Have a background in QA automation, AppSec, API/security/pen testing, or bug bounty. * Have strong ... A track record in CTFs, red-team competitions, or responsible-disclosure / bounty programs. Why ...
Have a background in QA automation, AppSec, API/security/pen testing, or bug bounty. * Have strong ... A track record in CTFs, red-team competitions, or responsible-disclosure / bounty programs. Why ...
Strategic Projects Lead - AI Safety
San Francisco, CA · On-site
$130K - $150K/yr
... programs, and driving revenue. * Manage expert teams: Recruit and lead specialized contributors ... Track record in bug bounty, CTF, or model red teaming competitions. * Experience building automated ...
Strategic Projects Lead - AI Safety
San Francisco, CA · On-site
$130K - $150K/yr
... programs, and driving revenue. * Manage expert teams: Recruit and lead specialized contributors ... Track record in bug bounty, CTF, or model red teaming competitions. * Experience building automated ...
Incident Response Coordinator
Alpharetta, GA · On-site
Coordinate the remediation of findings from the organization's Bug Bounty Program working directly with whitehat researchers. * Works closely with Risk Management teams to document identified risks ...
Incident Response Coordinator
Alpharetta, GA · On-site
Coordinate the remediation of findings from the organization's Bug Bounty Program working directly with whitehat researchers. * Works closely with Risk Management teams to document identified risks ...
Product Security Engineer, Application Security (Remote)
$60.25 - $80.25/hr
Build integrated tools and automation to make life easier for you, your team, and our engineering partners * Assist in responding to our bug bounty program, hunt for similar issues, and improve the ...
Product Security Engineer, Application Security (Remote)
$60.25 - $80.25/hr
Build integrated tools and automation to make life easier for you, your team, and our engineering partners * Assist in responding to our bug bounty program, hunt for similar issues, and improve the ...
Incident Response Coordinator
Alpharetta, GA · On-site
Coordinate the remediation of findings from the organization's Bug Bounty Program working directly with whitehat researchers. * Works closely with Risk Management teams to document identified risks ...
Incident Response Coordinator
Alpharetta, GA · On-site
Coordinate the remediation of findings from the organization's Bug Bounty Program working directly with whitehat researchers. * Works closely with Risk Management teams to document identified risks ...
You'll bring depth in security fundamentals and program design as a member of a small, high ... Contribute to SDLC tooling, SAST/SCA workflows, and bug bounty triage as the team's work demands.
You'll bring depth in security fundamentals and program design as a member of a small, high ... Contribute to SDLC tooling, SAST/SCA workflows, and bug bounty triage as the team's work demands.
Privacy Engineer - Privacy Red Team
New York, NY · On-site
$122K - $181K/yr
... bug bounty programs, public research, blogging, presentations, etc.) • Experience with big data and relational databases (Hive, Presto, MySQL, etc.) • Experience with offensive testing of at ...
New
Privacy Engineer - Privacy Red Team
New York, NY · On-site
$122K - $181K/yr
... bug bounty programs, public research, blogging, presentations, etc.) • Experience with big data and relational databases (Hive, Presto, MySQL, etc.) • Experience with offensive testing of at ...
New
You'll bring depth in security fundamentals and program design as a member of a small, high ... Contribute to SDLC tooling, SAST/SCA workflows, and bug bounty triage as the team's work demands.
You'll bring depth in security fundamentals and program design as a member of a small, high ... Contribute to SDLC tooling, SAST/SCA workflows, and bug bounty triage as the team's work demands.
Contributions to the privacy or security community (participation in bug bounty programs, public research, blogging, presentations, etc.) * Experience with big data and relational databases (Hive ...
New
Contributions to the privacy or security community (participation in bug bounty programs, public research, blogging, presentations, etc.) * Experience with big data and relational databases (Hive ...
New
Product Manager
Washington, DC · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Product Manager
Washington, DC · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Product Manager
Augusta, GA · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Product Manager
Augusta, GA · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Product Manager
Augusta, GA · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Product Manager
Augusta, GA · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Product Manager
Washington, DC · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Product Manager
Washington, DC · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Compliance Operations Lead
New York, NY · On-site
$171K/yr
... test, or bug-bounty programs and translating findings into engineering action. * You write policy and you read code, and can sit with an auditor and a senior engineer in the same meeting and ...
Compliance Operations Lead
New York, NY · On-site
$171K/yr
... test, or bug-bounty programs and translating findings into engineering action. * You write policy and you read code, and can sit with an auditor and a senior engineer in the same meeting and ...
Software Developer
Augusta, GA · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Software Developer
Augusta, GA · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Designer
Augusta, GA · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Designer
Augusta, GA · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Designer
Washington, DC · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Designer
Washington, DC · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Designer
Augusta, GA · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Designer
Augusta, GA · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Designer
Washington, DC · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Designer
Washington, DC · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Software Developer
Washington, DC · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Software Developer
Washington, DC · On-site
Projects include reforming digital services that provide military families access to critical benefits, running bug bounty programs to identify vulnerabilities and better secure defense systems ...
Entry Level Bug Bounty Program information
See salary details
$16.35 - $22.01
6% of jobs
$22.01 - $27.67
14% of jobs
$31.30 is the 25th percentile. Wages below this are outliers.
$27.67 - $33.33
7% of jobs
$33.33 - $38.99
1% of jobs
$38.99 - $44.65
13% of jobs
The median wage is $47.88 / hr.
$44.65 - $50.31
15% of jobs
$50.31 - $55.97
3% of jobs
$55.97 - $61.63
9% of jobs
$65.30 is the 75th percentile. Wages above this are outliers.
