2

Bug Bounty No Experience Jobs (NOW HIRING)

Technical Program Manager, Bug Bounty

Seattle, WA · On-site

$146K - $190K/yr

Amazon's Bug Bounty team is looking for a Technical Program Manager (TPM) to help us secure the ... to build experience in a wide variety of areas including cloud, devices, retail, entertainment ...

Amazon's Bug Bounty team is looking for a Technical Program Manager (TPM) to help us secure the ... to build experience in a wide variety of areas including cloud, devices, retail, entertainment ...

... at a volume no manual triage process could match. * Push triage beyond pattern matching, into ... Have experience running or triaging a bug bounty / vulnerability disclosure program. * Have ...

Senior Product Security Engineer

OR · On-site +1

$114K - $156K/yr

Improve and develop security assurance activities - pentests, vulnerability assessments, bug bounty ... Experience supporting engineering and product implementation efforts by performing threat ...

NY · On-site

$208 - $312/hr

This includes hands‑on ownership of Vercel's open source bug bounty program for these projects ... Experience with structured security assessment methodology and coordinated/responsible disclosure ...

$120 - $180/hr

Through solutions like bug bounty, vulnerability disclosure, agentic pentesting, AI red teaming ... Offensive security is no longer optional - it is the standard for forward-thinking companies that ...

Say no when needed, with reasons and alternatives. * Bring AI to your work. Use it to accelerate ... Bug bounty triage experience (HackerOne, Bugcrowd) * Familiarity with Go, Python, or TypeScript

Product Security Engineer II

$60.25 - $80.25/hr

This could include professional experience, internships, security labs, CTFs, bug bounty work, open-source contributions, personal projects, automation scripts, internal tools, or coursework.

Product Security Engineer II

$60.25 - $80.25/hr

This could include professional experience, internships, security labs, CTFs, bug bounty work, open-source contributions, personal projects, automation scripts, internal tools, or coursework.

No H-1bs, OPT is fine W2 Role No C2C Additional Information: Overall, we are looking for someone ... Guide development teams to triage and remediate findings from SAST, DAST, SCA, and bug bounty ...

Say no when needed, with reasons and alternatives. * Bring AI to your work. Use it to accelerate ... Bug bounty triage experience (HackerOne, Bugcrowd) * Familiarity with Go, Python, or TypeScript

next page

Showing results 1-20

Bug Bounty No Experience information

What are the typical responsibilities for someone starting out in a bug bounty program with no prior experience?

As a newcomer to bug bounty programs, your primary responsibilities include identifying and responsibly reporting security vulnerabilities in web applications, mobile apps, or other software platforms. You'll spend time learning about common vulnerabilities, researching program rules, and using publicly available tools to test for issues. Collaboration often happens through online communities or forums where beginners share resources and tips. While initial payouts may be small, consistent participation helps build your reputation and skills, potentially leading to more complex findings and higher rewards.

How can I get started with bug bounty hunting if I have no experience?

If you have no experience, the best way to start bug bounty hunting is by learning the basics of web security, common vulnerabilities, and how bug bounty platforms work. Begin with online resources and courses to understand vulnerabilities like XSS, SQL injection, and CSRF. Practice your skills on legal platforms such as Hack The Box or PortSwigger Web Security Academy. Once you feel confident, sign up on reputable bug bounty platforms like HackerOne or Bugcrowd, read their program rules, and start looking for simple bugs. Always remember to act ethically and follow the scope and rules of each program.

What are the key skills and qualifications needed to thrive as a bug bounty hunter with no prior experience?

To thrive as a Bug Bounty Hunter without prior experience, foundational knowledge in web technologies, networking, and cybersecurity principles is essential, often gained through self-study or free online courses. Familiarity with tools such as Burp Suite, OWASP ZAP, and basic scripting languages like Python or JavaScript is highly beneficial. Curiosity, persistence, attention to detail, and effective communication are standout soft skills for this role. These skills and qualities are crucial for identifying vulnerabilities, responsibly reporting findings, and building a reputation within the bug bounty community.

What is the difference between Bug Bounty No Experience vs Penetration Tester?

AspectBug Bounty No ExperiencePenetration Tester
Required CredentialsNone or basic cybersecurity knowledgeCertifications like OSCP, CEH often preferred
Work EnvironmentRemote, freelance, or project-basedFull-time, corporate or consulting firms
Industry UsageCommon for beginners exploring cybersecurityProfessional security testing roles in organizations

Bug Bounty No Experience involves independent, often self-guided testing to find vulnerabilities, suitable for beginners. Penetration Testers are experienced professionals conducting comprehensive security assessments for organizations. While both roles focus on security testing, Bug Bounty No Experience is more accessible for newcomers, whereas Penetration Testing requires formal training and certifications.

How much do beginner bug bounty hunters make?

Beginner bug bounty hunters typically earn between a few hundred to a few thousand dollars per month, depending on the number of vulnerabilities found and the platforms used. Earnings can vary widely based on skill level, the complexity of bugs, and the time invested, with some hunters earning little initially and others making significant payouts as they gain experience and certifications.
More about Bug Bounty No Experience jobs

What cities are hiring for Bug Bounty No Experience jobs?

