about 12 hours ago
Remote, United StatesSenior / Mid Level
H1B Sponsor
Base Salary
$116k - $183k/yr
Responsibilities
- Own and scale Mozilla’s web bug bounty program, including strategy and KPIs.
- Act as the primary interface with external researchers and platforms like HackerOne.
- Lead triage and technical validation of incoming security reports.
- Drive end-to-end vulnerability remediation with engineering teams.
- Identify root causes and influence improvements in secure development practices.
- Collaborate with the Security Incident Response Team on active incidents.
- Perform targeted code reviews during investigations and high-risk changes.
- Develop or leverage tooling to improve triage efficiency and program insights.
Requirements
- 3+ years of experience in a security engineering role.
- Experience operating bug bounty programs and bug hunting.
- Practical experience with modern cloud technologies like AWS and GCP.
- Ability to analyze code and systems to prevent vulnerabilities.
- Real-world experience in software development or engineering operations.
- Strong communication and collaboration skills.
- Ability to develop tools in various programming languages is a plus.
Benefits
- Generous performance-based bonus plans.
- Rich medical, dental, and vision coverage.
- Generous retirement contributions with immediate vesting.
- Quarterly wellness days for all employees.
- Country-specific holidays plus a day off for your birthday.
- One-time home office stipend.
- Annual professional development budget.
- Quarterly well-being stipend.
- Considerable paid parental leave.
- Employee referral bonus program.