Senior Security Engineer - Bug Bounty
Senior Security Engineer
Zoom is growing at an explosive pace by every measure - revenues, people, innovation, and customers. Led by Eric S. Yuan, the #1 ranked CEO on Glassdoor, our unique culture makes Zoom an awesome place to work. We are expanding teams across the organization. If you are motivated by delivering happiness, come join us at Zoom!
We are seeking a talented Security Engineer to join our Vulnerability Discovery team. The new member of our team will focus on creating POCs for known vulnerabilities, provide root-cause analysis for triaged vulnerabilities, and work with engineers throughout Zoom to remediate vulnerabilities.
Responsibilities:
Provide root cause analysis of triaged vulnerabilities
Provide actionable security guidance to engineers to enable remediation within SLA
Create POCs to facilitate fix verification and enable regression testing
Help drive quality engagement on bug bounty programs
Assess incoming Bug Bounty submissions
Work with product security team to review and process external reports
Provide guidance on effective vulnerability countermeasures
Contribute to security policy, standards, and guidelines related to Bug Bounty
Engage with the security researcher community and promote high quality experiences
Minimum Qualifications:
Hands-on experience discovering, validating and fixing common vulnerabilities
Ability to communicate ideas and proposals concisely
Ability to distill complex security problems and drive towards creative solutions
Ability to engage with teams to review security issues and recommend solutions
Excellent written and verbal communication skills for conveying security concepts and engineering solutions
Strong knowledge of web, mobile, and/or desktop application security vulnerabilities and countermeasures, including the OWASP Top 10
Experience with application programming
Typically requires a minimum of 8 years of related experience with a Bachelor’s degree; or 6 years and a Master’s degree; or a PhD with 3 years experience; or equivalent experience.
Preferred Qualifications:
Prior bug hunting and/or bug triage experience
Experience performing threat modeling, design and code reviews to assess security implications and requirements for the introduction of new systems and technologies
Experience building out integrations with open source scanners and/or vendor products
History of participating in Bug Bounty programs
Programming experience with JavaScript, Python, PHP, Ruby, Java, or C/C++
Zoom Video Communications Company Culture Highlights:
• Winner of Comparably's Award for Best Company Work-Life Balance 2019
• Winner of Comparably's Award for Best Company Compensation 2019
• Winner of Comparably's Award for Best Company Happiness 2019
• Winner of Comparably's Award for Best Company Perks & Benefits 2019
• Sales Department is ranked in the top 5% of companies for Diversity on Comparably.
• Zoom Video Communications is ranked in the top 5% of companies for Professional Development on Comparably.
• Zoom Video Communications is ranked in the top 5% of companies for Overall Culture on Comparably.
Check us out on Comparably: https://www.comparably.com/companies/zoom-video-communications
Get an inside look at the San Jose office culture here: https://youtu.be/U8GMcBn9ecw
Closing based on a template for: All teams in All locations
Check us out with a free download: zoom.us/download
Zoom Video Communications is an equal opportunity employer and evaluates applicants regardless of an individual’s age, race, color, gender, religion, national origin, sexual orientation, disability or veteran status. Our combined differences are what make us Zoom!
Ensuring a diverse and inclusive workplace where we learn from each other is core to Zoom’s values. We welcome people of different backgrounds, experiences, abilities and perspectives including qualified applicants with arrest and conviction records as well as any qualified applicants requiring reasonable accommodations in accordance with the law.
We believe that the unique contributions of all Zoomies is the driver of our success. To make sure that our products and culture continue to incorporate everyone's perspectives and experience we never discriminate on the basis of race, religion, national origin, gender identity or expression, sexual orientation, age, or marital, veteran, or disability status.
All your information will be kept confidential according to EEO guidelines.
Explore Zoom:
Hear from our leadership team
Browse Awards and Employee Reviews on Comparably
Visit our Blog
Zoom with us!
Find us on social at the links below and on Instagram