Resume Score

Check how well your resume matches this job before you apply.

Sign in to check score

About the role

  • Security Engineer protecting Chess.com’s global online chess platform. Managing vulnerabilities, threat modeling, incident response, and secure engineering practices.

Responsibilities

  • Lead the vulnerability management program by triaging, reproducing, and assessing security vulnerabilities submitted through Bug Bounty programs
  • Work directly with engineering teams to prioritize and remediate security gaps
  • Conduct threat modeling with engineering teams to analyze proposed solutions and identify potential attack vectors before implementation
  • Manage security incident response by reviewing penetration testing results and SIEM reports
  • Translate technical findings into actionable remediation tasks and track resolution through completion
  • Optimize security infrastructure by updating Web Application Firewalls and other security systems
  • Evaluate and implement security software solutions, including vendor demonstrations and procurement processes
  • Provide security consultation and guidance to development teams on secure software development and architecture
  • Communicate security updates, progress reports, and recommendations to stakeholders
  • Maintain current security policies and procedures

Requirements

  • Bachelor's degree in Computer Science, Information Security, or related technical field, or equivalent professional experience
  • Minimum 3+ years of professional experience specifically in web application security
  • Expertise with security testing tools such as Burp Suite or equivalent web request analysis and tampering tools
  • Strong written communication skills in English and ability to explain technical security concepts to diverse audiences
  • Experience working effectively in fully distributed/remote team environments
  • Ability to collaborate cross-functionally with engineering and development teams
  • Previous hands-on experience managing or participating in Bug Bounty programs
  • Programming experience in PHP or JavaScript
  • Experience with penetration testing methodologies and tools
  • Knowledge of SIEM platforms and security monitoring systems
  • Familiarity with Web Application Firewall (WAF) configuration and management
  • Understanding of secure software development lifecycle (SDLC) practices
  • Experience with Jira or similar project management and issue tracking systems
  • Strong sense of ownership and accountability
  • Passion for continuous learning and staying current with evolving security threats and technologies

Benefits

  • Fully remote work-from-anywhere arrangement
  • Flat, no-corporate culture
  • Full-time opportunity

Job type

Full Time

Experience level

Mid levelSenior

Salary

Not specified

Degree requirement

Bachelor's Degree

Tech skills

FirewallsJavaScriptPHPSDLC

Location requirements

RemoteWorldwide

Report this job

Found something wrong with the page? Please let us know by submitting a report below.