$61.63 - $67.29
11% of jobs
$67.29 - $72.95
15% of jobs
$72.95 - $78.61
6% of jobs
$16
$49
$78
How much do entry level bug bounty program jobs pay per hour?
What is the difference between Entry Level Bug Bounty Program vs Entry Level Penetration Tester?
| Aspect | Entry Level Bug Bounty Program | Entry Level Penetration Tester |
|---|---|---|
| Credentials | Basic cybersecurity knowledge, certifications like CompTIA Security+ | Similar certifications, possibly more technical training |
| Work Environment | Remote, freelance, or platform-based | Often in-house or consulting firms, some remote options |
| Industry Usage | Widely used in tech and cybersecurity sectors | Common in security consulting and IT firms |
| Search & Comparison Intent | Focus on crowdsourced vulnerability discovery | Focus on simulated or real-world security testing |
While both roles involve cybersecurity skills, an Entry Level Bug Bounty Program typically involves participating in online platforms to find vulnerabilities remotely, often on a freelance basis. An Entry Level Penetration Tester conducts more structured security assessments, often within organizations or consulting firms. Both require foundational cybersecurity knowledge, but their work environments and approaches differ significantly.
How to get started with entry level bug bounty programs?
How to start a career in entry level bug bounty program?
What cities are hiring for Entry Level Bug Bounty Program jobs?
Cities with the most Entry Level Bug Bounty Program job openings:
What are the most commonly searched types of Bug Bounty Program jobs?
The most popular types of Bug Bounty Program jobs are:
What states have the most Entry Level Bug Bounty Program jobs?
States with the most job openings for Entry Level Bug Bounty Program jobs include:
What job categories do people searching Entry Level Bug Bounty Program jobs look for?
The top searched job categories for Entry Level Bug Bounty Program jobs are:

Full-time
PTO
Re-posted 26 days ago
Job description
About us
White Circle is an AI Safety company building the safety, reliability, and optimization layer for AI systems. At the core of our platform are policies - simple natural-language rules that define what an AI model should and shouldn't do. We automatically test, enforce, and continuously improve these policies at scale.
- We've raised $11M from top funds, founders, and senior leaders at OpenAI, Anthropic, HuggingFace, Mistral, DeepMind, Datadog, Sentry, and others
- We process over one hundred million API calls every month
- We fine-tune and train our own LLMs so they run faster and cheaper than any open or proprietary model
We're a small, highly focused team. If you want to work deeply on hard problems, see your work ship to production quickly, and influence how AI safety is actually built - you're the one we need.
You will:
- Red-team LLM-powered systems: chatbots, copilots, RAG pipelines, AI agents, tool-calling workflows, and API-based AI products.
- Test for jailbreaks, prompt injection, system-prompt and tool leakage, sensitive-data and context leakage, unsafe outputs, policy bypass, tool misuse, excessive agency, resource and token-cost abuse, and business-logic abuse.
- Write lightweight Python to automate attacks, run prompt sets, call model APIs, collect and score responses, and generate repeatable reports.
- Build and maintain an internal attack library: prompts, scenarios, test cases, regression tests, scoring rubrics, and reusable demo cases.
- Turn model failures into clear reports: what happened, why it matters, how to reproduce it, how severe it is, and how to fix it.
- Convert successful attacks into regression tests and product requirements.
- Track new red-team and safety techniques and fold the useful ones into our tests.
- Support GTM by producing strong, credible evidence for customer demos, security reviews, and sales conversations.
You'll fit right in if you:
- Genuinely love breaking things and reasoning adversarially.
- Have a background in QA automation, AppSec, API/security/pen testing, or bug bounty.
- Have strong Python scripting skills.
- Have experience testing APIs, web apps, backends, or SaaS products.
- Are hands-on with LLMs, prompts, system instructions, RAG, agents, and tool/function calling.
- Understand LLM-specific abuse vectors (prompt injection, jailbreaks, data leakage, tool misuse, excessive agency, token-cost exhaustion).
- Can find bypasses, abuse edge cases, chain failures, and reason about real-world impact.
- Can separate real customer risk from low-impact prompt tricks.
- Write clear, reproducible bug reports in clear English.
- Can move fast without perfect requirements.
- Hold a firm ethical line: you red-team to make systems safer, operate within scope and the law, and don't produce or traffic in genuinely harmful material.
A big plus:
- Experience with Burp Suite, Postman, Playwright, pytest.
- Experience with modern LLM red-teaming automated agents and pipelines.
- Familiarity with LangChain, LangGraph, LlamaIndex, RAG pipelines, AI agents, tool/function calling, and LLM-as-judge evaluation.
- Familiarity with OWASP LLM Top 10, OWASP Web Top 10, MITRE ATLAS, or other AI security taxonomies.
- Experience testing RAG systems, AI agents, tool-calling workflows, browser agents, or internal copilots.
- Experience writing customer-facing security reports.
- Experience with trust & safety, abuse prevention, fraud, moderation, or platform security.
- Experience building eval pipelines, regression suites, dashboards, or CI-friendly security tests.
- A track record in CTFs, red-team competitions, or responsible-disclosure / bounty programs.
Why White Circle
- Paid time off in line with your local regulations, no matter where you work from
- Meaningful equity package
- All the hardware, tools, and services you need
- Covered subscriptions for AI agents
- Team off-sites twice a year: we've recently been to the Alps and to Saint-Tropez
How we hire
- Intro call with HR (25 min)
- Take-home test task
- Technical interview (60 min)
- Final call with CEO (45 min)
Please submit your application in English