2

Remote Bug Bounty Jobs (NOW HIRING)

Senior Application Security Engineer

OR ยท Remote

$114K - $156K/yr

... remote environment. * Self-driven and proactive, comfortable operating in a high-autonomy ... Determine the root cause and severity of vulnerabilities reported to us through our bug bounty ...

This is a remote first role. You will partner closely with teams across the company and focus on ... Help run penetration testing, offensive security exercises, and support our bug bounty program.

Sr. Security Engineer (Penetration Testing)

OR ยท Remote

$100K - $180K/yr

Participated in bug bounty programs and audit contests * Published security-related blog posts and ... LI-Remote #blockchain #startups #hiring CertiK is proud to offer medical, vision, and dental ...

This role can be fully remote and must reside in US. In this role, you will help us drive our ... Drive our security assessment, penetration testing and bug bounty programs * Participate in ...

Manage and coordinate external penetration testing and bug bounty programs focused on ACV ... Maintain strong communication channels with remote team members, ensuring alignment and fostering a ...

Contributions to open-source security tooling or published CVEs / bug bounty hall-of-fame credits ... CTF participation or competitive hacking experience #LI-Remote #LI-MK1 The US national base salary ...

Manage and coordinate external penetration testing and bug bounty programs focused on ACV ... Maintain strong communication channels with remote team members, ensuring alignment and fostering a ...

Participated in bug bounty programs and audit contests * Published security-related blog posts and ... LI-Remote #blockchain #startups #hiring CertiK is proud to offer medical, vision, and dental ...

Determine the root cause and severity of vulnerabilities reported to us through our bug bounty ... fun, remote-friendly, start-up environment-apply anyway, detailing your relevant transferable ...

Strong background in offensive security (red team, penetration testing, or bug bounty) * Deep ... Remote work with regular in-person bonding experiences sponsored by the company * Competitive ...

Experience with vulnerability discovery and remediation pipelines, including bug bounty or ... them. #LI-Remote Pay Transparency: This job posting may span more than one career level. In ...

Background in security research or offensive security (bug bounty, CTF, penetration testing). Base ... Flexible & Remote-First Culture: Work remotely with team meetup opportunities, bi-annual ...

next page

Showing results 1-20

Remote Bug Bounty information

See salary details

$25

$30

$34

How much do remote bug bounty jobs pay per hour?

As of Jun 29, 2026, the average hourly pay for remote bug bounty in the United States is $30.69, according to ZipRecruiter salary data. Most workers in this role earn between $30.05 and $30.05 per hour, depending on experience, location, and employer.

What is the difference between Remote Bug Bounty vs Remote Penetration Tester?

AspectRemote Bug BountyRemote Penetration Tester
CredentialsKnowledge of security vulnerabilities, bug bounty platformsCertifications like OSCP, CEH, CISSP often preferred
Work EnvironmentFreelance, project-based, remoteConsulting, in-house or remote, often more structured
Industry UsageTech companies, cybersecurity platforms, bug bounty programsSecurity firms, corporate security teams, consulting firms
Search & Comparison IntentFocus on finding vulnerabilities through bug bounty programsFocus on conducting comprehensive security assessments

Remote Bug Bounty roles involve identifying vulnerabilities via bug bounty platforms, often freelance and project-based. Remote Penetration Testers perform in-depth security assessments, usually with formal certifications and structured engagements. While both roles require cybersecurity knowledge, bug bounty work emphasizes finding bugs in live environments, whereas penetration testing involves simulated attacks to evaluate security posture.

What is a Remote Bug Bounty hunter?

A Remote Bug Bounty hunter is a cybersecurity professional who works from any location to find and report vulnerabilities in software, websites, or systems. They participate in bug bounty programs offered by companies or platforms, which reward individuals for responsibly disclosing security flaws. Remote Bug Bounty hunters use their skills to test for issues such as cross-site scripting, SQL injection, or authentication weaknesses. Their work helps organizations improve their security and protect user data, while also earning rewards or recognition for their discoveries.

What are the key skills and qualifications needed to thrive as a Remote Bug Bounty Hunter, and why are they important?

To thrive as a Remote Bug Bounty Hunter, you need a solid understanding of cybersecurity concepts, vulnerability assessment, and web application security, often supported by knowledge from certifications like CEH or OSCP. Familiarity with tools such as Burp Suite, Nmap, Metasploit, and automated scanning platforms is essential for identifying and reporting security flaws. Attention to detail, persistence, and strong written communication skills distinguish top performers in this field. These skills and qualities are crucial to effectively discovering, documenting, and responsibly disclosing vulnerabilities in diverse remote environments.

What are some common challenges remote bug bounty hunters face when working independently?

Remote bug bounty hunters often encounter challenges such as staying motivated without direct supervision, managing communication across different time zones with program managers, and keeping up with the latest security vulnerabilities and tools on their own. Additionally, prioritizing which programs to participate in and efficiently documenting findings for submission can be demanding. Building a professional network remotely and managing a healthy work-life balance are also important aspects to consider for long-term success.
More about Remote Bug Bounty jobs
What cities are hiring for Remote Bug Bounty jobs? Cities with the most Remote Bug Bounty job openings:
What are the most commonly searched types of Bug Bounty jobs? The most popular types of Bug Bounty jobs are:
What states have the most Remote Bug Bounty jobs? States with the most job openings for Remote Bug Bounty jobs include:
What job categories do people searching Remote Bug Bounty jobs look for? The top searched job categories for Remote Bug Bounty jobs are:
Technical Program Manager - Security

