Security Analyst

Virtual Clone

Mumbai

On-site

INR 1,500,000 - 2,100,000

Full time

8 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Virtual Clone in Mumbai is seeking a Bug Bounty-Focused Security Analyst to join our global community of ethical hackers. You will review and triage vulnerability reports, assess severity, and guide remediation for clients.

You will reproduce findings, perform targeted testing, and stay ahead of OWASP Top 10 threats. A strong bug bounty track record and cross-platform security experience are essential for success in this role.

Qualifications

  • 1+ year of experience in Bug Bounty, VAPT, or Security Research.
  • Active Bug Bounty profile (HackerOne, Bugcrowd, Synack, etc.).
  • Strong hands-on experience in identifying real-world vulnerabilities.
  • Solid understanding of OWASP Top 10, web & API security.
  • Ability to think like an attacker and validate complex vulnerability chains.
  • Strong analytical, communication, and report-writing skills.
  • Proficiency in Linux, Windows, and macOS environments.
  • Passion for ethical hacking and continuous learning.

Responsibilities

  • Review, validate, and triage vulnerability reports submitted by bug bounty hunters.
  • Assess the impact and severity of findings, including CVSS scoring.
  • Collaborate directly with ethical hackers to reproduce and understand vulnerabilities.
  • Provide clear, actionable remediation guidance to clients.
  • Perform targeted penetration testing to support and verify bug bounty findings.
  • Identify duplicate, false positive, and low-quality submissions efficiently.
  • Contribute to improving bug bounty program quality and researcher engagement.
  • Stay updated with the latest exploitation techniques, bug bounty trends, and attack vectors.

Skills

Bug Bounty
Active Bug Bounty
VAPT experience
OWASP Top 10
Attacker mindset
Analytical skills
Report writing
Linux/Windows/macOS
Continuous learning

Tools

HackerOne
Bugcrowd
Synack

Job description

Join our mission to make the digital world safer!

As a Bug Bounty-Focused Security Analyst, you’ll work closely with our global community of ethical hackers, helping identify, validate, and escape real-world vulnerabilities - ensuring organizations stay ahead of evolving cyber threats.

  • Review, validate, and triage vulnerability reports submitted by bug bounty hunters.
  • Assess the impact and severity of findings, including CVSS scoring.
  • Collaborate directly with ethical hackers to reproduce and understand vulnerabilities.
  • Provide clear, actionable remediation guidance to clients.
  • Perform targeted penetration testing to support and verify bug bounty findings.
  • Identify duplicate, false positive, and low-quality submissions efficiently.
  • Contribute to improving bug bounty program quality and researcher engagement.
  • Stay updated with the latest exploitation techniques, bug bounty trends, and attack vectors.
What You’ll Bring
  • 1+ year of experience in Bug Bounty, VAPT, or Security Research.
  • Active Bug Bounty profile (HackerOne, Bugcrowd, Synack, etc.).
  • Strong hands-on experience in identifying real-world vulnerabilities.
  • Solid understanding of OWASP Top 10, web & API security.
  • Ability to think like an attacker and validate complex vulnerability chains.
  • Strong analytical, communication, and report-writing skills.
  • Proficiency in Linux, Windows, and macOS environments.
  • Passion for ethical hacking and continuous learning.
Nice to Have
  • Recognized Bug Bounty achievements (Hall of Fame, bounties, rankings).
  • Experience with automation, scripting, or custom testing tools.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Analyst, Attack Surface Management
Security Analyst, Attack Surface Management

Metmox • Hyderabad

On-site
INR 1,200,000 - 1,800,000
Security Consultant (Partnership program)
Security Consultant (Partnership program)

BugsTrace • India

On-site
INR 7,656,000 - 14,354,000
Cyber Analysts - Vulnerability Management and Penetration Testing
Cyber Analysts - Vulnerability Management and Penetration Testing

Tata Power • Navi Mumbai, Mumbai

On-site
INR 800,000 - 1,400,000
Security Analyst
Security Analyst

Certbar Security • Mumbai

On-site
INR 600,000 - 1,200,000
Security Analyst - VAPT
Security Analyst - VAPT

TechDefence Labs • Delhi

On-site
INR 700,000 - 1,000,000
Competitive salary and benefits package
Opportunities for continuous learning
Vulnerability Researcher II
Vulnerability Researcher II

Safe • New Delhi

On-site
INR 1,800,000 - 3,000,000
Meaningful Equity
Unlimited Leaves
Comprehensive Benefits
+1
Vulnerability Researcher II
Vulnerability Researcher II

Safe • Delhi

On-site
INR 1,200,000 - 1,800,000
Meaningful Equity
Unlimited Leaves
Comprehensive Benefits
+1
Senior Penetration Tester
Senior Penetration Tester

AppSecure Security • Bengaluru Urban

On-site
INR 1,500,000 - 2,100,000
Competitive compensation package
Comprehensive health insurance
Company-sponsored off-sites
+2
Threat Researcher II
Threat Researcher II

Safe Security • Delhi

On-site
INR 1,800,000 - 3,200,000
Meaningful Equity
Unlimited Leaves
Comprehensive Benefits
+1
Associate Security Analyst (AppSec)
Associate Security Analyst (AppSec)

Kratikal Tech Private Limited • Mumbai

On-site
INR 300,000 - 500,000
Health insurance
Gratuity payment
Employees' Provident Fund