Application Security Engineer II

2 days, 11 hours ago
Full-time
Mid Level
Cybersecurity
Bugcrowd

Bugcrowd

Bugcrowd provides a crowdsourced cybersecurity platform that connects organizations with elite security researchers to enhance security measures through managed bug bounty programs, penetration testing, and vulnerability disclosure initiatives.

Internet Software & Services
1K-5K
Founded 2012
$79M raised

Description

  • Triage and validate incoming vulnerability submissions for accuracy, validity, and severity.
  • Communicate with clients and security researchers to obtain additional information and clarify findings.
  • Escalate and communicate critical-severity vulnerabilities through incident response processes.
  • Apply OWASP Top Ten and related application security knowledge to assess reported vulnerabilities.
  • Design or develop scripting-based tools to improve triage and validation workflows.
  • Manage individual projects while contributing effectively to the broader technical operations team.
  • Complete assigned work accurately and on schedule.

Requirements

  • Bachelor’s degree or prior security consulting experience.
  • Published and demonstrated passion for security assessment research.
  • Strong knowledge of OWASP Top Ten vulnerabilities, including XSS, SQLi, XXE, IDOR, SSTI, and SSRF.
  • High proficiency with Burp Suite or another interception proxy.
  • Working experience with industry-standard tools such as Nmap, sqlmap, and Kali Linux utilities.
  • Strong proficiency in at least one scripting or development language.
  • Strong organization, influencing, and communication skills.
  • Ability to work independently while contributing to a team.
  • Ability to maintain strict confidentiality and successfully complete applicable background checks.

Benefits

  • 100% remote, work-from-home environment.
  • Exposure to security programs spanning web applications, vehicles, IoT devices, embedded systems, and mobile applications.
  • Opportunities to work with leading security researchers and develop expertise across hundreds of programs.
  • Reasonable accommodations for qualified individuals with disabilities.
  • Inclusive workplace committed to diversity and equal employment opportunity.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Manager, Product Security

Tines 51-250 Construction & Engineering

Tines is seeking a Senior Manager, Product Security to lead and scale its product security program for cloud-native, AI-forward products while partnering with engineering and product leaders to manage risk and support growth.

AWS CI/CD DevSecOps Docker Kubernetes Penetration Testing Ruby Rust TypeScript
1 day, 11 hours ago

Application Security Engineer

Glean 11-50 Internet Software & Services

Glean is hiring a remote Application Security Engineer to lead vulnerability management and strengthen software supply-chain security across its Work AI platform.

AWS Burp Suite CI/CD Cybersecurity GCP Kubernetes Microservices
1 day, 11 hours ago

Lead Application Security Engineer

Remofirst 11-50 Professional Services

RemoFirst is hiring an application and cloud security engineer to secure its global Employer of Record platform, customer identity systems, infrastructure, and emerging AI initiatives across a distributed engineering organization.

AWS Django FastAPI Java Kafka Kubernetes MongoDB OpenID Connect Penetration Testing PostgreSQL Python RabbitMQ REST API SAML Secrets Management Spring Boot Terraform
1 day, 11 hours ago

Off-Cycle Fall 2026 Cybersecurity Internship

Galaxy 251-1K Capital Markets

Galaxy Digital is seeking a remote Cybersecurity Intern for its Product Security team to improve secure engineering standards and develop resources that help software and production engineers apply them effectively.

C++ Cybersecurity Python Rust
4 days, 11 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers