Enable job alerts via email!

Product Security Analyst, Events Team

hackerone

Washington (District of Columbia)

Remote

USD 115,000 - 144,000

Full time

7 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a dynamic team at a leading security firm dedicated to protecting digital assets. As a Security Analyst for Live Hacking Events, you will gain hands-on experience while collaborating with top hackers. This role emphasizes the importance of clear communication and teamwork in evaluating vulnerabilities and delivering high-impact reports. With a flexible work approach, you can work remotely while building meaningful connections with your colleagues. If you're passionate about information security and eager to grow your skills in a collaborative environment, this opportunity is perfect for you.

Benefits

Health Insurance
Equity Stock Options
Retirement Plans
Unlimited PTO
Paid Maternity Leave
Flexible Work Stipend

Qualifications

  • 3+ years of experience in security testing or ethical hacking.
  • Strong technical knowledge of OWASP top 10 and security tools.

Responsibilities

  • Evaluate vulnerability reports for validity and risk.
  • Collaborate with hackers to understand complex vulnerabilities.
  • Independently reproduce reported vulnerabilities and provide summaries.

Skills

Security Testing
Ethical Hacking
Vulnerability Disclosure
OWASP Top 10
Communication Skills
Time Management
Self-Motivation

Education

Bachelor's Degree in Information Security or related field

Tools

Burpsuite
CVSS Framework

Job description

HackerOne is the global leader in human-powered security, harnessing the creativity of the world's largest community of security researchers with cutting-edge AI to protect your digital assets. The HackerOne Platform combines the expertise of our elite community and the most up-to-date vulnerability database to pinpoint critical security flaws across your attack surface. Our integrated solutions, including bug bounty, pentesting, code security audits, spot checks, and AI red teaming, ensure continuous vulnerability discovery and management throughout the software development lifecycle. Trusted by industry leaders such as Coinbase, General Motors, GitHub, Goldman Sachs, Hyatt, PayPal, and the U.S. Department of Defense, HackerOne was named a Best Workplace for Innovators by Fast Company in 2023 and a Most Loved Workplace for Young Professionals in 2024.

HackerOne Values

HackerOne is dedicated to fostering a strong and inclusive culture. HackerOne is Customer Obsessed and prioritizes customer outcomes in our decisions and actions. We Default to Disclosure by operating with transparency and integrity, ensuring trust and accountability. Employees, researchers, customers, and partners Win Together by fostering empowerment, inclusion, respect, and accountability.

Position Summary

HackerOne is seeking a dynamic individual with a passion for Information Security to join our Triage Events team. As a Security Analyst for Live Hacking Events, you will gain hands-on technical experience and exposure to some of the world's best hackers while delivering high-impact vulnerabilities to the top bug bounty programs in the industry.

This role requires excellent communication skills, a sense of urgency, intellectual curiosity and drive to acquire the technical skills you'll need to ensure every valid bug report is reproducible and provides value to HackerOne customers.

At HackerOne, we embrace a Flexible Work approach, enabling our team members to work remotely while maintaining productivity and collaboration. We are seeking candidates located in Seattle, WA; San Francisco Bay Area; Austin, TX; Washington, D.C. or London, UK, and the surrounding metropolitan areas, to facilitate occasional in-person interactions as needed. While the position is primarily remote, there will be periodic in-person requirements to support team collaboration and foster stronger connections. This approach ensures flexibility while providing opportunities to build meaningful in-person relationships that strengthen our team and company culture.

What You Will Do
  • Evaluate vulnerability reports submitted by hackers to determine the validity, risk and severity to HackerOne customers

  • Collaborate with hackers to understand complex chained vulnerabilities that will grow your skills daily

  • Ensure clear and efficient communication between hackers, customers and other team mates

  • Proactively identify and solve issues, as well as accept and quickly respond to delegated work; as we are distributed, being able to win as a team to solve problems is critical to our success

  • Independently reproduce reported vulnerabilities in a test environment and compose a technical summary for valid reports that includes clear and concise details regarding the impact, steps to reproduce and remediation advice

  • Thrive in a collaborative collective environment where hackers, customers and security analysts have the best experience.

  • Self-motivated interest in emerging technologies and their impact on securing the digital world

Minimum Qualifications
  • 3+ years of experience doing security testing or ethical hacking on web and mobile applications

  • Proven experience with vulnerability disclosure and bug bounty (experience managing a bug bounty program is a plus but not required)

  • Strong technical knowledge of OWASP top 10

  • Comfortable using security testing tools including Burpsuite

  • Excellent written and verbal communication skills

  • Experience using frameworks such as CVSS

  • Ability and willingness to travel globally at least 3-5 times a year

  • Self-motivated and able to manage your time and energy output while maintaining a consistent and sustainable operational rhythm

  • English fluency

Compensation Bands:

San Francisco Bay Area

$128K - $144K * Offers Equity

Seattle, WA; Austin, TX; or Washington, D.C. Area

$115K - $130K * Offers Equity

London, UK Area

64K - 80K * Offers Equity

#LI-Remote

#LI-HM1

Job Benefits:
  • Health (medical, vision, dental), life, and disability insurance*

  • Equity stock options

  • Retirement plans

  • Paid public holidays and unlimited PTO

  • Paid maternity and parental leave

  • Leaves of absence (including caregiver leave and leave under CO's Healthy Families and Workplaces Act)

  • Employee Assistance Program

  • Flexible Work Stipend

*Eligibility may differ by country

We're committed to building a global team! For certain roles outside the United States, U.K., and the Netherlands, we partner with Remote.com as our Employer of Record (EOR).

Employment at HackerOne is contingent on a background check.

HackerOne is an Equal Opportunity Employer in the terms and conditions of employment for all employees and job applicants without regard to race, color, religion, sex, sexual orientation, age, gender identity or gender expression, national origin, pregnancy, disability or veteran status, or any other protected characteristic as outlined by international, federal, state, or local laws.

This policy applies to all HackerOne employment practices, including hiring, recruiting, promotion, termination, layoff, recall, leave of absence, compensation, benefits, training, and apprenticeship. HackerOne makes hiring decisions based solely on qualifications, merit, and business needs at the time.

For US based roles only: Pursuant to the San Francisco Fair Chance Ordinance, all qualified applicants with arrest and conviction records will be considered for the position.

Compensation Range: $115K - $144K

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Product Security Analyst, Events Team

hackerone

Baltimore

Remote

USD 115.000 - 144.000

7 days ago
Be an early applicant

Security Analyst

GovCIO

Washington

Remote

USD 81.000 - 131.000

Yesterday
Be an early applicant

Senior Analyst, Security Governance Risk & Compliance (GRC)

BlackSky

Washington

Remote

USD 135.000 - 150.000

2 days ago
Be an early applicant

Product Security Analyst, Events Team

HackerOne

San Francisco

Remote

USD 128.000 - 144.000

6 days ago
Be an early applicant

Product Security Analyst, Events Team

hackerone

Austin

Remote

USD 115.000 - 130.000

7 days ago
Be an early applicant

Product Security Analyst, Events Team

hackerone

Seattle

Remote

USD 115.000 - 130.000

7 days ago
Be an early applicant

Information Security Analyst III (Remote)

First Citizens Bank

Arlington

Remote

USD 120.000 - 155.000

Yesterday
Be an early applicant

Senior Product Security Analyst

Siemens Healthineers

Malvern

Remote

USD 80.000 - 120.000

10 days ago

Senior Security Analyst (Network & Cloud)

Ivy Rehab Network

City of White Plains

Remote

USD 120.000 - 150.000

5 days ago
Be an early applicant