Bug Bounty Security Researcher
New
J
JobgetherCybersecurity
Based in United StatesContractMiddle
Salary not disclosed
Apply NowOpens the employer's application page
Job Details
- Experience
- At least 1 year of professional or demonstrable experience
- Required Skills
- PythonHTMLJavascriptC++
Requirements
- At least 1 year of professional or demonstrable experience in security research, penetration testing, or vulnerability assessment.
- Strong understanding of computer systems, networks, web applications, and software security.
- Practical knowledge of offensive security methodologies and vulnerability discovery techniques.
- Experience with programming or scripting languages such as Python, C++, JavaScript, and HTML.
- Familiarity with security tools including Burp Suite, OWASP ZAP, Nmap, and Kali Linux.
- Experience participating in bug bounty programs and applying responsible disclosure practices.
- Strong analytical, investigative, and problem-solving abilities.
- Excellent technical communication and documentation skills.
- Strong sense of responsibility and commitment to ethical security research.
Responsibilities
- Conduct thorough security research across target applications, systems, and networks to identify vulnerabilities and potential attack paths.
- Develop and execute customized attack vectors using techniques such as fuzzing, SQL injection, Cross-Site Scripting (XSS), Server-Side Request Forgery (SSRF), and Remote Code Execution.
- Safely validate and exploit discovered vulnerabilities while following responsible testing and disclosure practices.
- Analyze application and infrastructure behavior to identify weaknesses that may not be apparent through standard automated testing.
- Produce clear and comprehensive vulnerability reports containing technical descriptions, proof-of-concept code or evidence, severity information, and reproducible steps.
- Participate in ongoing bug bounty programs and private security research engagements.
- Share security findings and insights that can help improve products, services, and overall vulnerability management practices.
- Continuously research new attack techniques, tools, vulnerabilities, and security trends to improve testing effectiveness.
View Full Description & ApplyYou'll be redirected to the employer's site