1

Internship Bug Bounty Program Jobs in Oregon (NOW HIRING)

Contribute to our vulnerability management program, including triaging bug bounty and vulnerability disclosure reports and driving remediation efforts. * Security Automation : Develop and implement ...

Coordinate with third-party security vendors for external assessments and bug bounty program management where applicable. Security Engineering * Own remediation follow-through: translate pen test ...

Coordinate with third-party security vendors for external assessments and bug bounty program management where applicable. Security Engineering * Own remediation follow-through: translate pen test ...

Principal Application Security Engineer

OR ยท Remote

$58.75 - $78.50/hr

Drive our security assessment, penetration testing and bug bounty programs * Participate in security incident response In order to be successful in this role you must have: * Demonstrated technical ...

Staff Security Engineer, Application Security

OR ยท On-site +1

$210K - $260K/yr

Experience with bug bounty programs and penetration testing * Security certifications such as CISSP Compensation: The salary range for this role will be $210,000.00 - $260,000.00 USD. In addition ...

Strong experience with code review, security reviews, security architecture, pentesting, and bug bounty programs * Experience working in full-stack projects * Experience with discovering and fixing ...

Senior Offensive Security Engineer

OR ยท On-site +1

$114K - $156K/yr

... program and encourage participation. * Receive and triage vulnerability reports submitted by external researchers through various channels, such as email, web form, or bug bounty platform.

OR

$114K - $156K/yr

... coordination, bug bounty intake, and prioritization of findings into durable engineering ... Experience leading security engineering programs in at least two of the following domains ...

OR ยท On-site

Strong background in offensive security (red team, penetration testing, or bug bounty) * Deep ... Holistic perks program (including free therapy, employee wellness, and more) * Excellent health ...

Technology Intern

Portland, OR ยท On-site

$26/hr

This paid internship is an opportunity to gain real world experience developing internal ... Contribute bug fixes, enhancements, and new features for existing applications, including our ...

New

Develop and apply a bug priority rubric for revenue-generating and operations-critical workflows ... Currently enrolled in an MBA, master's, or other graduate program - or a strong undergraduate ...

New

Develop and apply a bug priority rubric for revenue-generating and operations-critical workflows ... Currently enrolled in an MBA, master's, or other graduate program - or a strong undergraduate ...

New

Develop and apply a bug priority rubric for revenue-generating and operations-critical workflows ... Currently enrolled in an MBA, master's, or other graduate program - or a strong undergraduate ...

New

Develop and apply a bug priority rubric for revenue-generating and operations-critical workflows ... Currently enrolled in an MBA, master's, or other graduate program - or a strong undergraduate ...

New

Internship Bug Bounty Program information

How much do you get paid for bug bounties?

In an internship bug bounty program, compensation varies widely depending on the severity and impact of the vulnerabilities found, with some programs offering monetary rewards ranging from a few hundred to several thousand dollars per valid bug. Payment is often based on industry standards, the quality of the report, and the organization's budget, and participants typically need to demonstrate skills in security testing and vulnerability assessment.

How do I join a bug bounty program?

To join a bug bounty program, you typically need to register on the platform hosting the program, such as HackerOne or Bugcrowd, and agree to their rules. You should have skills in security testing, familiarity with common tools, and often a basic understanding of web or application vulnerabilities. Participation usually involves submitting reports of security issues found during testing within the program's guidelines.

What companies pay bug bounties?

Many technology companies, including Google, Microsoft, Facebook, Apple, and Uber, run bug bounty programs that pay security researchers for discovering and responsibly reporting vulnerabilities. These programs often offer monetary rewards, recognition, and sometimes certifications, and they typically require skills in security testing and familiarity with bug bounty platforms like HackerOne or Bugcrowd.

Can I get an internship in cyber security?

An internship in cybersecurity is available for students and entry-level professionals interested in gaining practical experience in areas like network security, vulnerability assessment, and ethical hacking. Candidates often need foundational knowledge of security concepts, programming skills, and may pursue certifications such as CompTIA Security+ or Certified Ethical Hacker (CEH).

What is the difference between Internship Bug Bounty Program vs Security Analyst?

AspectInternship Bug Bounty ProgramSecurity Analyst
CredentialsTypically students or entry-level with basic cybersecurity knowledgeOften requires certifications like CompTIA Security+, CISSP, or CEH
Work EnvironmentProject-based, flexible, often remote, focused on bug huntingStructured, office or remote, involves ongoing security monitoring and analysis
Employer & IndustryTech companies, startups, cybersecurity firmsCorporations, government agencies, consulting firms
Search & Comparison IntentUnderstanding entry-level opportunities in cybersecurity testingUnderstanding professional security roles and career paths

The Internship Bug Bounty Program offers hands-on experience in bug hunting, often for students or beginners, with flexible work settings. Security Analysts typically hold certifications and perform ongoing security assessments within organizations. While both roles focus on cybersecurity, the internship is more exploratory and project-based, whereas the security analyst role is more structured and ongoing.

