Application Security Engineer - Bug bounty
Status
Hong Kong
Full time
Hybrid
Compensation is not specified
Role
Security Engineer
Description
Responsibilities
- Manage and oversee the company's bug bounty program on various cybersecurity platforms.
- Evaluate and authenticate bug reports submitted by external researchers.
- Prioritize and classify bugs according to their severity and potential impact.
- Collaborate with the engineering and security teams to comprehend, monitor, and resolve vulnerabilities.
- Facilitate communication among external researchers, security teams, and developers for effective security issue resolution.
- Offer clear and constructive feedback to external researchers.
- Develop and maintain strong relationships with the bug bounty community.
- Stay informed about the latest cybersecurity trends, vulnerabilities, and threats.
- Generate and deliver reports on the bug bounty program's performance.
Requirements
- Minimum of 2 years of direct experience in the field of Application Security.
- Previous experience in a similar role involving bug bounty program management and vulnerability report handling is highly preferred.
- Solid knowledge of web and mobile application security.
- Profound understanding of application security frameworks like OWASP Top 10 and a well-defined grasp of business and financial logic security vulnerabilities.
- Proficient in utilizing bug bounty platforms such as HackerOne, HackenProof, Bugcrowd, etc.
- Exceptional problem-solving abilities with keen attention to details.
- Strong communication skills, with the capacity to explain intricate security topics to non-technical stakeholders.
- Experience in coordinating and cooperating with diverse teams.
- Essential capability to interpret code and comprehend backend responses to API requests in languages like Java, Ruby, Elixir, and JavaScript.
- Relevant certifications like Offensive Security Certified Professional (OSCP) or Certified Information Systems Security Professional (CISSP) are a bonus.
Skills Required

Сrypto.com
Website
Сrypto.comCompany size
Not specified
Location
United States
Description
Not specified
Status