Full-Time

Product Security Analyst

Confirmed live in the last 24 hours

HackerOne

HackerOne

5,001-10,000 employees

Platform connecting ethical hackers with brands

Compensation Overview

₹2.5M - ₹2.8M/yr

Mid

No H1B Sponsorship

Pune, Maharashtra, India

Candidates must already be based in Pune, India and willing to work a hybrid model from an office/WeWork 4-5 days per week.

Category
Cybersecurity
IT & Security
Requirements
  • 3+ years of professional manual web app testing experience
  • Proven experience with vulnerability disclosure and bug bounty (experience managing a bug bounty program is a plus but not required)
  • Strong technical knowledge of OWASP top 10
  • Comfortable using security testing tools including Burpsuite
  • Excellent written and verbal communication skills
  • Experience using frameworks such as CVSS
  • Self-motivated and able to manage your time and energy output while maintaining a consistent and sustainable operational rhythm
  • English fluency - both written and verbal
  • Candidates must already based in Pune, India and willing to work a hybrid model from an office/WeWork 4-5 days per week.
Responsibilities
  • Evaluate assigned vulnerability reports submitted by hackers to determine the validity, risk and severity to HackerOne customers
  • Collaborate with hackers to address missing information from reports as well as educate the HackerOne community members when reports are invalid
  • Compose a technical summary for each valid report that includes clear and concise details regarding the impact, steps to reproduce and remediation advice
  • Ensure clear and efficient communication between hackers and customers
  • Proactively identify and solve issues, as well as accept and quickly respond to delegated work; as we are distributed, being able to win as a team to solve problems is critical to our success
Desired Qualifications
  • Experience managing a bug bounty program is a plus but not required

HackerOne provides a platform that connects global brands with ethical hackers to improve their cybersecurity. The platform allows companies to identify and monitor potential risks in their digital assets by utilizing the skills of ethical hackers who conduct penetration tests to find vulnerabilities. Clients can import their asset data and use the platform to rank the risk of exploitable assets, ensuring a proactive approach to application security through continuous testing and validation of security measures. Unlike many competitors, HackerOne offers 24/7 security coverage and the ability to scale services based on client needs. The goal of HackerOne is to promote a proactive security culture by encouraging companies to adopt bug bounty programs as a key part of their cybersecurity strategy.

Company Size

5,001-10,000

Company Stage

Series E

Total Funding

$159.4M

Headquarters

San Francisco, California

Founded

2012

Simplify Jobs

Simplify's Take

What believers are saying

  • Increased demand for cybersecurity in hospitality offers expansion opportunities for HackerOne.
  • Partnership with Crypto.com highlights growth potential in the cryptocurrency sector.
  • Free tier launch can attract startups, expanding HackerOne's customer base.

What critics are saying

  • Increased competition in hospitality cybersecurity could challenge HackerOne's market share.
  • Free tier may cannibalize paid services, impacting revenue.
  • Geopolitical tensions may affect partnerships with regional distributors like Evanssion.

What makes HackerOne unique

  • HackerOne connects businesses with ethical hackers for proactive security measures.
  • The platform offers a unique bug bounty solution to reduce security incident risks.
  • HackerOne provides 24/7 security coverage and scalable, cost-effective solutions.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Dental Insurance

Vision Insurance

Life Insurance

Disability Insurance

Unlimited Paid Time Off

Paid Vacation

Paid Sick Leave

Paid Holidays

Parental Leave

Employee Assistance Program

Digital First Stipend

Equity Stock Options

Retirement Plans

Leaves of Absence

Growth & Insights and Company News

Headcount

6 month growth

0%

1 year growth

0%

2 year growth

2%
PhocusWire
Feb 3rd, 2025
Cybersecurity Wake-Up Call: New Risks And Vulnerabilities In Hospitality

A new year often brings a surge in bookings that engage the hospitality industry's interconnected services, including hotel reservations, flights and car rentals. But while we settle into the start of 2025, cybercriminals are just heating up. While integrated services create a better customer experience, it also opens up the threat landscape, offering cyberattackers more opportunities to exploit weaknesses across the industry. For travelers, this means being more aware of where their personal information is being stored, while travel and hospitality companies must enhance security measures to protect their consumer data. With cybercriminals becoming more creative in exploiting software across entire industries, the stakes for these industries are higher than ever.Growing Hospitality and Travel ThreatsAs travel demand rises, so do cyber threats, particularly for businesses in the travel and tourism industry. The hospitality industry has grappled with numerous high-profile data breaches in recent years

Source Security
Dec 12th, 2024
HackerOne boosts security with Hai updates

HackerOne, the cybersecurity company dedicated to eliminating vulnerabilities through continuous testing, announced updates to its intelligent copilot Hai.

Source Security
Dec 3rd, 2024
Crypto.com partners with HackerOne for $2M bounty program

Crypto.com partners with HackerOne for $2M bounty program.

HackerOne
Nov 19th, 2024
150 Organizations Launch Programs on the HackerOne Platform

HackerOne announced partnerships with Evanssion in the Middle East and PrivTech in Japan.

VentureBeat
Nov 17th, 2024
3 Leadership Lessons We Can Learn From Ethical Hackers

Join our daily and weekly newsletters for the latest updates and exclusive content on industry-leading AI coverage. Learn More. When you hear the word “hacker,” what comes to mind? The term originally described computer enthusiasts exploring technology’s boundaries in the 1950s and 60s. Only in the 1980s did new laws and sensationalized representations in media and culture make it synonymous with cybercrime. But that was nearly half a century ago.Enlightened governments and enterprises have now separated the act from the stigma, and benefit from the technical expertise and fresh perspective of ethical hackers. They are right to leverage them