img
Permanent

Security Analyst, Bug Bounty

City of London
money-bag Negotiable
A3FC6CD46F8F8261FC1C75E22FA31E23
Posted 3 days ago

Overview

Meta Security is looking for a Security Analyst to join our Bug Bounty program. You will be responsible for communicating with and validating security vulnerabilities from a community of security researchers around the globe. You will gain insights of Meta''s codebase to understand the root cause of each vulnerability, and have the opportunity to play a key role in one of the largest bug bounty programs in the world. The Bug Bounty program incentivizes security researchers to search for, find and report security vulnerabilities across Meta''s family of products, including Facebook, Instagram, WhatsApp and Quest. The program serves as the final level of protection per Meta’s Shift Left operating model, aiming to discover and resolve vulnerabilities that have landed in production and are at risk of being exploited, and acts as a feedback loop for other security efforts.Responsibilities

Analyze, assess, and respond to various security vulnerabilities we receive as part of our Bug Bounty program

Follow up with researchers on unclear reports

Understand the root cause of security vulnerabilities to help the product team fix them

Play an active role in continuing to grow and develop the bug bounty program and other internal security and privacy initiatives

Own expansions to the program, including private bounties

Own critical submissions to resolution - liaise a plan with product teams, advise on the right mitigation strategy

Implement bug fixes and feature enhancements to the program''s public and internal code base

Minimum Qualifications

Familiarity with web security issues (e.g. OWASP top 10)

Ability to follow bug reports, reproduce and triage them

Proficient in clear written and verbal communication

Preferred Qualifications

Participation in bug bounty programs (not necessarily Meta''s bug bounty program)

Experience with analyzing source code to find security vulnerabilities

Contributions to the security community (public research, blogging, presentations, etc)

Experience writing in scripting languages and willingness to learn new languages

Industry:

Internet

#J-18808-Ljbffr

Other jobs of interest...

Octopus Energy Group
City of London
money-bagNegotiable
Janus Henderson Investors
London
money-bagNegotiable
IOVENDO
Maidstone
money-bagNegotiable
SQUAREPOINT CAPITAL
Camden Town with Primrose Hill
money-bagNegotiable
Ministry of Defence
City of London
money-bagNegotiable
AJ Bell
City of London3 days ago
money-bagNegotiable
Ventura UK Technologies Ltd
City of London3 days ago
money-bagNegotiable
identifi Global Resources
Hatfield3 days ago
money-bagNegotiable
Allspring Global Investments
City of London3 days ago
money-bagNegotiable
CLS-Group
City of London3 days ago
money-bagNegotiable

Perform a fresh search...

  • Create your ideal job search criteria by
    completing our quick and simple form and
    receive daily job alerts tailored to you!

Jobs. Straight to your inbox!