about 6 hours ago
Responsibilities
- Define, improve, formalize, and implement Okta’s Product Security Incident Response Program.
- Manage the day-to-day operations of the bug bounty program, including researcher engagement and vulnerability triage.
- Oversee the lifecycle from discovery to resolution, ensuring timely communication with stakeholders.
- Lead the security disclosure program from triaging to disclosure.
- Report on the health of the program and its activities.
- Collaborate with internal teams to enhance workflows and communication regarding vulnerabilities.
- Mentor junior engineers on incident response and vulnerability remediation.
- Partner with leadership to drive proactive threat detection and vulnerability management.
Requirements
- 6+ years of experience in Information Security with a focus on Product Security.
- Experience in conducting comprehensive security code reviews.
- Knowledge of Application Security vulnerabilities and Product Security concepts.
- Experience in risk management and incident response for product-related issues.
- Familiarity with incident and log management tools.
- Excellent communication and collaboration skills, especially in technical writing.
Benefits
- Comprehensive healthcare coverage and financial benefits.
- Paid time off and parental leave.
- Equity and bonus opportunities.
- Immersive in-person onboarding experience.