HackerOne is the global leader in human-powered security, harnessing the creativity of the world’s largest community of security researchers with cutting-edge AI to protect your digital assets. The HackerOne Platform combines the expertise of our elite community and the most up-to-date vulnerability database to pinpoint critical security flaws across your attack surface. Our integrated solutions, including bug bounty, pentesting, code security audits, spot checks, and AI red teaming, ensure continuous vulnerability discovery and management throughout the software development lifecycle. Trusted by industry leaders such as Coinbase, General Motors, GitHub, Goldman Sachs, Hyatt, PayPal, and the U.S. Department of Defense, HackerOne was named a Best Workplace for Innovators by Fast Company in 2023 and a Most Loved Workplace for Young Professionals in 2024.
HackerOne is seeking a dynamic individual with a passion for Information Security to join our Triage Events team. As a Security Analyst for Live Hacking Events, you will gain hands-on technical experience and exposure to some of the world’s best hackers while delivering high-impact vulnerabilities to the top bug bounty programs in the industry.
This role requires excellent communication skills, a sense of urgency, intellectual curiosity and drive to acquire the technical skills you’ll need to ensure every valid bug report is reproducible and provides value to HackerOne customers.
At HackerOne, we embrace a Flexible Work approach, enabling our team members to work remotely while maintaining productivity and collaboration. We are seeking candidates located in Washington, D.C. or London, UK, and the surrounding metropolitan areas, to facilitate occasional in-person interactions as needed. While the position is primarily remote, there will be periodic in-person requirements to support team collaboration and foster stronger connections. This approach ensures flexibility while providing opportunities to build meaningful in-person relationships that strengthen our team and company culture.
Evaluate vulnerability reports submitted by hackers to determine the validity, risk and severity to HackerOne customers
Collaborate with hackers to understand complex chained vulnerabilities that will grow your skills daily
Ensure clear and efficient communication between hackers, customers and other team mates
Proactively identify and solve issues, as well as accept and quickly respond to delegated work; as we are distributed, being able to win as a team to solve problems is critical to our success
Independently reproduce reported vulnerabilities in a test environment and compose a technical summary for valid reports that includes clear and concise details regarding the impact, steps to reproduce and remediation advice
Thrive in a collaborative collective environment where hackers, customers and security analysts have the best experience.
Self-motivated interest in emerging technologies and their impact on securing the digital world
3+ years of experience doing security testing or ethical hacking on web and mobile applications
Proven experience with vulnerability disclosure and bug bounty (experience managing a bug bounty program is a plus but not required)
Strong technical knowledge of OWASP top 10
Comfortable using security testing tools including Burpsuite
Excellent written and verbal communication skills
Experience using frameworks such as CVSS
Ability and willingness to travel globally at least 3-5 times a year
Self-motivated and able to manage your time and energy output while maintaining a consistent and sustainable operational rhythm
English fluency
Compensation Bands:
$115K – $130K • Offers Equity
£64K – £80K • Offers Equity
#LI-Remote
#LI-HM1
Health (medical, vision, dental), life, and disability insurance*
Equity stock options
Retirement plans
Paid public holidays and unlimited PTO
Paid maternity and parental leave
Leaves of absence (including caregiver leave and leave under CO's Healthy Families and Workplaces Act)
Employee Assistance Program
Flexible Work Stipend
*Eligibility may differ by country
We are a Circle Back Initiative Employer and commit to responding to every applicant.
We're committed to building a global team! For certain roles outside the United States, U.K., and the Netherlands, we partner with Remote.com as our Employer of Record (EOR).
Employment at HackerOne is contingent on a background check.
HackerOne is an Equal Opportunity Employer in the terms and conditions of employment for all employees and job applicants without regard to race, color, religion, sex, sexual orientation, age, gender identity or gender expression, national origin, pregnancy, disability or veteran status, or any other protected characteristic as outlined by international, federal, state, or local laws.
This policy applies to all HackerOne employment practices, including hiring, recruiting, promotion, termination, layoff, recall, leave of absence, compensation, benefits, training, and apprenticeship. HackerOne makes hiring decisions based solely on qualifications, merit, and business needs at the time.
For US based roles only: Pursuant to the San Francisco Fair Chance Ordinance, all qualified applicants with arrest and conviction records will be considered for the position.
HackerOne Values
HackerOne commits to maintaining a strong, inclusive culture built for our employees and our community of hackers. We are driven by our five core values. We recognize that our mission is bigger than us, and therefore act with integrity at all times. As a team, we believe that transparency builds trust so we default to disclosure in our communications. Each individual executes with excellence, creating an environment of greater alignment and greater autonomy. We win as a team and respect all people to empower everyone to learn from each other, innovate, and grow.
If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.
Join HackerOne as a Product Security Analyst on the Events Team, where you’ll dive into the vibrant world of human-powered security. Located in the dynamic city of Washington, you'll work alongside talented individuals and some of the best ethical hackers globally, reviewing high-impact vulnerabilities for leading bug bounty programs. Your role as a Security Analyst for Live Hacking Events involves evaluating vulnerability reports submitted by talented hackers, ensuring they meet quality standards, and providing clear, actionable insights to customers. With your strong communication skills and technical aptitude, you'll actively engage with hackers to dig deeper into complex vulnerabilities while collaborating with team members to foster a supportive environment. This position combines flexible remote work with some in-person team interactions, allowing you to enhance your professional network and create meaningful connections. As part of a company that’s recognized as a Best Workplace for Innovators and Most Loved Workplace for Young Professionals, you’ll have the chance to continually learn and grow. HackerOne values integrity and transparency, making it a fantastic place to apply your three or more years of security testing experience within an innovative atmosphere that encourages personal and professional development. Whether you’re reproducing reported vulnerabilities or crafting technical summaries, you’ll thrive in a collaborative environment where everyone achieves great things. Come make an impact at HackerOne and help secure the digital world!
HackerOne seeks a creative and strategic Senior Social Media Manager to spearhead their global social media efforts across diverse platforms while fostering brand engagement and community growth.
As a Director of People Communications & Experience at HackerOne, you'll lead internal communications to enhance our company culture and employee engagement.
Become an integral part of Sony's Cyber Defense Team as a Detection & Response Engineering Intern, focusing on innovative security solutions.
Bristol Myers Squibb is looking for a Senior Manager of SAP Technical Services to drive system integration and enhancements in a meaningful and dynamic environment.
Join Drax as an OT Cyber Security Analyst and contribute to securing innovative technology systems in a company committed to sustainability.
Join Substance as a Shopify Developer & eCommerce Specialist to elevate client ecommerce platforms through innovative development and strategic insights.
Become a pivotal part of Sutherland as a Cloud Operations Engineer, ensuring stellar application performance while embracing a hybrid work model.
Join Orgvue as a Principal Site Reliability Engineer and lead the charge in building reliable, scalable infrastructures while collaborating across multiple teams.
An opportunity for an IT Systems Engineer to join a dynamic team in Seattle, focusing on system security and server management.
Join Tallahassee Memorial HealthCare as an IT/Desktop Support Tech I and be a key player in providing essential technical support to our healthcare staff.
HackerOne is leading a cybersecurity platform that connects businesses with penetration testers and cybersecurity researchers. HackerOne's customers include The U.S. Department of Defense, Google, GitHub, Microsoft, Nintendo and more.
109 jobsSubscribe to Rise newsletter