Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Product Security Analyst, Events Team image - Rise Careers
Job details

Product Security Analyst, Events Team

HackerOne is the global leader in human-powered security, harnessing the creativity of the world’s largest community of security researchers with cutting-edge AI to protect your digital assets. The HackerOne Platform combines the expertise of our elite community and the most up-to-date vulnerability database to pinpoint critical security flaws across your attack surface. Our integrated solutions, including bug bounty, pentesting, code security audits, spot checks, and AI red teaming, ensure continuous vulnerability discovery and management throughout the software development lifecycle. Trusted by industry leaders such as Coinbase, General Motors, GitHub, Goldman Sachs, Hyatt, PayPal, and the U.S. Department of Defense, HackerOne was named a Best Workplace for Innovators by Fast Company in 2023 and a Most Loved Workplace for Young Professionals in 2024.

Position Summary

HackerOne is seeking a dynamic individual with a passion for Information Security to join our Triage Events team. As a Security Analyst for Live Hacking Events, you will gain hands-on technical experience and exposure to some of the world’s best hackers while delivering high-impact vulnerabilities to the top bug bounty programs in the industry.  

This role requires excellent communication skills, a sense of urgency,  intellectual curiosity and drive to acquire the technical skills you’ll need to ensure every valid bug report is reproducible and provides value to HackerOne customers.

At HackerOne, we embrace a Flexible Work approach, enabling our team members to work remotely while maintaining productivity and collaboration. We are seeking candidates located in Washington, D.C. or London, UK, and the surrounding metropolitan areas, to facilitate occasional in-person interactions as needed. While the position is primarily remote, there will be periodic in-person requirements to support team collaboration and foster stronger connections. This approach ensures flexibility while providing opportunities to build meaningful in-person relationships that strengthen our team and company culture.

What You Will Do

  • Evaluate vulnerability reports submitted by hackers to determine the validity, risk and severity to HackerOne customers

  • Collaborate with hackers to understand complex chained vulnerabilities that will grow your skills daily

  • Ensure clear and efficient communication between hackers, customers and other team mates

  • Proactively identify and solve issues, as well as accept and quickly respond to delegated work; as we are distributed, being able to win as a team to solve problems is critical to our success

  • Independently reproduce reported vulnerabilities in a test environment and compose a technical summary for valid reports that includes clear and concise details regarding the impact, steps to reproduce and remediation advice

  • Thrive in a collaborative collective environment where hackers, customers and security analysts have the best experience.

  • Self-motivated interest in emerging technologies and their impact on securing the digital world

Minimum Qualifications  

  • 3+ years of experience doing security testing or ethical hacking on web and mobile applications

  • Proven experience with vulnerability disclosure and bug bounty (experience managing a bug bounty program is a plus but not required)

  • Strong technical knowledge of OWASP top 10

  • Comfortable using security testing tools including Burpsuite 

  • Excellent written and verbal communication skills

  • Experience using frameworks such as CVSS

  • Ability and willingness to travel globally at least 3-5 times a year

  • Self-motivated and able to manage your time and energy output while maintaining a consistent and sustainable operational rhythm

  • English fluency

Compensation Bands:

Washington, D.C. Area

$115K – $130K • Offers Equity

London, UK Area

£64K – £80K • Offers Equity

#LI-Remote

#LI-HM1

Job Benefits:

  • Health (medical, vision, dental), life, and disability insurance*

  • Equity stock options

  • Retirement plans

  • Paid public holidays and unlimited PTO

  • Paid maternity and parental leave

  • Leaves of absence (including caregiver leave and leave under CO's Healthy Families and Workplaces Act)

  • Employee Assistance Program

  • Flexible Work Stipend

*Eligibility may differ by country

We are a Circle Back Initiative Employer and commit to responding to every applicant.

We're committed to building a global team! For certain roles outside the United States, U.K., and the Netherlands, we partner with Remote.com as our Employer of Record (EOR).

Employment at HackerOne is contingent on a background check.

HackerOne is an Equal Opportunity Employer in the terms and conditions of employment for all employees and job applicants without regard to race, color, religion, sex, sexual orientation, age, gender identity or gender expression, national origin, pregnancy, disability or veteran status, or any other protected characteristic as outlined by international, federal, state, or local laws.