Technical Program Manager - Security

Outreach

Seattle, WA โ€ข Remote

$130K - $170K/yr

Full-time

Medical, Dental, Vision, Retirement

Posted 4 days ago


Job description

About Outreach

Outreach, founded in 2014, is the only complete agentic AI platform for revenue teams. Outreach infuses agentic AI, conversation intelligence, and assistive AI to power hundreds of use cases across revenue motions. From new logo prospecting to expansions, deal acceleration, driving retention, and forecasting, Outreach AI automates workflows and frees sellers to focus on more strategic conversations and actions. Revenue leaders benefit from connected account visibility, performance insights, and higher forecasting accuracy across every GTM team. World leading enterprise organizations use Outreach to power their revenue teams, including Databricks, SAP, Siemens, and Verizon to name a few.ย 


About The Teamย ย 

This role is within our Security organization, which supports Cloud Security, Product Security, Enterprise Security, and Detection & Response. This organization partners with Product, Engineering, Privacy, GRC, IT, and Legal teams to ensure security best practices are applied to protect the company and Outreach customers.

The Roleย  ย 

Are you passionate about contributing to the success of a cybersecurity program through program management? We are seeking an experienced Technical Program Manager to join our Securityย ย 

Team. In thisย roleย you willย driveย security programsย and execute security projectsย that willย assistย executing a strategy to improve security posture.ย You will provide operational support forย cross-functional teams, such asย engineering, product, privacy,ย andย legal.ย You will translate complex technical, regulatory, and security requirements into structured programs, clear technical requirements, and measurable outcomes.ย 

Location:ย We are open to remote.ย ย 

Your Daily Adventures Will Include:ย  ย ย 
  • Drive security vulnerability remediations with Engineering for CSPM, OS Runtime, SAST, SCA, DAST
  • Apply your technical understanding of Cybersecurity in a hand-on role, driving security programs and providing TPM supportย 

  • Coordinate and track services provided by the security team andย assistย with enforcement security requirements throughout the organizationย 

  • Assistย with prioritizing work resulting from security findings, stakeholder requests, and strategic visionย 

  • Work with capability owners and stakeholders to develop a roadmap, capacity planning, and delivery planning for the teamย 

  • Representย theย Securityย organizationย on customer callsย and talk about the Outreach platform and securityย processesย 

  • Identify, assess, and manage security risks across projects and systemsย 

  • Manage dependencies across cross-functional teams and resolve blockersย 

  • Track and report on security program status, metrics, and key performance indicators (KPIs) to stakeholders and leadershipย 

  • Manage demand intake, triage, and prioritization of Security service requestsย 

  • Define and manage dependencies on external teams to improve security posture by getting alignment on commitmentsย 

  • Partner with Governance, Risk, and Compliance (GRC) team to provide evidence to auditors thatย demonstrateย efficacy of security controlsย 

Our Vision of You:ย  ย 
  • 5+ years of Cybersecurity experience in aย Technical Program Managerย in a fast-paced, SaaS software company.ย 

  • Understanding of cybersecurity principles, including Networkย Security, Cloudย Security (AWS, Azure, or GCP), Applicationย Security, Identity andย Accessย Management (IAM)ย 

  • Experiencedย with service management and process engineeringย 

  • Successful at using a data-driven approach to track service performance and influence decision makingย 

  • Experience managing cross-functional, large-scale technical security programs, includingย theย Security Vulnerability Program, Security Exceptions Program,ย andย Bug Bounty Programย 

  • Familiar with security toolingย andย system integrationsย ย 

  • Experience leading an External Penetration Testย end-to-end, by managing the vendor,ย definingย andย prioritizingย theย work,ย writingย customer-facingย reports, andย having technical conversations with cross-functionalย teamsย to remediate the findingsย ย 

  • Familiarity with security frameworks (e.g., NIST, ISO 27001, SOC 2)ย 

  • Excellent communication, organizational, and leadership skillsย 

\\n


\\n$130,000 - $170,000 a yearย 

The annual on target earnings (OTE) range for this role isย $130,000- $170,000. You may also be offered incentive compensation, bonus, restricted stock units, and benefits. Actual compensation is based on factors such as the candidate\'s skills, qualifications,ย locationย and experience. Final offers areย determinedย through a holistic assessment and will vary within the posted range. Your Recruiter will share specific details based on your location and role during the hiring process.ย 

\\n

Why Youโ€™ll Love It Here

โ€ข Flexible time off

โ€ข 401k to help you save for the future

โ€ข Generous medical, dental, and vision coverage for full-time employees and their dependents

โ€ข A parental leave program that includes options for a paid night nurse, and a gradual return to work

โ€ข Infertility/ assisted reproductive services benefit

โ€ข Employee referral bonuses to encourage the addition of great new people to the team

โ€ข Snacks and beverages in the Office, along with fun events to celebrate

โ€ข Diversity and inclusion programs that promote employee resource groups like Outreach Women\'s Network, Latinx community, Outreach Black Connection, AAPI community, Pride/LGBTQIA+, Gender+, Disability Community, and Veterans/Military

Outreach is an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status.

Our success is reliant on building teams that include people from different backgrounds and experiences who can elevate assumptions and ideas with fresh perspectives. We\'re dedicated to hiring the whole human, not just a resume. To that end, we look for a diverse pool of applicants-including those from historically marginalized groups. We would like to invite you to apply even if you don\'t think you meet all of the requirements listed below. We don\'t want a few lines in a job description to get between us and the opportunity to meet you.