Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Senior Technical Program Manager, Bug Bounty image - Rise Careers
Job details

Senior Technical Program Manager, Bug Bounty

HackerOne is the global leader in human-powered security, harnessing the creativity of the world’s largest community of security researchers with cutting-edge AI to protect your digital assets. The HackerOne Platform combines the expertise of our elite community and the most up-to-date vulnerability database to pinpoint critical security flaws across your attack surface. Our integrated solutions, including bug bounty, pentesting, code security audits, spot checks, and AI red teaming, ensure continuous vulnerability discovery and management throughout the software development lifecycle. Trusted by industry leaders such as Coinbase, General Motors, GitHub, Goldman Sachs, Hyatt, PayPal, and the U.S. Department of Defense, HackerOne was named a Best Workplace for Innovators by Fast Company in 2023 and a Most Loved Workplace for Young Professionals in 2024.

Senior Technical Program Manager 

HackerOne is the global leader in human-powered security, harnessing the creativity of the world’s largest community of security researchers with cutting-edge AI to protect your digital assets. The HackerOne Platform combines the expertise of our elite community and the most up-to-date vulnerability database to pinpoint critical security flaws across your attack surface. Our integrated solutions, including bug bounty, pentesting, code security audits, spot checks, and AI red teaming, ensure continuous vulnerability discovery and management throughout the software development lifecycle. Trusted by industry leaders such as Coinbase, General Motors, GitHub, Goldman Sachs, Hyatt, PayPal, and the U.S. Department of Defense, HackerOne was named a Best Workplace for Innovators by Fast Company in 2023 and a Most Loved Workplace for Young Professionals in 2024.

Position Summary 

As a Senior Technical Program Manager, you’ll lead HackerOne’s internal bug bounty program, leveraging your expertise in program management, security vulnerabilities, and collaboration.

At HackerOne, we believe hacker-powered security is essential to securing the internet, and our program operates at scale, leveraging our large, diverse community of hackers.

In this pivotal role, you’ll ensure our program operates with excellence and continuously improves, keeping our products and services resilient and thoroughly tested for evolving security threats.

What You Will Do

  • Oversee the entire HackerOne bug bounty program, ensuring smooth operations and data-driven continuous improvement.

    • Maintain and update program scope, bounty table, and policies to align with evolving security needs.

    • Ensure timely triage and resolution of reported vulnerabilities, working closely with development teams.

    • Manage hacker relationships, fostering a positive and productive community.

    • Effectively communicate updates, trends, and metrics for the program to both internal and external stakeholders.

  • Use metrics to analyze program and vulnerability trends to proactively identify potential risks and implement preventive measures.

  • Reduce mediations and report backlog by streamlining processes and policies for the program, improving triage efficiency, and setting and enforcing quality standards for vulnerability submissions.


Minimum Qualifications 

  • 6+ years of experience as Technical Program Manager or similar role in a security-focused organization. 

  • Experience managing bug bounty programs or similar initiatives working with or managing hacker communities.

  • Strong understanding of common security vulnerabilities, CVSS scoring, and vulnerability management workflows.

  • Excellent communication and interpersonal skills, with the ability to effectively communicate with technical and non-technical stakeholders.

  • Must be based remotely in the US. HackerOne is a digital-first company. This model offers our employees flexibility in time and location. All employees must be able to work and excel in a remote environment.

Preferred Qualifications

  • Familiarity with bug bounty platforms like HackerOne.

  • Ability to work independently and as part of a cross-functional, distributed team.

  • Ability to analyze data, develop actionable insights, and make data-driven decisions for continuous improvement.

#LI-Remote

#LI-SM1

We are a Circle Back Initiative Employer and commit to responding to every applicant.

We're committed to building a global team! For certain roles outside the United States, U.K., and the Netherlands, we partner with Remote.com as our Employer of Record (EOR).

Employment at HackerOne is contingent on a background check.

HackerOne is an Equal Opportunity Employer in the terms and conditions of employment for all employees and job applicants without regard to race, color, religion, sex, sexual orientation, age, gender identity or gender expression, national origin, pregnancy, disability or veteran status, or any other protected characteristic as outlined by international, federal, state, or local laws.

