Full-Time

Security Researcher

Updated on 1/31/2025

Vercel

Vercel

501-1,000 employees

Platform for building and deploying web applications

Consumer Software
Enterprise Software
AI & Machine Learning

Compensation Overview

$216k - $300kAnnually

+ Equity + Benefits

Senior, Expert

Remote in USA

Candidates must be based in the United States.

Category
Cybersecurity
IT & Security
Required Skills
Next.js

You match the following Vercel's candidate preferences

Employers are more likely to interview you if you match these preferences:

Degree
Experience
Requirements
  • Proven experience identifying, reporting, and mitigating security vulnerabilities in open-source projects.
  • Hands-on experience with Web Application Firewalls, ideally with rule customization and framework-specific tuning.
  • Ability to convey complex security concepts to both technical and non-technical audiences, including conference presentations and blog writing.
  • Experience working closely with engineering, marketing, and customer success teams to drive security initiatives.
  • Skilled in creating educational materials and supporting documentation for customers to optimize WAF configurations.
  • Familiarity with current security trends and emerging threats, with a proactive approach to continuous learning and application.
Responsibilities
  • Design WAF rule packs tailored to specific frameworks, such as Next.js, prioritizing rules that address the most relevant and framework-specific vulnerabilities.
  • Continuously refine these rules using real-time threat data, research findings, and customer feedback to maintain strong protection against emerging attack patterns.
  • Create clear documentation, guides, and best practices for Vercel's WAF to help customers understand and set up security rules that match their specific needs.
  • Create educational materials and host webinars or workshops that equip customers with practical knowledge on utilizing Vercel's WAF to its full potential.
  • Share research-based threat intelligence with customers to alert them about potential risks and provide specific recommendations for rule updates and configurations.
  • Work with customer success teams to identify and address high-risk customer environments, ensuring WAF configurations match each customer's unique security needs.
  • Work closely with Vercel’s product team to ensure that customer-facing security features align with industry standards and emerging threats, making Vercel’s WAF adaptable to various customer applications.
  • Share insights from vulnerability research and customer feedback to shape product roadmaps, focusing on features that improve WAF effectiveness and usability across different customer needs.
  • Build tools or dashboards that allow customers to self-assess and monitor the effectiveness of WAF configurations, offering insights into blocked threats, rule performance, and custom rule capabilities.
  • Explore opportunities for customer-driven customization of WAF rules, empowering customers to address unique vulnerabilities while maintaining a default layer of robust security.
  • Partner with customer success and support teams to address WAF-related inquiries, share guidance, and resolve complex security configurations.
  • Collect and synthesize customer feedback to continuously improve the WAF experience and address emerging needs in Vercel’s customer base.
Desired Qualifications
  • Built a Web Application Firewall Security product directly as an engineer
  • Achieved an Offensive Security certification and or Advanced SANS certification.

Vercel provides a platform for developers and businesses to build, deploy, and manage modern web applications. Its services include advanced AI features that optimize image and video workflows, such as smart cropping and object detection. Vercel offers full lifecycle management for media, including auto-tagging and access control. The company operates a managed global rendering layer, simplifying serverless architecture and ensuring content delivery without extra infrastructure. Vercel prioritizes security and uptime with features like automatic HTTPS and DDoS mitigation. Its subscription-based model caters to a range of clients, from individual developers to large enterprises, making it a significant player in the web development and cloud infrastructure market.

Company Stage

Series E

Total Funding

$547.6M

Headquarters

San Francisco, California

Founded

2015

Growth & Insights
Headcount

6 month growth

-1%

1 year growth

-1%

2 year growth

-2%
Simplify Jobs

Simplify's Take

What believers are saying

  • Vercel secured $250 million in Series E funding for growth and platform development.
  • The introduction of V0 enhances Vercel's offerings in AI-driven web development.
  • Recognition as a Visionary in Gartner's Magic Quadrant boosts Vercel's market position.

What critics are saying

  • Increased competition in the cloud application platform space threatens Vercel's market share.
  • Rapid AI evolution may outpace Vercel's current offerings, risking competitive edge loss.
  • Reliance on a subscription model could be risky during economic downturns.

What makes Vercel unique

  • Vercel offers a managed global rendering layer for modern web applications.
  • The company provides advanced AI-powered tools for image and video optimization.
  • Vercel's platform supports full lifecycle media management with auto-tagging and access control.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Stock Options

Company Equity

Professional Development Budget

Unlimited Paid Time Off

Remote Work Options

Home Office Stipend