labs

    Rockville, MD
    1 day ago
  •  ...meet their most challenging missions. We're looking for someone like you to help support national security. Whether modernizing legacy computing platforms and applications or creating new ones from scratch, you'll have the latest tech and brightest teammates at your fingertips... 
    Work at office

    Phase2 Technology

    San Antonio, TX
    1 day ago
  • $110k - $130k

     ...A leading logistics company in Tallahassee, Florida, is looking for a highly motivated Application Security Engineer. The ideal candidate will have 7+ years of experience in application security and a solid understanding of secure coding practices. Responsibilities include... 

    Ryder

    Tallahassee, FL
    1 day ago
  • $100k - $150k

     ...Bright Vision Technologies is seeking an Application Security Engineer to enhance security practices across the software development lifecycle. The ideal candidate should have over five years of application security experience, strong communication skills, and proven ability... 
    Full time
    Remote work

    Bright Vision Technologies

    Bartlett, IL
    2 days ago
  • $104k - $166k

     ...Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending...  ...The Role We are seeking a highly skilled and innovative Application Security Engineer to join our team in the greater DMV area, supporting the... 
    Contract work
    Temporary work
    Shift work

    Peraton

    Herndon, VA
    1 day ago
  • $231.9k - $318.25k

     ...directly with business data, and meets the highest standards of security and governance. AI is redefining what it means to build...  ...program have grown with it. We’re looking for an Application Security Engineer who combines deep security fundamentals with real engineering... 
    Shift work

    Retool

    San Francisco, CA
    1 day ago
  •  ...operating modern, cloud-based products across multiple business verticals and technology stacks. We are looking for an Application Security Engineer to partner with Engineering, Product, and Security to make security an everyday part of how we build and ship software.... 
    Live in
    Work at office
    Local area
    Night shift

    Centerfield Corporation

    Los Angeles, CA
    2 days ago
  •  ...About Opal Security: At Opal, we’re building modern identity governance for the AI era...  ...down innovation. The Role: Most security engineers spend their careers bolting locks onto...  ...This is not that job. We're hiring an Application Security Engineer to own security across... 

    Opal Security

    San Francisco, CA
    2 days ago
  • $50 - $80 per hour

     ...Software Security Firm looking for Application Security Engineer This Jobot Consulting Job is hosted by: John Erwin Are you a fit? Easy Apply now by clicking the "Quick Apply" button and sending us your resume. Salary: $50 - $80 per hour A bit about us: We are a Software... 
    Hourly pay
    Long term contract
    Work at office
    Local area

    Jobot

    San Francisco, CA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Application Security Engineer. Be the first to apply!