openqareer

Bug Bounty Analyst

Bugcrowd Bounty · Удалённо · Remote

# Bug Bounty Analyst **Bugcrowd Bounty** · Remote · `Remote` 🕒 **Статус:** *Опубликовано: 4 дня назад* · *Источник: Indeed* --- ### About the Role Overview Join our dynamic cybersecurity team as a Bug Bounty Analyst and become a vital defender of our digital assets! In this role, you will leverage your expertise in vulnerability research, security assessment, and threat detection to identify and mitigate security weaknesses across our infrastructure. Your proactive approach will help us stay ahead of cyber threats, ensuring the integrity and confidentiality of our systems. This paid position offers an exciting opportunity to work with cutting-edge cybersecurity tools and methodologies within a fast-paced, innovative environment. Responsibilities Conduct comprehensive vulnerability assessments and security testing across diverse IT infrastructure components, including network architecture, cloud environments, and endpoints. Utilize cybersecurity tools such as Burp Suite, Nmap, Splunk, and SIEM platforms to analyze security events, detect anomalies, and investigate potential threats. Perform security risk assessments following frameworks like ISO 27001, NIST standards, and the Risk Management Framework (RMF) to identify vulnerabilities and recommend mitigation strategies. Engage in penetration testing activities to uncover weaknesses in network protocols (TCP/IP, IPsec), firewalls (Cisco ASA), IDS/IPS systems, and other security controls. Collaborate with development teams during SDLC (Software Development Life Cycle) to incorporate security best practices and system hardening techniques. Assist in incident response efforts by analyzing security alerts, participating in threat intelligence gathering, and supporting incident recovery procedures. Document findings thoroughly in detailed reports, including vulnerability research results and remediation recommendations, ensuring clarity for technical teams. Requirements Proven experience with computer networking concepts such as LAN/WAN architectures, routing protocols (OSPF, BGP), VPNs, DHCP, DNS, and network support functions. Strong knowledge of cybersecurity tools including SIEM solutions (Splunk or similar), IDS/IPS systems, EDR platforms, and vulnerability assessment tools like Nessus or open-source alternatives. Familiarity with cloud security engineering on platforms such as AWS or Google Cloud Platform; experience with cloud infrastructure security best practices is a plus. Hands-on experience with operating systems including Windows, Linux (Ubuntu, CentOS), macOS, and openSUSE; scripting skills in Python or Bash are advantageous. Understanding of information security standards such as ISO 27000 series, PCI DSS compliance requirements, FIPS standards for encryption, and FedRAMP guidelines. Knowledge of network security concepts like SSL/TLS encryption, IP networking protocols (TCP/IP), load balancing solutions, and system hardening techniques. Ability to perform vulnerability research using attack frameworks like Metasploit or custom scripts; experience with threat detection & response is preferred. Excellent analytical skills for security analysis and risk management; strong communication skills to document findings clearly. Join us to be at the forefront of cybersecurity innovation! Your expertise will help safeguard critical information assets while advancing your career in a vibrant tech-driven environment committed to excellence in information security management. Pay: $34.49 - $41.54 per hour Expected hours: 48.0 per week Work Location: Remote

Наблюдалась 2026-09-21, впервые 2026-09-17, источник — Indeed.

Открыть у работодателя