Bitwarden

Bitwarden

Bitwarden is a trusted password manager that provides secure password generation, storage, and sharing for individuals and businesses. With zero-knowledge, end-to-end encryption, Bitwarden offers open-source solutions for managing sensitive information...

Internet Software & Services
51-250
Founded 2015
$100M raised

Description

  • Research emerging threats across the surface web, dark web, and deep web.
  • Build threat models, conduct threat hunts, and plan and execute purple team engagements.
  • Coordinate internal red team testing operations that emulate threat actors.
  • Collaborate with application developers, platform engineers, and SOC engineers to improve offensive and defensive security controls.
  • Conduct vulnerability testing, analysis, incident response, and investigation support.
  • Test web, mobile, CLI, and desktop application security across Bitwarden’s products, APIs, serverless functions, and databases.
  • Participate in code reviews and share technical security knowledge across teams.
  • Coordinate technical validation and leadership review of purple team reports and remediation priorities.
  • Conduct internal penetration tests on systems and networks to identify realistic threat vectors.
  • Manage software tools for code scanning, vulnerability identification, and findings reporting.
  • Communicate findings, attack paths, and recommendations to stakeholders.
  • Train others on adversary simulation tactics and procedures.
  • Stay current on security trends, publications, advisories, new technologies, and vendor security analysis.

Requirements

  • Experience with penetration testing tools such as Burp Suite, Nmap, Nessus, Metasploit, Kali Linux, SQLMap, OWASP ZAP, and manual testing tools.
  • In-depth knowledge of vulnerability management tools and strategies.
  • In-depth understanding of application security testing technologies is a plus.
  • Understanding of authentication concepts including OpenID Connect, SAML, OAuth, and SSO flows.
  • Strong working knowledge of vulnerability management tools, data security technologies, and network security technologies.
  • Collaborative and adaptable mindset.
  • Excellent communication skills and the ability to explain findings clearly.
  • Strong problem-solving skills and the ability to find and communicate solutions.
  • Ability to maintain discretion, handle sensitive information, and follow security best practices.
  • Interest in open source, better internet security, and staying current on security trends and new technologies.
  • Experience with C# and TypeScript, the core languages used to build the Bitwarden platform, is preferred.
  • Experience in SecOps and applying security best practices across an organization is preferred.
  • Experience working in cloud-focused environments is preferred.
  • Must be located in the U.S.
  • No visa sponsorship is available at this time.

Benefits

  • Starting base compensation range of $140,000 to $180,000 in the United States.
  • Remote-first role with an all-remote team.
  • Opportunity to work with a diverse and supportive team across the world.
  • Exposure to security and open source software in a growing market.
  • Professional growth in a fast-growing startup.
  • Access to benefits listed on Bitwarden’s careers page.
  • Purpose-driven work supporting a more secure internet experience.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Cyber Software Engineer

STR 251-1K Aerospace & Defense

STR is hiring a Senior Cyber Software Engineer to develop and assess software tools that improve the security and resiliency of national defense systems.

Bash C C++ CI/CD Docker GitHub Actions GitLab CI Gradle Jenkins Podman Rust
14 minutes ago

Senior Embedded Software Engineer - Cyber

STR 251-1K Aerospace & Defense

STR is seeking a Senior Embedded Software Engineer to join a multidisciplinary cyber team developing vulnerability research technologies for national security applications.

Bash C C++ Docker Embedded Systems Git GitLab Python SVN
14 minutes ago

Security Technician 

Unlimited Technology 51-250 Professional Services

Unlimited Technology is hiring a Full-Time Security Installation Technician to install, program, troubleshoot, and maintain access control and IP camera systems at client sites.

29 minutes ago

Security Architect Cloud & AWS

NEORIS 5K-10K Internet Software & Services

NEORIS is hiring a Senior Security Architect to close AWS cybersecurity remediation items and serve as the permanent security lead for ongoing cloud security governance in a multi-account AWS environment.

AWS Azure Cybersecurity DevSecOps GCP Splunk
44 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers