Jobiglo

Aucun resultat.

Product Security Engineer

Bugcrowd · San Jose

Nouveau Remote
Remote Mid 🇬🇧 English
Python Go Ruby Java SAST DAST SCA Secret scanning Threat modeling Secure code review Automated testing OWASP Top 10 Terraform AWS GCP Kubernetes Docker

Description du poste

About the role

If you like owning problems end to end, making security a default property of everything we build, and working closely with engineering, we want to meet you. Bugcrowd is looking for security engineers who move beyond standard tooling and drive measurable security outcomes our customers can rely on. You will help us shape a culture where security helps others succeed, not just points out problems.

Key responsibilities

  • Partner closely with engineering: refine architecture, validate new features, and drive security investment while prioritizing engineering velocity.
  • Build security paved roads: contribute to secure defaults, libraries, and "paved roads" that eradicate entire classes of vulnerabilities.
  • Create feedback loops: tune security tooling such as SAST, DAST, SCA, and secret scanning to reduce noise and focus on what matters.
  • Be our best customer: ensure our bug bounty program serves as a model, experiment with crowd creativity, and provide feedback on platform features.
  • Own projects end to end: lead cross‑functional product security projects from scoping through delivery, influencing roadmaps and communicating risk to technical and non‑technical stakeholders.
  • Amplify our impact: use code and automation to scale coverage, eliminate repetitive work, and build systems based on incentives and accountability.

Required profile

  • 3+ years of experience in product security, application security, or secure software development.
  • Ability to review code, automate tasks, and build security tooling in at least one modern programming language (e.g., Python, Go, Ruby, Java).
  • Hands‑on experience with threat modeling, secure code review, and automated testing (SAST, DAST, SCA) and a solid grasp of common vulnerability classes (e.g., OWASP Top 10).
  • Demonstrated ability to manage projects and influence cross‑functional partners across engineering, DevOps, and product.
  • Bachelor's degree in engineering, computer science or a related field, or equivalent practical experience.

Required skills

  • Python
  • Go
  • Ruby
  • Java
  • SAST
  • DAST
  • SCA
  • Secret scanning
  • Threat modeling
  • Secure code review
  • Automated testing
  • OWASP Top 10
  • Terraform
  • AWS
  • GCP
  • Kubernetes
  • Docker

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Bugcrowd.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Pourquoi signalez-vous cette offre ?

Merci pour votre signalement. Nous allons examiner cette offre.

Postulez en 30 secondes

Entrez votre email pour postuler. Un compte sera cree automatiquement.

Postuler maintenant →

En continuant, vous acceptez nos conditions d'utilisation.

Deja un compte ? Connexion

Une question sur cette offre ?

Posez-la ici : vous recevrez le récapitulatif de l'offre par e-mail, tout de suite.

💬 Contactez-nous sur Telegram

Publie il y a 15 heures

Expire dans 1 mois

7 vues · 0 interesses

Boostez vos chances

Importez votre CV : nous vous proposons les offres qui matchent votre profil.

Analyse de votre CV en cours...

Bugcrowd

San Jose