What are the most commonly searched types of Bug Bounty Program jobs in Oregon? The most popular types of Bug Bounty Program jobs in Oregon are:
What are popular job titles related to Internship Bug Bounty Program jobs in Oregon? For Internship Bug Bounty Program jobs in Oregon, the most frequently searched job titles are:
What job categories do people searching Internship Bug Bounty Program jobs in Oregon look for? The top searched job categories for Internship Bug Bounty Program jobs in Oregon are:
What cities in Oregon are hiring for Internship Bug Bounty Program jobs? Cities in Oregon with the most Internship Bug Bounty Program job openings:

Senior Product Security Engineer

Tines

OR โ€ข On-site, Remote

Other

Re-posted 17 days ago


Job description

The Role

We're seeking aย Senior Product Security Engineerย who is passionate about building and scaling robust security programs in an AI-forward engineering environment. Reporting to our Head of IT Operations & Information Security, you'll lead efforts to mature our product security initiatives at a pivotal moment of product expansion, ensuring security keeps pace as our developers increasingly leverage AI in their workflows.

A core part of this role is using AI and automation as force multipliers, building security tooling, guardrails, and review processes that scale to match the velocity of AI-assisted development across our engineering org.

This position can be based remotely in the United States.

Key Responsibilities
  • Product Security Leadership: Partner with product and engineering teams to integrate security throughout the development lifecycle and drive security initiatives across our stack.
  • AI-Augmented Security: Leverage AI and automation to scale product security coverage, matching the pace of AI-assisted development across engineering.
  • Security Architecture: Design and implement security controls and architecture that scale with our growing product portfolio.
  • Threat Modeling & Risk Assessment: Conduct comprehensive security reviews and threat modeling to identify and mitigate potential vulnerabilities, including risks introduced by AI-generated code and AI-powered features.
  • Vulnerability Management: Contribute to our vulnerability management program, including triaging bug bounty and vulnerability disclosure reports and driving remediation efforts.
  • Security Automation: Develop and implement automated security testing, monitoring, and response capabilities, using Tines itself, plus AI-driven tooling, to eliminate manual toil.
  • Security Incident Response: Serve as an incident responder during security events and lead post-incident reviews.
  • Security Education: Champion security awareness and provide technical guidance to engineering teams, including best practices for secure AI-assisted development.
Qualifications
  • 8+ years of experienceย in application or product security roles, with demonstrated expertise in securing cloud-native applications.
  • Strong understanding of modern application security principles, OWASP Top 10, and secure SDLC practices.
  • Experience leveragingย AI and automationย to scale security programs (e.g., LLM-assisted code review, automated triage, agentic security workflows).
  • Experience with cloud security (AWS preferred) and securing containerized environments (Docker, Kubernetes).
  • Proficiency in modern programming languages; experience withย Ruby, TypeScript, and/or Rustย is highly desirable.
  • Knowledge of security testing methodologies and tools (SAST, DAST, SCA).
  • Experience with CI/CD security integration and DevSecOps practices.
  • Strong incident response skills and experience participating in on-call rotations.
  • Excellent communication skills with ability to translate complex security concepts to diverse audiences.
  • Self-motivated with exceptional analytical thinking and problem-solving abilities.
Nice to Haves
  • Experience securingย AI/ML systems and LLM-powered featuresย (prompt injection, model abuse, data leakage, agentic system risks).
  • Familiarity withย LLM red-teaming, AI threat modeling frameworks (e.g., MITRE ATLAS, OWASP LLM Top 10), and emerging AI security standards.
  • Hands-on experience buildingย agentic or automated security workflowsย (using Tines or similar platforms).
  • Contributions to open-source security tooling or active participation in the security research community (CVEs, conference talks, published research).
  • Experience designingย secure-by-default developer platforms, paved roads, or golden paths for engineering teams.
  • Background inย bug bounty triageย at scale, or running a public VDP/bug bounty program.
  • Familiarity withย multi-tenant SaaS securityย challenges (tenant isolation, authz models, data segregation).
  • Experience supporting FedRAMP (Moderate/High) and/or DoD Impact Level (IL4/IL5/IL6) environments.
  • Prior experience at a high-growth startup launching new products or expanding into new product lines.

Target Annual Compensation: $218-$235k + equity

Applicants for this opportunity must be authorized to work for any employer in the U.S. We are unable to sponsor or take over sponsorship of an employment Visa at this time.