Application Security Engineer - Bug bounty
Status
Jakarta, Indonesia
Full time
Hybrid
Compensation is not specified
Role
Security Engineer
Description
Responsibilities
- Manage and supervise the company's bug bounty program on various platforms such as HackerOne, HackenProof, and Bugcrowd.
- Evaluate and verify bug reports submitted by external researchers.
- Sort and prioritize bugs according to their severity and potential impact.
- Work closely with the engineering and security teams to comprehend, monitor, and resolve vulnerabilities.
- Facilitate communication between external researchers, security teams, and developers to ensure efficient resolution of security issues.
- Offer clear and constructive feedback to external researchers.
- Maintain a positive relationship with the bug bounty community.
- Stay updated on the latest cybersecurity trends, vulnerabilities, and threats.
- Prepare and deliver reports on bug bounty program performance.
Requirements
- At least 2 years of practical experience in the Application Security sector.
- Previous experience in a similar role managing bug bounty programs and addressing vulnerability reports is advantageous.
- Solid understanding of web and mobile application security.
- Profound knowledge of application security frameworks like OWASP Top 10 and a strong grasp of security issues linked to business and financial logic flaws.
- Proficient in utilizing bug bounty platforms like HackerOne, HackenProof, Bugcrowd, etc.
- Excellent problem-solving abilities and keen attention to detail.
- Strong communication skills, including the capacity to simplify complex security issues for non-technical stakeholders.
- Experience in coordinating and collaborating with diverse teams.
- Essential ability to read code and comprehend how the back-end reacts to API requests in programming languages such as Java, Ruby, Elixir, and JavaScript.
- Relevant certifications like Offensive Security Certified Professional (OSCP) or Certified Information Systems Security Professional (CISSP) are a bonus.
Skills Required

Сrypto.com
Website
Сrypto.comCompany size
Not specified
Location
United States
Description
Not specified
Status