Job Search and Career Advice Platform

Enable job alerts via email!

Senior Bug Bounty Security Engineer

RecruitMe Plus

Dubai

On-site

AED 200,000 - 300,000

Full time

Yesterday
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A cybersecurity recruiting company is seeking a highly skilled Bug Bounty Security Engineer to join their team in Dubai. The ideal candidate will manage the bug bounty program, analyze security vulnerabilities, and work collaboratively to implement effective remediation strategies. Required qualifications include a Bachelor’s degree in a related field and proficiency in tools like Burp Suite and Metasploit. Strong communication and analytical skills are essential to succeed in this role, and familiarity with bug bounty platforms is a plus.

Qualifications

  • Proven experience in vulnerability management, penetration testing, or security engineering.
  • Familiarity with bug bounty platforms such as HackerOne or Bugcrowd.
  • Understanding of common vulnerabilities (e.g., OWASP Top 10) and their remediation techniques.

Responsibilities

  • Manage and enhance the bug bounty program, including scope definition and vulnerability triaging.
  • Collaborate with teams to implement fixes and conduct root cause analysis.
  • Perform security assessments and utilize tools for vulnerability identification.

Skills

Vulnerability management
Penetration testing
Web application security
Network security
Secure coding practices
Analytical skills
Communication skills

Education

Bachelor's degree in Computer Science, Cybersecurity or related field

Tools

Burp Suite
Metasploit
Nessus
Job description
Position Overview

Our client isseeking a highly skilled and motivated Bug Bounty Security Engineer to join our cybersecurity team. The ideal candidate will play a critical role in identifying, analyzing, and mitigating security vulnerabilities in our systems, applications, and infrastructure. As part of this role, you will manage and enhance our bug bounty program, collaborate with external security researchers, and ensure the highest level of security for our organization.

Key Responsibilities
  • Bug Bounty Program Management:
    • Oversee the organization's bug bounty program, including defining scope, rules, and rewards.
    • Review and validate vulnerability reports submitted by external researchers.
    • Ensure timely triaging, prioritization, and resolution of reported vulnerabilities.
  • Vulnerability Assessment and Remediation:
    • Analyze reported vulnerabilities and assess their impact on the organizations systems.
    • Collaborate with development and infrastructure teams to implement fixes and security patches.
    • Conduct root cause analysis to prevent recurrence of vulnerabilities.
  • Collaboration with Security Researchers:
    • Build and maintain strong relationships with external security researchers and ethical hackers.
    • Provide clear communication and feedback to researchers regarding their submissions.
  • Security Testing and Analysis:
    • Perform penetration testing and security assessments to proactively identify vulnerabilities.
    • Utilize automated tools and manual techniques to uncover security weaknesses.
  • Program Optimization:
    • Continuously improve the bug bounty program by expanding scope and refining processes.
    • Monitor industry trends and adopt best practices in vulnerability disclosure and bug bounty management.
  • Documentation and Reporting:
    • Maintain detailed records of vulnerability reports, remediation efforts, and program metrics.
    • Prepare regular reports for management on program performance and security posture.
  • Training and Awareness:
    • Educate internal teams on security best practices and the importance of vulnerability management.
    • Conduct workshops or training sessions to improve security awareness across the organization.
Qualifications
  • Bachelors degree in Computer Science, Cybersecurity, or a related field.
  • Proven experience in vulnerability management, penetration testing, or security engineering.
  • Strong knowledge of web application security, network security, and secure coding practices.
  • Familiarity with bug bounty platforms such as HackerOne, Bugcrowd, or similar.
  • Proficiency in tools like Burp Suite, Metasploit, Nessus, and other security testing tools.
  • Understanding of common vulnerabilities (e.g., OWASP Top 10) and their remediation techniques.
  • Excellent analytical, problem-solving, and communication skills.
  • Relevant certifications such as CEH, OSCP, CISSP, or similar are a plus.
Preferred Skills
  • Experience managing bug bounty programs or vulnerability disclosure initiatives.
  • Knowledge of cloud security and containerized environments (e.g., AWS, Azure, Kubernetes).
  • Ability to work in a fast-paced environment and handle multiple priorities effectively.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.