FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Product Security Analyst
HackerOneProduct Security Analyst validating web and mobile vulnerabilities for HackerOne’s AI-powered offensive security platform. Reproducing findings, assessing impact, and guiding remediation for enterprise customers.
Posted 8/4/2026full-timeRemote • California, District of Columbia, Massachusetts, Texas, Washington • 🇺🇸 United StatesMid-LevelSenior💰 $120,000 - $155,000 per yearWebsite
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in security testing and vulnerability research for web and mobile applications, with a strong focus on evaluating and validating vulnerabilities using frameworks like CVSS. Proficient in communicating technical concepts effectively to diverse audiences while improving internal processes and customer experiences.
Highest-signal resume keywords
Security TestingVulnerability ResearchBurp SuiteOWASP Top 10CVSS
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Security TestingVulnerability ResearchEthical HackingVulnerability ValidationAutomation Scripting
Soft Skills
Excellent Communication SkillsAdaptabilityCollaboration
Tools & Technologies
Burp SuiteAutomation WorkflowsAI-Enabled Workflows
Industry Keywords
Vulnerability Disclosure ProgramsBug BountyApplication Security
About the role
Key responsibilities & impact- Evaluate vulnerability reports submitted by security researchers for validity, severity, exploitability, and business impact using data-driven decision making and frameworks such as CVSS
- Independently reproduce reported vulnerabilities across web and mobile applications, validate findings, identify root causes, and communicate impact
- Collaborate with security researchers to gather missing information and clarify technical details
- Communicate clearly and professionally with customers
- Create technically accurate summaries including reproduction steps, impact analysis, and remediation guidance
- Adapt to changing customer environments, program scopes, attack techniques, and operational priorities
- Leverage automation and AI-enabled workflows to improve report analysis and vulnerability triage
- Partner with Technical Services teammates and customer-facing teams to ensure timely vulnerability handling and a high-quality customer experience
- Improve internal processes, documentation, tooling, and triage workflows
- Work some weekend shifts
Requirements
What you’ll need- 3+ years of hands-on experience performing security testing, vulnerability research, or ethical hacking on web and mobile applications
- Strong understanding of common application security vulnerabilities, including the OWASP Top 10
- Experience using security testing tools such as Burp Suite
- Familiarity with vulnerability scoring frameworks including CVSS
- Excellent written and verbal communication skills in English
- Ability to communicate technical concepts clearly to technical and non-technical audiences
- Ability and desire to work occasional weekend shifts
- Experience participating in bug bounty or vulnerability disclosure programs preferred
- Experience reproducing and validating vulnerabilities submitted by external researchers or customers preferred
- Familiarity with scripting or automation used in security testing or operational workflows preferred
- Ability to manage competing priorities and maintain operational excellence in a fast-paced, globally distributed environment preferred
- Must be authorized to work in the applicable country; visa/work permit sponsorship is not available
- Employment is contingent on a background check
Benefits
Comp & perks- Health (medical, vision, dental), life, and disability insurance
- Equity stock options
- Retirement plans
- Paid public holidays and unlimited PTO
- Paid maternity and parental leave
- Leaves of absence, including caregiver leave and leave under CO's Healthy Families and Workplaces Act
- Employee Assistance Program
- Flexible Work approach
- Remote work
- Global team collaboration
- Eligibility may differ by country