SOC 2, ISO 27001, HIPAA, bug bounty programs • Jump into pre- and post-sales conversations as the security stakeholder • Help us move fast while keeping the right guardrails in place • Take ...
SOC 2, ISO 27001, HIPAA, bug bounty programs • Jump into pre- and post-sales conversations as the security stakeholder • Help us move fast while keeping the right guardrails in place • Take ...
SOC 2, ISO 27001, HIPAA, bug bounty programs • Jump into pre- and post-sales conversations as the security stakeholder • Help us move fast while keeping the right guardrails in place • Take ...
SOC 2, ISO 27001, HIPAA, bug bounty programs • Jump into pre- and post-sales conversations as the security stakeholder • Help us move fast while keeping the right guardrails in place • Take ...
SOC 2, ISO 27001, HIPAA, bug bounty programs * Jump into pre- and post-sales conversations as the security stakeholder * Help us move fast while keeping the right guardrails in place * Take projects ...
SOC 2, ISO 27001, HIPAA, bug bounty programs * Jump into pre- and post-sales conversations as the security stakeholder * Help us move fast while keeping the right guardrails in place * Take projects ...
Security Engineer
$115K - $130K/yr
Mature Ibotta's bug bounty program to scale with AI generated submissions and attack surface. * Analyze Ibotta's application architecture to identify weaknesses and develop opportunities for ...
Security Engineer
$115K - $130K/yr
Mature Ibotta's bug bounty program to scale with AI generated submissions and attack surface. * Analyze Ibotta's application architecture to identify weaknesses and develop opportunities for ...
Security Engineer
Denver, CO · On-site
$115K - $130K/yr
Mature Ibotta's bug bounty program to scale with AI generated submissions and attack surface. * Analyze Ibotta's application architecture to identify weaknesses and develop opportunities for ...
Security Engineer
Denver, CO · On-site
$115K - $130K/yr
Mature Ibotta's bug bounty program to scale with AI generated submissions and attack surface. * Analyze Ibotta's application architecture to identify weaknesses and develop opportunities for ...
$60.50 - $80.75/hr
Own the bug bounty and responsible disclosure program, turning external researcher findings into systemic improvements. * Embed security into the full software development lifecycle through scalable ...
$60.50 - $80.75/hr
Own the bug bounty and responsible disclosure program, turning external researcher findings into systemic improvements. * Embed security into the full software development lifecycle through scalable ...
Bug Bounty Program information
What are some common challenges faced by professionals managing a Bug Bounty Program?
What are the key skills and qualifications needed to thrive as a Bug Bounty Program participant, and why are they important?
What is a Bug Bounty Program?
What is the difference between Bug Bounty Program vs Penetration Tester?
| Aspect | Bug Bounty Program | Penetration Tester |
|---|---|---|
| Credentials | Knowledge of security vulnerabilities, bug reporting skills | Certifications like OSCP, CEH, CISSP often preferred |
| Work Environment | Remote, project-based, crowdsourced | Consulting firms, in-house teams, on-site or remote |
| Industry Usage | Tech companies, startups, open security initiatives | Security firms, corporate security teams, government agencies |
| Search/Comparison Intent | Understanding crowdsourced bug finding vs professional testing | Comparing freelance or company-based security assessments |
The main difference is that Bug Bounty Programs are crowdsourced initiatives where individuals report vulnerabilities remotely, often without formal certifications. Penetration Testers are professionals with certifications who perform targeted security assessments, usually in a consulting or in-house setting. Both roles focus on identifying security flaws but differ in structure, credentials, and work environment.
Full-time
Posted 5 days ago
Job description
Pylon is building the future of B2B Post Sales with an all-in-one support platform powered by conversational data. They are seeking a Software Engineer with a focus on security features to lead security review processes and engage in customer conversations.
Responsibilities:
• Build security features into the product: audit logging, RBAC, SCIM, SAML, and more
• Lead security review processes: SOC 2, ISO 27001, HIPAA, bug bounty programs
• Jump into pre- and post-sales conversations as the security stakeholder
• Help us move fast while keeping the right guardrails in place
• Take projects from customer request → design → ship
Qualifications:
Required:
• You’ve built or shipped security features before
• You’ve helped run security/compliance programs at a startup or fast-moving company
• You’re comfortable talking to customers and explaining technical decisions
• You thrive when you have autonomy, own as many of the details as possible, and project manage your own work
• You're in SF or you're willing to relocate, you love working in-person, and you're serious about joining us to build a culture we'll all love
• We work with React, Golang, GraphQL, and AWS
Company:
Pylon is building the first customer support platform built for B2B companies. Founded in 2022, the company is headquartered in San Francisco, USA, with a team of 51-200 employees. The company is currently Growth Stage.