This policy applies to all HackerOne employment practices, including hiring, recruiting, promotion, termination, layoff, recall, leave of absence, compensation, benefits, training, and apprenticeship. HackerOne makes hiring decisions based solely on qualifications, merit, and business needs at the time.

For US based roles only: Pursuant to the San Francisco Fair Chance Ordinance, all qualified applicants with arrest and conviction records will be considered for the position.

HackerOne Values

HackerOne commits to maintaining a strong, inclusive culture built for our employees and our community of hackers. We are driven by our five core values. We recognize that our mission is bigger than us, and therefore act with integrity at all times. As a team, we believe that transparency builds trust so we default to disclosure in our communications. Each individual executes with excellence, creating an environment of greater alignment and greater autonomy. We win as a team and respect all people to empower everyone to learn from each other, innovate, and grow.

HackerOne Glassdoor Company Review
4.5 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
HackerOne DE&I Review
3.9 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
CEO of HackerOne
HackerOne CEO photo
Marten Mickos
Approve of CEO

Average salary estimate

$122500 / YEARLY (est.)
min
max
$115000K
$130000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Product Security Analyst, Events Team, HackerOne

Join HackerOne as a Product Security Analyst on the Events Team, where you’ll dive into the vibrant world of human-powered security. Located in the dynamic city of Washington, you'll work alongside talented individuals and some of the best ethical hackers globally, reviewing high-impact vulnerabilities for leading bug bounty programs. Your role as a Security Analyst for Live Hacking Events involves evaluating vulnerability reports submitted by talented hackers, ensuring they meet quality standards, and providing clear, actionable insights to customers. With your strong communication skills and technical aptitude, you'll actively engage with hackers to dig deeper into complex vulnerabilities while collaborating with team members to foster a supportive environment. This position combines flexible remote work with some in-person team interactions, allowing you to enhance your professional network and create meaningful connections. As part of a company that’s recognized as a Best Workplace for Innovators and Most Loved Workplace for Young Professionals, you’ll have the chance to continually learn and grow. HackerOne values integrity and transparency, making it a fantastic place to apply your three or more years of security testing experience within an innovative atmosphere that encourages personal and professional development. Whether you’re reproducing reported vulnerabilities or crafting technical summaries, you’ll thrive in a collaborative environment where everyone achieves great things. Come make an impact at HackerOne and help secure the digital world!

Frequently Asked Questions (FAQs) for Product Security Analyst, Events Team Role at HackerOne
What are the key responsibilities of a Product Security Analyst at HackerOne?

As a Product Security Analyst at HackerOne, your main responsibilities include evaluating vulnerability reports, collaborating closely with hackers to understand complex vulnerabilities, reproducing reported issues in a test environment, and producing clear technical summaries that outline the impact and remediation strategies for valid reports.

Join Rise to see the full answer
What qualifications are necessary to become a Product Security Analyst at HackerOne?

To qualify for the Product Security Analyst position at HackerOne, candidates should have at least 3 years of experience in security testing or ethical hacking. A deep understanding of OWASP's top 10 vulnerabilities, proficiency in security testing tools like Burpsuite, and excellent communication skills are critical for success in this role.

Join Rise to see the full answer
How does HackerOne support the continuous development of a Product Security Analyst?

HackerOne encourages continuous development by providing opportunities to collaborate with elite hackers, offering access to the latest tools and technologies, and fostering a culture of learning and transparency. As a Product Security Analyst, you'll have the chance to grow your skills daily through hands-on experiences during live hacking events.

Join Rise to see the full answer
Can Product Security Analysts work remotely at HackerOne?

Yes, Product Security Analysts at HackerOne can embrace a flexible work approach. While primarily remote, there are occasional in-person requirements to promote team collaboration and strengthen connections with colleagues.

Join Rise to see the full answer
What employee benefits does HackerOne offer for Product Security Analysts?

HackerOne offers a range of employee benefits for Product Security Analysts, which include health insurance, equity stock options, retirement plans, paid public holidays, unlimited PTO, and additional supports like maternity and parental leave, among other generous offerings.

Join Rise to see the full answer
Common Interview Questions for Product Security Analyst, Events Team
How do you evaluate the severity of a vulnerability as a Product Security Analyst?

When evaluating the severity of a vulnerability, I consider factors such as the potential impact on customer data, the ease of exploitation, and the overall threat landscape. I often use frameworks like CVSS to aid in my assessment and discuss my findings with team members to ensure a comprehensive understanding.

