Full-Time

Senior IT Security & Systems Engineer

Posted on 4/21/2025

HackerOne

HackerOne

5,001-10,000 employees

Platform connecting ethical hackers with brands

Compensation Overview

$122k - $170k/yr

+ Equity

Senior, Expert

Seattle, WA, USA + 3 more

More locations: Washington, DC, USA | San Francisco, CA, USA | Austin, TX, USA

Candidates must be located in Washington DC, Austin, San Francisco, or Seattle and the surrounding metropolitan areas to facilitate occasional in-person interactions as needed.

Category
Cybersecurity
IT & Security
Required Skills
PowerShell
Bash
Python
AWS
Terraform
Requirements
  • 8+ years of experience in IT security, system administration, or security engineering within a corporate IT environment.
  • Experience administering IT security and access controls for SaaS applications (Google Workspace, Okta, Slack, AWS, Lumos, Monday.com, etc.).
  • Familiarity with security automation and scripting (Python, Bash, PowerShell, Workato) to improve IT security processes.
  • Experience with MDM solutions (Kandji or similar) for securing and managing Apple devices and endpoints.
Responsibilities
  • Develop, implement, and administer security controls for IT-managed infrastructure, SaaS applications, and endpoint security, ensuring best practices.
  • Work closely with security and compliance teams to align IT tools, applications, and processes to ensure we maintain compliance and regulatory requirements (SOC 2, ISO 27001, NIST, etc.).
  • Manage and respond to IT security incidents, including investigation, remediation, and post-mortem analysis, while continuously improving response processes.
  • Automate security processes, monitoring, and enforcement through scripting (Python, Bash, PowerShell) and infrastructure as code (IaC) solutions like Terraform or Workato.
  • Enhance security and compliance across IT systems, including IAM, endpoint security (MDM solutions like Kandji or JAMF), and SaaS security for applications like Google Workspace, Okta, and AWS.
  • Conduct security assessments, risk analysis, and audits to identify vulnerabilities, improve security posture, and ensure compliance.
  • Partner with vendors and internal teams to evaluate and integrate security tools and enterprise security solutions for corporate IT.
  • Support operational security responsibilities, including security reviews, consulting, and on-call support, while improving automation, playbooks, and response processes.
Desired Qualifications
  • Hands-on experience securing IT systems, SaaS applications, and cloud environments (AWS, GCP, or Azure), including IAM and endpoint security.
  • Experience developing and automating security controls using scripting (Python, Bash, PowerShell) and infrastructure as code (IaC) solutions like Terraform or Workato.
  • Proficiency with security tools such as EDR, SIEM, vulnerability management, and identity providers (Okta, Active Directory, etc.).
  • Understanding of incident response processes and IT security monitoring, including participation in an on-call rotation for critical security events.

HackerOne provides a platform that connects global brands with ethical hackers to improve their cybersecurity. The platform allows companies to identify and monitor risks in their digital assets by utilizing the skills of ethical hackers who conduct penetration tests to find vulnerabilities. Clients can import their asset data and use the platform to rank the risk of exploitable assets, ensuring a proactive approach to application security. Unlike many competitors, HackerOne offers continuous asset testing and 24/7 security coverage, allowing clients to manage costs and scale their security efforts as needed. The goal of HackerOne is to promote the importance of a bug bounty program as a key component of a comprehensive cybersecurity strategy.

Company Size

5,001-10,000

Company Stage

Series E

Total Funding

$159.4M

Headquarters

San Francisco, California

Founded

2012

Simplify Jobs

Simplify's Take

What believers are saying

  • Increased demand for cybersecurity in hospitality offers expansion opportunities for HackerOne.
  • Partnership with Crypto.com highlights growth potential in the cryptocurrency sector.
  • Free tier launch can attract startups, expanding HackerOne's customer base.

What critics are saying

  • Increased competition in hospitality cybersecurity could challenge HackerOne's market share.
  • Free tier may cannibalize paid services, impacting revenue.
  • Geopolitical tensions may affect partnerships with regional distributors like Evanssion.

What makes HackerOne unique

  • HackerOne connects businesses with ethical hackers for proactive security measures.
  • The platform offers a unique bug bounty solution to reduce security incident risks.
  • HackerOne provides 24/7 security coverage and scalable, cost-effective solutions.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Dental Insurance

Vision Insurance

Life Insurance

Disability Insurance

Unlimited Paid Time Off

Paid Vacation

Paid Sick Leave

Paid Holidays

Parental Leave

Employee Assistance Program

Digital First Stipend

Equity Stock Options

Retirement Plans

Leaves of Absence

Growth & Insights and Company News

Headcount

6 month growth

0%

1 year growth

0%

2 year growth

2%
PhocusWire
Feb 3rd, 2025
Cybersecurity Wake-Up Call: New Risks And Vulnerabilities In Hospitality

A new year often brings a surge in bookings that engage the hospitality industry's interconnected services, including hotel reservations, flights and car rentals. But while we settle into the start of 2025, cybercriminals are just heating up. While integrated services create a better customer experience, it also opens up the threat landscape, offering cyberattackers more opportunities to exploit weaknesses across the industry. For travelers, this means being more aware of where their personal information is being stored, while travel and hospitality companies must enhance security measures to protect their consumer data. With cybercriminals becoming more creative in exploiting software across entire industries, the stakes for these industries are higher than ever.Growing Hospitality and Travel ThreatsAs travel demand rises, so do cyber threats, particularly for businesses in the travel and tourism industry. The hospitality industry has grappled with numerous high-profile data breaches in recent years

Source Security
Dec 12th, 2024
HackerOne boosts security with Hai updates

HackerOne, the cybersecurity company dedicated to eliminating vulnerabilities through continuous testing, announced updates to its intelligent copilot Hai.

Source Security
Dec 3rd, 2024
Crypto.com partners with HackerOne for $2M bounty program

Crypto.com partners with HackerOne for $2M bounty program.

HackerOne
Nov 19th, 2024
150 Organizations Launch Programs on the HackerOne Platform

HackerOne announced partnerships with Evanssion in the Middle East and PrivTech in Japan.

VentureBeat
Nov 17th, 2024
3 Leadership Lessons We Can Learn From Ethical Hackers

Join our daily and weekly newsletters for the latest updates and exclusive content on industry-leading AI coverage. Learn More. When you hear the word “hacker,” what comes to mind? The term originally described computer enthusiasts exploring technology’s boundaries in the 1950s and 60s. Only in the 1980s did new laws and sensationalized representations in media and culture make it synonymous with cybercrime. But that was nearly half a century ago.Enlightened governments and enterprises have now separated the act from the stigma, and benefit from the technical expertise and fresh perspective of ethical hackers. They are right to leverage them

INACTIVE