Senior Security Engineer, Bug Bounty at Jobgether
—
Jul 20, 2026
—
Jul 22, 2026
What this job asks for AI summary
This role centers on owning and scaling a large bug bounty program for a global technology platform — managing researcher relationships, vulnerability triage and validation, and remediation partnerships with engineering teams. The work also involves code reviews in JavaScript and Python, building internal security tooling and automation, and collaborating with incident response. It suits an experienced security engineer with a hands-on background in vulnerability management and application security.
Senior level · 3+ years · Remote · Full-time
“or” means any one of them counts — you don't need all of them.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Roughly 11,700 people nationally plausibly meet what this posting asks for (information security analysts). range 4,900–17,500
Applicant volume Heavy — This req sits in a large pool with little in its requirements to thin it, and auto-apply tools fire at everything in the occupation. Applying early and leading with the rare skills below is what gets read.
Most people in this occupation already list these. Still required — just not what gets you shortlisted.
What the occupation pays Median $132,021 (middle half $99,961–$167,095).
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.
Why we read it this way (6)
The posting is listed via Jobgether on behalf of an unnamed partner company; the actual employer and any specific compensation figures are not disclosed.
The role is fully remote within the United States, but no specific metro or state is specified.
Cloud platform familiarity (AWS, GCP, Azure) is framed as 'familiarity with … or similar technologies' under the Requirements section — it reads as a soft gate; treated as preferred accordingly.
Scripting/tooling languages (Python, Go, Rust, JavaScript) appear in two contexts: JavaScript and Python are called out explicitly for code reviews in the Requirements block (hard gate), while Go and Rust appear only in the 'is a plus' clause — Go and Rust are listed as alternatives to Python to reflect that any of these languages satisfies the scripting/automation need, with the 'plus' framing noted.
No compensation figures are provided beyond a general mention of a 'competitive compensation package with performance-based bonus opportunities.'
Ignored 1 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): bug bounty program management.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.