Join Rise to see the full answer
Can you describe your experience with ethical hacking and vulnerability disclosure?

I have over 3 years of experience in ethical hacking, where I actively participated in vulnerability disclosure programs. I’ve managed to report various critical vulnerabilities while working with developers to ensure swift and effective resolutions, maintaining the transparency crucial to a successful ethical hacking environment.

Join Rise to see the full answer
What tools do you utilize for security testing in your role?

In my roles, I frequently use tools like Burpsuite for web application testing, and I also explore a variety of other tools such as OWASP ZAP, Metasploit, and various vulnerability management frameworks to effectively audit applications for security flaws.

Join Rise to see the full answer
How do you keep up with emerging security technologies?

I regularly read industry publications, follow reputable security blogs, and participate in webinars and online courses. Additionally, I engage with the security community through forums and events, which provide insights into the latest trends and technologies in information security.

Join Rise to see the full answer
Can you discuss a time you collaborated with a hacker to resolve a complex vulnerability?

Certainly! I once collaborated with a hacker who reported a chained vulnerability affecting a critical application. By maintaining open communication, we developed a thorough understanding of the issue, which enabled me to reproduce the vulnerability in our test environment and articulate a resolution that satisfied both the hacker and the customer.

Join Rise to see the full answer
What is your approach to communicating with non-technical stakeholders about security risks?

When communicating with non-technical stakeholders about security risks, I focus on clarity and relevance. I avoid jargon, using analogies and simplified concepts to explain the potential impact while emphasizing necessary actions in a way that relates to their concerns or business value.

Join Rise to see the full answer
How do you prioritize multiple vulnerability reports in your workflow?

To prioritize multiple vulnerability reports, I assess the severity, impact, and potential risk of each vulnerability. I utilize a matrix that weighs these factors, allowing me to address the most critical issues first while managing my time efficiently across all submissions.

Join Rise to see the full answer
What challenges have you faced in a security analyst role, and how did you overcome them?

One significant challenge I faced was dealing with high volumes of vulnerability reports during live events. To manage this, I developed a streamlined review process, utilizing automation tools where possible and collaborating closely with team members to ensure we met deadlines without compromising on quality.

Join Rise to see the full answer
How do you ensure the quality and accuracy of your vulnerability reports?

I ensure the quality and accuracy of my vulnerability reports by rigorously testing each issue before submission and seeking peer reviews. By validating findings through reproducible methods and providing detailed documentation, I strive to maintain a high standard of reporting that stakeholders can trust.

Join Rise to see the full answer
Why do you want to work at HackerOne as a Product Security Analyst?

I want to work at HackerOne because I'm inspired by the innovative approach to security that empowers both researchers and companies. Being part of a culture that values integrity, collaboration, and continuous improvement resonates with my professional beliefs, and I’m eager to contribute to such impactful work.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 14 days ago

HackerOne seeks a creative and strategic Senior Social Media Manager to spearhead their global social media efforts across diverse platforms while fostering brand engagement and community growth.

Photo of the Rise User

As a Director of People Communications & Experience at HackerOne, you'll lead internal communications to enhance our company culture and employee engagement.

Become an integral part of Sony's Cyber Defense Team as a Detection & Response Engineering Intern, focusing on innovative security solutions.

Photo of the Rise User

Bristol Myers Squibb is looking for a Senior Manager of SAP Technical Services to drive system integration and enhancements in a meaningful and dynamic environment.

Photo of the Rise User
Drax Remote US, Harris County, TX; Texas, Houston, TX
Posted 14 days ago

Join Drax as an OT Cyber Security Analyst and contribute to securing innovative technology systems in a company committed to sustainability.

Posted 6 days ago

Join Substance as a Shopify Developer & eCommerce Specialist to elevate client ecommerce platforms through innovative development and strategic insights.

Photo of the Rise User
Posted 13 days ago

Become a pivotal part of Sutherland as a Cloud Operations Engineer, ensuring stellar application performance while embracing a hybrid work model.

Orgvue Remote No location specified
Posted 11 days ago

Join Orgvue as a Principal Site Reliability Engineer and lead the charge in building reliable, scalable infrastructures while collaborating across multiple teams.

