1

Hourly Bug Bounty Program Jobs (NOW HIRING)

... Bug Bounty Program • Implement security controls across Merge, from infrastructure to CI • Implement and run manual and automated security practices to mitigate vulnerabilities • Assist with ...

... our bug bounty program • Partner with engineering teams to design and deploy solutions which are inherently secure • Champion the use of tooling (linters, static analysis, posture assessment ...

Experience in Red Teaming and bug bounty programs preferred Ideal Candidate: * 5-8 years of security testing experience * Proven ability to mentor teams and implement enterprise security solutions

Senior Cybersecurity Engineer

Houston, TX · On-site

$109K - $149K/yr

... the bug bounty and responsible disclosure program, including vulnerability triage and researcher communications. • Evaluate AI-powered tools and agentic AI platforms from a security perspective ...

... bug bounty program • Triage and recommend solutions for security bugs from tools, third party assessments and bug bounties • Collaborate with the CISO and security team to grow the broader ...

New

Senior Security Engineer - Automation

OR · Remote

$117K - $160K/yr

We actively manage our Bug Bounty program, ensuring swift response and remediation, and leverage cutting-edge tools like Cloudflare's WAF to build robust defenses. We offer an extensive number of ...

Senior Application Security Engineer

Meridian, ID · Remote

$111K - $152K/yr

Investigate, triage, and respond to Bug Bounty program submissions, validating findings and working with engineering teams to drive timely remediation. * Own and continuously improve application ...

Senior Security Engineer - Automation

$117K - $160K/yr

We actively manage our Bug Bounty program, ensuring swift response and remediation, and leverage cutting-edge tools like Cloudflare's WAF to build robust defenses. We offer an extensive number of ...

Senior Security Engineer - Automation

New York, NY · On-site

$125K - $171K/yr

We actively manage our Bug Bounty program, ensuring swift response and remediation, and leverage cutting-edge tools like Cloudflare's WAF to build robust defenses. We offer an extensive number of ...

SOC Engineer

Foster City, CA · On-site

$180K - $250K/yr

Experience working with bug bounty programs or coordinated vulnerability disclosure workflows. * Experience in fast-paced, cloud-native, or AI/ML-driven environments. What We Value * Curiosity ...

Review and triage submissions from the Bug Bounty program; escalate critical findings to appropriate teams and help drive remediation * Contribute to threat modeling activities, providing expert ...

... our bug bounty program end to end: triage, response, remediation, and researcher communication • Partner with Engineering to embed secure design patterns and security review into how we ship ...

... our bug bounty program end to end: triage, response, remediation, and researcher communication • Partner with Engineering to embed secure design patterns and security review into how we ship ...

CNO Developer

Chantilly, VA · On-site

$130K - $178K/yr

... events, bug bounty programs, and speaking at the security conferences • Rapid Prototype Software Development Company : Accenture Federal Services is a leading US federal services company and ...

next page

Showing results 1-20

Hourly Bug Bounty Program information

See salary details

$33.5K

$100.4K

$155.5K

How much do hourly bug bounty program jobs pay per year?

As of Jun 21, 2026, the average yearly pay for hourly bug bounty program in the United States is $100,365.00, according to ZipRecruiter salary data. Most workers in this role earn between $71,500.00 and $132,000.00 per year, depending on experience, location, and employer.

What are some common challenges faced by participants in an hourly bug bounty program, and how can they overcome them?

Participants in an hourly bug bounty program often face challenges such as quickly identifying valid vulnerabilities, managing time efficiently, and competing with other security researchers for rewards. Staying organized and maintaining up-to-date knowledge of common vulnerabilities and testing techniques are essential. Collaborating with the program's security team for clarification and feedback can also help improve your effectiveness and increase your chances of success.

What is an Hourly Bug Bounty Program?

An Hourly Bug Bounty Program is a cybersecurity initiative where organizations pay security researchers or ethical hackers by the hour to identify and report vulnerabilities in their systems. Unlike traditional bug bounty programs that reward based on the severity of discovered bugs, this model compensates participants for their time and effort, even if they do not find any vulnerabilities. This structure can attract a broader range of skilled testers and provide continuous security assessment. It also allows organizations to receive more comprehensive feedback on their security posture.

What are the key skills and qualifications needed to thrive as an Hourly Bug Bounty Program participant, and why are they important?

To excel in an Hourly Bug Bounty Program, you need deep knowledge of cybersecurity principles, vulnerability assessment, and web application security, often demonstrated by experience or certifications like OSCP or CEH. Familiarity with tools such as Burp Suite, Metasploit, and various bug tracking or reporting platforms is typically required. Strong analytical thinking, attention to detail, and effective communication skills help you identify, document, and report vulnerabilities clearly. These competencies are crucial for protecting client systems, ensuring precise reporting, and maximizing your success and reputation within the bug bounty community.
More about Hourly Bug Bounty Program jobs
What cities are hiring for Hourly Bug Bounty Program jobs? Cities with the most Hourly Bug Bounty Program job openings:
What are the most commonly searched types of Bug Bounty Program jobs? The most popular types of Bug Bounty Program jobs are:
What states have the most Hourly Bug Bounty Program jobs? States with the most job openings for Hourly Bug Bounty Program jobs include:
What job categories do people searching Hourly Bug Bounty Program jobs look for? The top searched job categories for Hourly Bug Bounty Program jobs are:
Head of Security

Head of Security

Merge

San Francisco, CA • On-site

Full-time

Posted 14 days ago


Job description

Job Summary:
Merge is the leading provider of agentic tools and customer-facing integrations for frontier LLMs, Fortune 500 organizations, and B2B SaaS companies. As the Director of Security at Merge, you will manage security programs, including infrastructure, compliance, and security automation, while ensuring that security is treated as a core practice by all employees.
Responsibilities:
• Create and drive the security roadmap
• Manage our compliance automation programs (SOC 2, ISO 27001, HIPAA, etc.). We’ve already achieved these using Drata, and while you have a team to support you, you will take the lead.
• Ensure all engineers and employees of Merge treat security as a core part of our practices
• Manage our Bug Bounty Program
• Implement security controls across Merge, from infrastructure to CI
• Implement and run manual and automated security practices to mitigate vulnerabilities
• Assist with security reviews, threat modeling, disaster recovery practice, and code reviews
Qualifications:
Required:
• 7+ years of security engineering experience
• Ownership or leadership within areas of security at previous organizations, infosec being a plus
• An overall excitement around building a more secure engineering function and organization
• Ability to manage security programs
• Experience with and a desire to code in at least one major programming language
• A thorough understanding of networking and infrastructure, including load balancing, VPNs, Zero Trust, HTTPS, DNS, etc.
• Experience with multi-tenant cloud environments
Company:
Merge is one API to add hundreds of integrations to your product Founded in 2020, the company is headquartered in San Francisco, USA, with a team of 51-200 employees. The company is currently Growth Stage.