This policy applies to all HackerOne employment practices, including hiring, recruiting, promotion, termination, layoff, recall, leave of absence, compensation, benefits, training, and apprenticeship. HackerOne makes hiring decisions based solely on qualifications, merit, and business needs at the time.

For US based roles only: Pursuant to the San Francisco Fair Chance Ordinance, all qualified applicants with arrest and conviction records will be considered for the position.

HackerOne Values

HackerOne commits to maintaining a strong, inclusive culture built for our employees and our community of hackers. We are driven by our five core values. We recognize that our mission is bigger than us, and therefore act with integrity at all times. As a team, we believe that transparency builds trust so we default to disclosure in our communications. Each individual executes with excellence, creating an environment of greater alignment and greater autonomy. We win as a team and respect all people to empower everyone to learn from each other, innovate, and grow.

HackerOne Glassdoor Company Review
4.5 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
HackerOne DE&I Review
3.9 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
CEO of HackerOne
HackerOne CEO photo
Marten Mickos
Approve of CEO
What You Should Know About Senior Technical Program Manager, Bug Bounty, HackerOne

If you’re looking to take the next step in your career as a Senior Technical Program Manager, HackerOne is the place to be! We’re the global leader in human-powered security, and we're on the hunt for a professional who can lead our internal bug bounty program. This position is not just about managing processes; it's also about being at the forefront of cybersecurity innovation. As a Senior Technical Program Manager at HackerOne, you’ll tap into your rich experience in program management and your understanding of security vulnerabilities to propel our program to new heights. Here, you’ll oversee everything from maintaining our bounty table to ensuring timely resolutions of reported vulnerabilities. You’ll work closely with our engaging community of hackers to foster strong relationships and facilitate their contributions, ensuring our program not only meets but exceeds industry standards. You’ll also dive deep into data analytics, using metrics to highlight trends that can inform future improvements and help mitigate potential security risks. With a dynamic set of responsibilities that ranges from collaborating with development teams to effectively communicating updates to stakeholders, this role is pivotal in keeping our operations smooth and our quality exceptional. At HackerOne, you won’t just be a cog in the machine; you'll be part of a vibrant culture that values integrity, transparency, and teamwork. If you’re excited about the idea of shaping the future of security and thrive in a remote-first, flexible environment, we’d love to hear from you!

Frequently Asked Questions (FAQs) for Senior Technical Program Manager, Bug Bounty Role at HackerOne
What are the primary responsibilities of a Senior Technical Program Manager at HackerOne?

As a Senior Technical Program Manager at HackerOne, your primary responsibilities include overseeing the entire bug bounty program, ensuring smooth operations, managing relationships with hackers, and collaborating with development teams to resolve reported vulnerabilities. You'll make data-driven decisions to continuously optimize the program while effectively communicating updates and metrics to stakeholders.

Join Rise to see the full answer
What qualifications are needed to apply for the Senior Technical Program Manager role at HackerOne?

To qualify for the Senior Technical Program Manager position at HackerOne, candidates should have at least 6 years of experience in a similar role, preferably in a security-focused organization. Experience managing bug bounty programs and a strong understanding of security vulnerabilities and related workflows are essential. Excellent communication skills are also crucial for interacting with technical and non-technical stakeholders.

Join Rise to see the full answer
How does a Senior Technical Program Manager at HackerOne ensure the effectiveness of the bug bounty program?

A Senior Technical Program Manager at HackerOne ensures the effectiveness of the bug bounty program by maintaining up-to-date policies, overseeing triage processes, analyzing metrics for trends, and proactively identifying and mitigating risks. Continuous improvement is a key focus, making data-driven adjustments to improve the program's operation and effectiveness.

Join Rise to see the full answer
Is remote work an option for the Senior Technical Program Manager position at HackerOne?

Yes, the Senior Technical Program Manager position at HackerOne is designed for remote work. HackerOne supports a digital-first model that offers employees flexibility in their time and location, ensuring that all team members can excel in a remote environment.

