Vulnerability Management Engineer

3 Weeks ago • 2 Years + • Cyber Security

About the job

Job Description

Discord seeks a Vulnerability Management Engineer to identify, track, and resolve security threats and vulnerabilities within its platform. Responsibilities include operating the Bug Bounty Program, validating and triaging vulnerabilities, collaborating with engineering teams on remediation, tracking tasks, writing code to solve issues, and building self-service tools and processes for vulnerability identification and resolution. The role requires experience securing production applications, familiarity with application security tooling (code review, static analysis, penetration testing), and knowledge of OWASP Top 10. Programming skills (Python, Rust, Node.js) are essential, and experience with Bug Bounty Programs (HackerOne, Bugcrowd) is preferred.
Must have:
  • 2+ years securing production applications
  • 1+ year experience with application security tooling
  • Knowledge of OWASP Top 10
  • Programming skills (Python, Rust, or Node)
  • Bug Bounty Program experience
Perks:
  • Equity
  • Benefits

Discord is used by over 200 million people every month for many different reasons, but there’s one thing that nearly everyone does on our platform: play video games. Over 90% of our users play games, spending a combined 1.5 billion hours playing thousands of unique titles on Discord each month. Discord plays a uniquely important role in the future of gaming. We are focused on making it easier and more fun for people to talk and hang out before, during, and after playing games.

We are looking for a well-rounded Security Engineer reporting to the Product Security Engineering Manager to join us in identifying, tracking, and resolving threats and vulnerabilities found in the Discord platform to help protect our users and employees. If you are an Engineer with the desire to find and solve complex technical challenges, work with other engineers in the Security and Product departments, a deep sense of curiosity to “find the problem, fix the problem”, and an endless desire to improve Discord, read on!

What you'll do

  • Operate the Bug Bounty Program
  • Validate and triage identified vulnerabilities.
  • Work with teams across Engineering to solve reported problems
  • Track remediation tasks across teams
  • Write code to solve reported problems as necessary
  • Build tools and processes with an emphasis on self-service, automation, and repeatability, to help identify and solve reported issues

Who you are

  • You have 2+ years experience securing production applications.
  • You have 1+ years of experience with application security tooling and processes, including code review, static code analysis, penetration testing, or risk management.
  • You have a working knowledge of Application Security concepts and best practices, particularly the OWASP Top 10.
  • You have can program in at least one general purpose programming language (e.g. Python, Rust, or Node).
  • Previous experience with Bug Bounty Programs (HackerOne, Bugcrowd, etc.)

 

#LI-Remote

The US base salary range for this full-time position is $159,000 to $175,000 + equity + benefits. Our salary ranges are determined by role and level. Within the range, individual pay is determined by additional factors, including job-related skills, experience, and relevant education or training. Please note that the compensation details listed in US role postings reflect the base salary only, and do not include equity, or benefits.

Why Discord? 

Discord plays a uniquely important role in the future of gaming. We're a multiplatform, multigenerational and multiplayer platform that helps people deepen their friendships around games and shared interests. We believe games give us a way to have fun with our favorite people, whether listening to music together or grinding in competitive matches for diamond rank. Join us in our mission! Your future is just a click away!

Check out our inclusion, diversity and purpose efforts, company principles, or learn more about the Life @ Discord experience!

View Full Job Description
$159.0K - $175.0K/yr (Outscal est.)
$167.0K/yr avg.
San Francisco, California, United States

Add your resume

80%

Upload your resume, increase your shortlisting chances by 80%

About The Company

Founded in 2015, Discord is a voice, video and text app that helps friends and communities come together to hang out and explore their interests - from artists and activists, to study groups, sneakerheads, plant parents, and more. With 150 million monthly users across 19 million active communities, called servers, Discord has grown to become one of the most popular communications services in the world. Discord was built without selling ads or user data and instead, offers a premium subscription called Nitro that gives users special perks like higher quality streams and fun customizations.


And we're hiring! If this strikes a chord with you, come build belonging with us: https://discordapp.com/jobs for openings.

San Francisco, California, United States (Remote)

San Francisco, California, United States (Remote)

San Francisco, California, United States (Remote)

San Francisco, California, United States (Remote)

California, United States (Remote)

San Francisco, California, United States (Remote)

San Francisco, California, United States (Remote)

San Francisco, California, United States (Remote)

San Francisco, California, United States (Remote)

View All Jobs

Get notified when new jobs are added by Discord

Similar Jobs

Scopely - Head of Product

Scopely, Spain (On-Site)

Spyke Games - Backend Game Developer

Spyke Games, Türkiye (On-Site)

Cloud Imperium Games - Gameplay Capture Artist

Cloud Imperium Games, United Kingdom (On-Site)

Patterned Learning Career - Junior Data Scientist Engineer

Patterned Learning Career, (Remote)

ION - Cyber Security Analyst, Italy

ION, Italy (On-Site)

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Discord - Senior Software Engineer, Partner Engineering

Discord, United States (Remote)

Activision - Expert Animation Engineer - Infinity Ward

Activision, United States (On-Site)

Hypersonic Laboratories - Technical Artist

Hypersonic Laboratories, (Remote)

Fortis Games - Sr. Product Manager, Social and Multiplayer

Fortis Games, Canada (Remote)

Wargaming - Senior Gameplay Programmer (Steel Hunters)

Wargaming, United Kingdom (Hybrid)

IGG - Senior Gameplay/System Designer

IGG, Canada (On-Site)

CD PROJEKT RED - Engineering Director, Network

CD PROJEKT RED, United States (On-Site)

Hire Phoenix Consulting - Ludo Game Developer needed (Freelance opportunity)

Hire Phoenix Consulting, India (Remote)

Keywords Studios (Player Support) - Senior Game Designer at The Multiplayer Group (MPG)

Keywords Studios (Player Support), United Kingdom (Remote)

Get notifed when new similar jobs are uploaded

Jobs in San Francisco, California, United States

Zoox - Senior / Staff Failure Analysis Engineer

Zoox, United States (On-Site)

Mattel  Inc  - Cook Part Time

Mattel Inc , United States (On_site)

Barbaricum - Intelligence Data Integrator - SOCOM

Barbaricum, United States (On-Site)

Warner Bros Discovery - Senior Software Engineer - JavaScript / FullStack

Warner Bros Discovery, United States (On-Site)

IGT - Accounting Manager

IGT, United States (On-Site)

Jobot - Lead Gameplay Animator

Jobot, United States (Remote)

Fanatics - Staff Accountant

Fanatics, United States (Hybrid)

The Walt Disney Company - Housekeeping Houseperson - Full & Part Time, $29.78/Hour

The Walt Disney Company, United States (On-Site)

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Forescout Technologies  Inc  - Vedere Labs Cyber Security Internship

Forescout Technologies Inc , Netherlands (On-Site)

Palo Alto Networks - Solutions Consultant - CA State Government

Palo Alto Networks, United States (On_site)

Head Digital Works - Lead Cloud Security Engineer

Head Digital Works, India (On-Site)

Egnyte - Sr Solutions Engineer - AEC

Egnyte, United States (On-Site)

Axinous - Senior Product Manager, Identity

Axinous, United States (Hybrid)

Exabeam - Software Engineer II - Frontend

Exabeam, India (On-Site)

Ubisoft - Security Researcher

Ubisoft, Canada (On_site)

Get notifed when new similar jobs are uploaded