1

Internship Bug Bounty Program Jobs (NOW HIRING)

NY · On-site

$120 - $150/hr

Triage vulnerabilities from the bug bounty program, collaborating with external researchers and internal engineering teams to resolve discovered flaws. * Collaborate with Dev/QA teams throughout the ...

Oversee the organization's bug bounty program, identifying trends in submissions to suggest broad architectural security changes. Qualifications Twilio values diverse experiences from all kinds of ...

Bug Bounty Leadership: Oversee the technical triage and validation of Cloudflare's external Bug Bounty program, prioritizing submissions based on real-world exploitability and business risk.

Manage and triage our crowdsourced bug bounty program (BugCrowd) and monitor our external security posture rating (Bitsight). * Secure Development Collaboration: Act as the security voice in ...

Manage and triage our crowdsourced bug bounty program (BugCrowd) and monitor our external security posture rating (Bitsight). * Secure Development Collaboration: Act as the security voice in ...

Own and evolve the bug bounty program: Manage the researcher-facing side (scope, policy, engagement) as well as the internal tooling, so every report gets resolved and makes the automated triage ...

The role supports the company's Vulnerability Disclosure Program (VDP, Bug Bounty Program (BBP) and Attack Surface Management (ASM) operations - assessing incoming reports, confirming they are valid ...

Manage and triage our crowdsourced bug bounty program (BugCrowd) and monitor our external security posture rating (Bitsight). * Secure Development Collaboration: Act as the security voice in ...

$81 - $128/hr

Improve and develop security assurance activities - pentests, vulnerability assessments, bug bounty programs, fuzzing * Drive implementation and usage of engineering security tools - static, dynamic ...

New

The role supports the company's Vulnerability Disclosure Program (VDP, Bug Bounty Program (BBP) and Attack Surface Management (ASM) operations - assessing incoming reports, confirming they are valid ...

Experience in Red Teaming and bug bounty programs preferred Ideal Candidate: * 5-8 years of security testing experience * Proven ability to mentor teams and implement enterprise security solutions

Lead and oversee internal and external penetration testing engagements, including web application, API, network and agentic AI platform including managing our bug bounty program * Security ...

The role partners with AI governance, development teams, and external specialists (including consultants and bug bounty programs) to ensure comprehensive adversarial coverage of the Company's AI ...

Showing results 41-60

Internship Bug Bounty Program information

See salary details

$8

$15

$21

How much do internship bug bounty program jobs pay per hour?

As of Sep 4, 2026, the average hourly pay for internship bug bounty program in the United States is $15.54, according to ZipRecruiter salary data. Most workers in this role earn between $12.50 and $17.55 per hour, depending on experience, location, and employer.

What is the difference between Internship Bug Bounty Program vs Security Analyst?

AspectInternship Bug Bounty ProgramSecurity Analyst
CredentialsTypically students or entry-level with basic cybersecurity knowledgeOften requires certifications like CompTIA Security+, CISSP, or CEH
Work EnvironmentProject-based, flexible, often remote, focused on bug huntingStructured, office or remote, involves ongoing security monitoring and analysis
Employer & IndustryTech companies, startups, cybersecurity firmsCorporations, government agencies, consulting firms
Search & Comparison IntentUnderstanding entry-level opportunities in cybersecurity testingUnderstanding professional security roles and career paths

The Internship Bug Bounty Program offers hands-on experience in bug hunting, often for students or beginners, with flexible work settings. Security Analysts typically hold certifications and perform ongoing security assessments within organizations. While both roles focus on cybersecurity, the internship is more exploratory and project-based, whereas the security analyst role is more structured and ongoing.

Is a cybersecurity internship worth it?

A cybersecurity internship provides practical experience in areas like vulnerability assessment, security tools, and threat analysis, which can enhance job prospects and skill development. It often offers networking opportunities and industry certifications, making it a valuable step for those pursuing a career in cybersecurity.
More about Internship Bug Bounty Program jobs

What cities are hiring for Internship Bug Bounty Program jobs?