Join Rise to see the full answer
What distinguishes HackerOne as a workplace for professionals in cybersecurity?

HackerOne stands out as a premier workplace for cybersecurity professionals due to its commitment to innovation, excellence, and inclusivity. Named a Best Workplace for Innovators in 2023, HackerOne fosters a culture that values integrity, transparency, and team collaboration, making it an exceptional environment for personal and professional growth.

Join Rise to see the full answer
Common Interview Questions for Senior Technical Program Manager, Bug Bounty
Can you describe your experience leading security-focused programs?

When answering, provide examples of your previous roles where you led security-focused initiatives. Highlight specific skills such as program management and your familiarity with security vulnerabilities, illustrating how these experiences equip you for the Senior Technical Program Manager role at HackerOne.

Join Rise to see the full answer
How do you manage relationships with different stakeholders in a bug bounty program?

Discuss your approach to stakeholder management, emphasizing your communication and interpersonal skills. Talk about how you build trust and cooperation among hackers, developers, and other stakeholders to create a positive and efficient working environment.

Join Rise to see the full answer
What strategies do you use to analyze and interpret data trends in security programs?

Share your experience with data analytics, using real examples of how you’ve applied metrics to drive decisions and improvements in past roles. Highlight tools you've used and the impact of your insights on program outcomes.

Join Rise to see the full answer
Describe a challenging security vulnerability you encountered and how you managed it.

Provide a specific example of a significant vulnerability you faced, detailing your approach to triage and resolution. Explain how you collaborated with your team to address the issue and what the outcome was, demonstrating your problem-solving abilities.

Join Rise to see the full answer
How would you handle a backlog of vulnerability reports?

Discuss the importance of an organized and efficient workflow to manage backlogs. Explain the strategies you would implement, such as optimizing the triage process, setting quality standards, and leveraging metrics to prioritize issues effectively.

Join Rise to see the full answer
What role does communication play in managing a bug bounty program?

Emphasize the crucial role communication plays at all levels of the bug bounty program. Discuss the importance of timely updates and clarity in conveying information to stakeholders, and how effective communication enhances collaboration and reduces misunderstandings.

Join Rise to see the full answer
What qualities do you think are essential for a successful bug bounty program manager?

Talk about qualities such as strong analytical skills, effective communication, adaptability, and a deep understanding of cybersecurity. Include how these attributes help foster a thriving relationship with the hacker community and ensure program success at HackerOne.

Join Rise to see the full answer
How do you keep up with the latest trends in cybersecurity?

Discuss the various resources you utilize, including industry forums, conferences, courses, and community engagement. Emphasize your commitment to lifelong learning and desire to bring new insights to the Senior Technical Program Manager role at HackerOne.

Join Rise to see the full answer
Can you explain CVSS scoring and its importance in vulnerability management?

Provide a brief overview of CVSS scoring, explaining its use in assessing the severity of vulnerabilities. Highlight its importance in prioritizing risk management efforts within a bug bounty program to help ensure that more critical vulnerabilities receive prompt attention.

Join Rise to see the full answer
Why do you want to work at HackerOne as a Senior Technical Program Manager?

When answering, share your passion for hacker-powered security and how it aligns with your career goals. Mention your admiration for HackerOne’s innovative culture and commitment to collaboration, as well as how you believe your skills can contribute to the company’s continued success.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
HackerOne Remote No location specified
Posted 12 days ago
Photo of the Rise User
AECOM Remote Bristol, United Kingdom
Posted 3 days ago
Photo of the Rise User
Posted 4 days ago
Photo of the Rise User
Posted 5 days ago
Photo of the Rise User
Posted 4 days ago
Photo of the Rise User
Posted 13 days ago
Photo of the Rise User
Posted 3 days ago

HackerOne is leading a cybersecurity platform that connects businesses with penetration testers and cybersecurity researchers. HackerOne's customers include The U.S. Department of Defense, Google, GitHub, Microsoft, Nintendo and more.

103 jobs
MATCH
Calculating your matching score...
BADGES
Badge ChangemakerBadge Diversity ChampionBadge Flexible CultureBadge Work&Life Balance
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
December 17, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!