Remote Bug Bounty Security Analyst

United States Digital Space LLC

United States

Remote

USD 90,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

United States Digital Space LLC seeks a highly technical Security Analyst to join our Vulnerability Management team and own the end-to-end lifecycle of bug bounty vulnerability reports. You will triage, reproduce, and coordinate remediation with product and engineering teams, driving program improvements and better researcher engagement.

You’ll work on understanding root causes, prioritizing fixes, and communicating clearly with researchers to raise the bar on security across our North American

Qualifications

  • Proven ability to follow bug reports and accurately triage security vulnerabilities.
  • Familiarity with web security issues and exploit methodologies (e.g., OWASP Top 10, CWEs).
  • Competent in offensive security tools (e.g., Burp Suite, custom scripting).
  • Ability to think like an attacker to understand the impact of vulnerabilities.
  • Proficient in clear communication, conveying technical concepts to various stakeholders.
  • Experience in one of the following areas: Bug bounty program or triaging security vulnerability reports.
  • Knowledge of the company products and general security expertise.

Responsibilities

  • Analyze, triage, reproduce, and triage incoming security vulnerability reports from the bug bounty program.
  • Communicate clearly and effectively with security researchers to follow up on unclear reports, drive report clarity, and increase engagement with top hackers.
  • Understand the root cause of security vulnerabilities to help product and engineering teams fix them, and advise on the right mitigation strategies.
  • Drive the lifecycle of submissions through to resolution, coordinating with product and engineering stakeholders.
  • Act as the security bridge between external researchers and internal teams to facilitate rapid and effective remediation.
  • Conduct in-depth data analysis on bug reports and vulnerability patterns to identify systemic risks and inform new security initiatives.
  • Provide tactical support for vulnerability management triage processes to augment the team as needed.
  • Prepare and implement improvements to the overall bug bounty program.
  • Provide feedback and requirements for tool development to enhance triage and security workflows, leveraging opportunities for automation

Skills

Bug bounty triage
Security vulnerability reports
OWASP Top 10
CWEs
Burp Suite
Scripting (Python/Ruby)
Researcher engagement

Tools

Burp Suite
Python
Ruby

Job description

United States Digital Space LLC seeks a highly technical Security Analyst to join our Vulnerability Management team and own the end-to-end lifecycle of bug bounty vulnerability reports. You will triage, reproduce, and coordinate remediation with product and engineering teams, driving program improvements and better researcher engagement.

You’ll work on understanding root causes, prioritizing fixes, and communicating clearly with researchers to raise the bar on security across our North American

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Bug Bounty Security Analyst - Triage & Research Engagement
Bug Bounty Security Analyst - Triage & Research Engagement

Stripe • United States

On-site
USD 144,400 - 216,600
Equity
401(k) plan
Medical, dental, vision benefits
+1
Senior Bug Bounty Security Engineer — Remote
Senior Bug Bounty Security Engineer — Remote

Nerdleveltech • Germany (OH)

On-site
USD 78,000 - 105,000
Performance-based bonus
Medical, dental, vision coverage
Retirement contributions
+5
Technical Program Manager, Bug Bounty & Security
Technical Program Manager, Bug Bounty & Security

Amazon • Seattle (WA)

On-site
USD 127,100 - 172,000
Lead Web Bug Bounty Security Engineer
Lead Web Bug Bounty Security Engineer

Mozilla • United States

On-site
USD 126,000 - 183,000
Bonus plans
Medical/dental/vision coverage
Retirement contributions
+7
Bug Bounty Program Lead - Security Engineer
Bug Bounty Program Lead - Security Engineer

Doist • Germany (OH)

Hybrid
USD 78,278 - 104,754
Generous bonus plans
Medical, dental, vision coverage
Retirement contributions with vesting
+4
Lead Web Bug Bounty & Security Engineer
Lead Web Bug Bounty & Security Engineer

Mozilla Corporation • United States

Remote
USD 120,000 - 180,000
Generous bonus plans
Medical, dental, vision coverage
100% vesting retirement contributions
+4
Bug Bounty Security Engineer: Protect the Open Web
Bug Bounty Security Engineer: Protect the Open Web

Mozilla Corporation • United States

Remote
USD 116,000 - 183,000
Performance bonus
Medical, dental, and vision coverage
Retirement contributions with 100% v2
+7
Senior Exploit Researcher - Threat Intelligence (Remote)
Senior Exploit Researcher - Threat Intelligence (Remote)

United States Digital Space LLC • United States

Remote
USD 85,000 - 120,000
Competitive pay
Equity awards
Wellness programs
+4
Lead Bug Bounty & Security Program Engineer
Lead Bug Bounty & Security Program Engineer

Mozilla • Germany (OH)

On-site
USD 77,000 - 104,000
Bonus plans based on performance
Medical, dental, and vision coverage
Retirement contributions with vesting
+3
Vulnerability Analyst — External Attack Surface & VDP
Vulnerability Analyst — External Attack Surface & VDP

Vanguard • Charlotte (NC)

On-site
USD 80,000 - 100,000