Cities with the most Internship Bug Bounty Program job openings:

What are the most commonly searched types of Bug Bounty Program jobs?

The most popular types of Bug Bounty Program jobs are:

What states have the most Internship Bug Bounty Program jobs?

States with the most job openings for Internship Bug Bounty Program jobs include:

Infographic showing various Internship Bug Bounty Program job openings in the United States as of August 2026, with employment types broken down into 1% As Needed, 77% Full Time, 18% Part Time, and 4% Contract. Highlights an 95% Physical, 1% Hybrid, and 4% Remote job distribution, with an average salary of $32,333 per year, or $15.5 per hour.

Application Security Engineer

Softswiss

NY • On-site

$120 - $150/hr

Other

Medical, PTO

Posted 16 days ago


Key responsibilities

  • Partner with product teams during the design phase to facilitate threat modeling and risk assessment sessions.

  • Perform in-depth manual code reviews on critical applications to identify logical vulnerabilities as part of white-box security assessments.

  • Triage vulnerabilities from the bug bounty program, collaborating with external researchers and internal engineering teams to resolve discovered flaws.


Job description

Security | Application Security Engineer

SOFTSWISS is growing, and we are seeking a skilled Application Security Engineer to join our team. If you are driven by excellence and share our values, we would love to hear from you.

Purpose of the role

Our goal is to make sure that we deploy secure software to production without unnecessary bottlenecks, that applications are properly hardened, and security vulnerabilities, once discovered, are fixed by the developers.

As an Application Security Engineer, you will play a crucial role in ensuring the security of our applications throughout the entire software development lifecycle (SDLC). You will partner closely with the product teams to identify, analyze, and mitigate security vulnerabilities, contributing to the creation of trustworthy and robust products.

Key responsibilities
  • Partner with product teams during the design phase to facilitate threat modeling and risk assessment sessions.
  • Perform in-depth manual code reviews on critical applications to identify logical vulnerabilities as part of white-box security assessments.
  • Tune and adjust rulesets for automated security scanning tools to reduce false positives and improve detection rates.
  • Develop scripts and automation tools to streamline workflows and free up time for more complex analysis.
  • Assist developers in understanding security risks and threats discovered during risk assessments, threat modeling, and dynamic testing.
  • Triage vulnerabilities from the bug bounty program, collaborating with external researchers and internal engineering teams to resolve discovered flaws.
  • Collaborate with Dev/QA teams throughout the development lifecycle to enhance the application’s security posture by providing dedicated security consulting, continuous knowledge sharing, and actionable guidance.
  • Develop and maintain the internal security knowledge base, including comprehensive secure coding guidelines and technical manuals for standard security features.
Required Experience
  • 3+ years of experience in application security, software development, or related technical roles.
  • Knowledge of web application security mechanisms and controls (e.g., SOP, CORS, CSP).
  • Comprehensive understanding of common web vulnerabilities (e.g., OWASP Top 10) and their practical mitigation strategies.
  • Knowledge of secure system and application architecture alongside secure-by-design principles.
  • Practical, hands‑on expertise in identifying vulnerabilities through manual security assessments and secure code reviews.
  • Ability to clearly articulate and explain the business impact of identified threats and vulnerabilities to developers and product teams.
  • A strong security‑first mindset with a continuous drive to learn and achieve excellence in the cybersecurity field.
  • University degree in Computer Science, Information Security, or a related field (or an equivalent combination of education and practical experience).
  • English and Russian proficiency at an upper‑intermediate level (B2+)
Nice to have
  • Passion about programming.
  • Technical knowledge of network and operating systems security.
  • Practice of participation in bug bounty programs and/or CTFs.
  • Knowledge of SAST/DAST tools, including customization.
Main Advantages
  • Private health insurance
  • Sports benefits
  • Free English lessons (online)
  • Local language courses
  • Paid time off
  • Maternity leave support
  • Referral program rewards
  • Upskilling, internal workshops, and participation in professional conferences and corporate events
#J-18808-Ljbffr