Photo of the Rise User
Customer-Centric
Rapid Growth
Diversity of Opinions
Reward & Recognition
Friends Outside of Work
Inclusive & Diverse
Empathetic
Feedback Forward
Work/Life Harmony
Casual Dress Code
Startup Mindset
Collaboration over Competition
Fast-Paced
Growth & Learning
Open Door Policy
Rise from Within
Maternity Leave
Paternity Leave
Flex-Friendly
Family Coverage (Insurance)
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
401K Matching
Paid Holidays
Paid Sick Days
Paid Time-Off

An opportunity for an IT Systems Engineer to join a dynamic team in Seattle, focusing on system security and server management.

Photo of the Rise User

Join Tallahassee Memorial HealthCare as an IT/Desktop Support Tech I and be a key player in providing essential technical support to our healthcare staff.

Photo of the Rise User
Collaboration over Competition
Growth & Learning
Work/Life Harmony
Unlimited Vacation
Learning & Development
Social Gatherings
Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Transparent & Candid
Growth & Learning
Fast-Paced
Collaboration over Competition
Take Risks
Friends Outside of Work
Passion for Exploration
Customer-Centric
Reward & Recognition
Feedback Forward
Rapid Growth
Medical Insurance
Paid Time-Off
Maternity Leave
Mental Health Resources
Equity
Paternity Leave
Fully Distributed
Flex-Friendly
Some Meals Provided
Snacks
Social Gatherings
Pet Friendly
Company Retreats
Dental Insurance
Life insurance
Health Savings Account (HSA)
Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Transparent & Candid
Growth & Learning
Fast-Paced
Collaboration over Competition
Take Risks
Friends Outside of Work
Passion for Exploration
Customer-Centric
Reward & Recognition
Feedback Forward
Rapid Growth
Medical Insurance
Paid Time-Off
Maternity Leave
Mental Health Resources
Equity
Paternity Leave
Fully Distributed
Flex-Friendly
Some Meals Provided
Snacks
Social Gatherings
Pet Friendly
Company Retreats
Dental Insurance
Life insurance
Health Savings Account (HSA)
Photo of the Rise User
Posted 6 months ago

HackerOne is leading a cybersecurity platform that connects businesses with penetration testers and cybersecurity researchers. HackerOne's customers include The U.S. Department of Defense, Google, GitHub, Microsoft, Nintendo and more.

109 jobs
MATCH
Calculating your matching score...
BADGES
Badge ChangemakerBadge Diversity ChampionBadge Flexible CultureBadge Work&Life Balance
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
February 12, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Toledo just viewed Clinical Research Associate II at Alimentiv
Photo of the Rise User
Someone from OH, Toledo just viewed Clinical Research Associate II at Precision for Medicine
Photo of the Rise User
Someone from OH, Cleveland just viewed IT Support Engineer at Level AI
Photo of the Rise User
Someone from OH, Dayton just viewed Customer Content Specialist at Cision
Photo of the Rise User
Someone from OH, Cuyahoga Falls just viewed Senior Corporate Communications Manager at Bumble Inc.
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior Financial Analyst at Workday
Photo of the Rise User
Someone from OH, Cincinnati just viewed Financial Planning and Analysis Lead at JLL
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior Financial Analyst at American Express
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior Analyst, Operations at American Express
Photo of the Rise User
Someone from OH, Cincinnati just viewed Strategic Finance Analyst, Corporate at Benchling
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior Analyst, Project Finance at Apex Clean Energy
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior FP&A Analyst, Sales at GitLab
Photo of the Rise User
Someone from OH, Cincinnati just viewed FP&A Analyst at Lithic
Photo of the Rise User
15 people applied to Junior Security Engineer at Epic
Photo of the Rise User
Someone from OH, Westerville just viewed Summer Internship - Public Health Data Science at Cotiviti
V
Someone from OH, Cincinnati just viewed Part-Time Executive/Personal Assistant at VirtuHire
Photo of the Rise User
Someone from OH, Chillicothe just viewed Area Manager at The Hemp Co by Curaleaf at Curaleaf
Photo of the Rise User
Someone from OH, Cincinnati just viewed VP, B2B/Integrated Marketing at TEGNA Inc.
Photo of the Rise User
Someone from OH, Cincinnati just viewed Director, Marketing and GTM Strategy at Aspen Dental
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior Vice President, JLLIPT Marketing at JLL
Photo of the Rise User
Someone from OH, Cincinnati just viewed Vice President of Marketing at Forum Health
Photo of the Rise User
Someone from OH, Cincinnati just viewed Vice President of Marketing at Beacon