Application Security Engineer - Bug bounty
Status
Taipei, Taiwan
Full time
Hybrid
Compensation is not specified
Role
Security Engineer
Description
Responsibilities
- Manage and supervise the company's bug bounty program across various platforms utilized by external researchers.
- Evaluate and verify bug reports submitted by external sources and organize them based on impact severity.
- Work closely with engineering and security teams to identify, monitor, and address vulnerabilities effectively.
- Facilitate communication and collaboration between external researchers, security teams, and developers to achieve timely resolution of security issues.
- Offer clear and constructive feedback to external researchers to enhance the quality of bug submissions.
- Foster strong relationships within the bug bounty community.
- Stay updated on the latest trends, vulnerabilities, and threats in cybersecurity.
- Compile and present regular reports on bug bounty program performance.
Requirements
- Minimum of 2 years of practical experience in the field of Application Security.
- Previous experience in a similar role managing bug bounty programs and addressing vulnerability reports would be advantageous.
- Thorough comprehension of web and mobile application security as well as familiarity with security frameworks like OWASP Top 10.
- Proficient in utilizing bug bounty platforms like HackerOne, HackenProof, and Bugcrowd.
- Excellent problem-solving capabilities and meticulous attention to detail.
- Strong communication skills, with the ability to effectively communicate complex security issues to non-technical audiences.
- Experience in coordinating and cooperating with diverse teams.
- Essential ability to interpret code and comprehend back-end responses to API requests in languages such as Java, Ruby, Elixir, and JavaScript.
- Relevant certifications like Offensive Security Certified Professional (OSCP) or Certified Information Systems Security Professional (CISSP) would be beneficial.
Skills Required

Сrypto.com
Website
Сrypto.comCompany size
Not specified
Location
United States
Description
Not specified
Status