Cities with the most Bug Bounty No Experience job openings:

What are the most commonly searched types of Bug Bounty jobs?

The most popular types of Bug Bounty jobs are:

What states have the most Bug Bounty No Experience jobs?

States with the most job openings for Bug Bounty No Experience jobs include:

Infographic showing various Bug Bounty No Experience job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 76% Full Time, 19% Part Time, and 4% Contract. Highlights an 91% Physical, 2% Hybrid, and 7% Remote job distribution.

Technical Program Manager, Bug Bounty

Seattle, WA • On-site


Amazon
IT Services • 10K+ employees

7.4

Company rating: 7.4 out of 10

Based on 7,120 frontline employees who took The Breakroom Quiz

6th of 39 rated national retailers

Good employer

Recommended by students

Paid breaks


$146K - $190K/yr

Full-time

Re-posted 6 days ago


Job description

Amazon's Bug Bounty team is looking for a Technical Program Manager (TPM) to help us secure the services and applications that Amazon customers rely on every day. In this role, you'll drive complex, cross-functional programs that improve how we identify, triage, and resolve externally reported security vulnerabilities. You'll work across engineering, security, and business teams to improve processes, remove roadblocks, and ensure researchers have the access and support they need to help raise our security bar.
You'll partner with internal teams to close vulnerabilities quickly and effectively, and you'll help shape the future of how Amazon engages with the global security research community

This is a fast-paced, high-impact role that requires strong ownership, sound judgment, and the ability to dive deep into technical problems while keeping stakeholders aligned.
Key job responsibilities
- Lead technical programs that improve how Amazon responds to externally reported vulnerabilities
- Define and scale internal processes for vulnerability intake, triage, and resolution
- Build durable solutions that reduce repeat issues through automation, better tooling, and improved service team accountability
- Collaborate with partner teams to improve test account support and ensure researchers have the access they need to test securely and effectively
- Communicate clearly and regularly with senior leaders, engineering teams, and external researchers
- Own the long-term roadmap for specific areas of the Bug Bounty program and influence the broader team strategy
A day in the life
You will spend most days working with engineers, builder teams, and partner teams to improve how we handle bug bounty findings. You might be mapping out a plan to improve processes, coordinating across teams to roll out new tools, or identifying where we need better support for internal owners. Some days will focus on clearing blockers and aligning stakeholders

Others will focus on building the right systems to scale the program as Amazon grows.
About the team
The Bug Bounty team helps protect Amazon and its customers by working with external security researchers who report vulnerabilities in our public-facing services. We partner with security engineers and builder teams across the company to investigate findings, improve our response processes, and build systems that scale. Our mission is to raise the security bar across Amazon by learning from every bug

We value clear thinking, sound judgment, and strong ownership, and we work every day to make Amazon more secure for customers around the world.
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying.
Why Amazon Security?
At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences

Our organization is responsible for creating and maintaining a high bar for security across all of Amazon's products and services. We offer talented security professionals the chance to accelerate their careers with opportunities to build experience in a wide variety of areas including cloud, devices, retail, entertainment, healthcare, operations, and physical stores.
Inclusive Team Culture
In Amazon Security, it's in our nature to learn and be curious. Ongoing DEI events and learning experiences inspire us to continue learning and to embrace our uniqueness

Addressing the toughest security challenges requires that we seek out and celebrate a diversity of ideas, perspectives, and voices.
Training & Career Growth
We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why flexible work hours and arrangements are part of our culture

When we feel supported in the workplace and at home, there's nothing we can't achieve.


Amazon logo

About Amazon

Sourced by ZipRecruiter

Amazon.com, Inc., commonly known as Amazon, is an American multinational technology company. It was founded by Jeff Bezos in 1994 and initially started as an online marketplace for books. Since then, Amazon has expanded its operations and become one of the largest e-commerce companies in the world. Amazon's primary business is its online retail platform, where customers can purchase a vast array of products, including electronics, clothing, books, home goods, and much more. The company offers a convenient and user-friendly shopping experience, with features such as fast shipping, customer reviews, and personalized recommendations. In addition to its e-commerce platform, Amazon has diversified its business into various other areas. One of its notable ventures is Amazon Web Services (AWS), a comprehensive cloud computing platform that provides services such as storage, compute power, and database management to individuals and businesses. AWS has become a leader in the cloud computing industry, powering many websites and applications worldwide. Amazon has also developed its own consumer electronics, including the popular Amazon Kindle e-reader, Fire tablets, Fire TV streaming devices, and the Alexa-powered Echo smart speakers. The Alexa voice assistant, integrated into these devices, allows users to interact with their devices using voice commands, perform tasks, and access information. Furthermore, Amazon has expanded into media and entertainment. It operates Prime Video, a streaming service that offers a wide range of movies, TV shows, and original content. Amazon Music provides a platform for streaming and purchasing digital music, while Audible offers audiobooks and other audio content. The company's commitment to customer satisfaction and convenience is demonstrated by its membership program, Amazon Prime. Prime members receive various benefits, including free two-day shipping, access to streaming services, exclusive deals, and more.

Industry

It services, book publishers, retail, real estate, computer and electronic product manufacturing and software development

Company size

10,000+ Employees

Headquarters location

Seattle, WA, US


What Amazon employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom