Vulnerability Management Engineer
2 weeks ago
Discord is used by over 200 million people every month for many different reasons, but there’s one thing that nearly everyone does on our platform: play video games. Over 90% of our users play games, spending a combined 1.5 billion hours playing thousands of unique titles on Discord each month. Discord plays a uniquely important role in the future of gaming. We are focused on making it easier and more fun for people to talk and hang out before, during, and after playing games.
We are looking for a well-rounded Security Engineer reporting to the Product Security Engineering Manager to join us in identifying, tracking, and resolving threats and vulnerabilities found in the Discord platform to help protect our users and employees. If you are an Engineer with the desire to find and solve complex technical challenges, work with other engineers in the Security and Product departments, a deep sense of curiosity to “find the problem, fix the problem”, and an endless desire to improve Discord, read on
What you'll do- Operate the Bug Bounty Program
- Validate and triage identified vulnerabilities.
- Work with teams across Engineering to solve reported problems
- Track remediation tasks across teams
- Write code to solve reported problems as necessary
- Build tools and processes with an emphasis on self-service, automation, and repeatability, to help identify and solve reported issues
- You have 2+ years experience securing production applications.
- You have 1+ years of experience with application security tooling and processes, including code review, static code analysis, penetration testing, or risk management.
- You have a working knowledge of Application Security concepts and best practices, particularly the OWASP Top 10.
- You have can program in at least one general purpose programming language (e.g. Python, Rust, or Node).
- Previous experience with Bug Bounty Programs (HackerOne, Bugcrowd, etc.)
The US base salary range for this full-time position is $159,000 to $175,000 + equity + benefits. Our salary ranges are determined by role and level. Within the range, individual pay is determined by additional factors, including job-related skills, experience, and relevant education or training. Please note that the compensation details listed in US role postings reflect the base salary only, and do not include equity, or benefits.
Why Discord?
Discord plays a uniquely important role in the future of gaming. We're a multiplatform, multigenerational and multiplayer platform that helps people deepen their friendships around games and shared interests. We believe games give us a way to have fun with our favorite people, whether listening to music together or grinding in competitive matches for diamond rank. Join us in our mission Your future is just a click away
Accepted file types: pdf, doc, docx, txt, rtf
Enter manually
Accepted file types: pdf, doc, docx, txt, rtf
Education
School Select...
Degree Select...
Select...
Why do you want to work at Discord? *
LinkedIn Profile
Website
How did you hear about this job?
Are you legally authorized to work in the United States for our Company? * Select...
Are you currently located in the US? * Select...
Demographic Questions for DiscordWe’d like to know a little more about you. Answering is completely voluntary, but we'll be forever grateful since the information will help us evaluate and improve our recruitment, diversity and belonging efforts. Whether or not you choose to answer the questions will not affect your job application with us. Any information you submit here will be kept secure, pseudonymized, confidential and completely separate from your personal data and job application. By answering this survey, you consent to our processing of your responses for the purposes listed above. You have the right to withdraw your consent at any time by contacting us.
- Gender Identity: A person's internal perception of their gender and how they label themselves (may or may not correspond to gender assigned at birth).
- Race/Ethnicity: A person’s racial or ethnic identity.
- Sexual Orientation: A person's sexual identity in relation to the gender to which they are attracted.
- Disability: A person who has a physical or mental impairment which substantially, or occasionally, limits one or more of their major life activities.
- Military Service: A person who has spent time serving in any branch of the military (may be retired or active).
Race and Ethnicity Select...
Disability Status Select...
I consider myself a member of the LGBTQ+ community Select...
Military Veteran Status Select...
Voluntary Self-IdentificationFor government reporting purposes, we ask candidates to respond to the below self-identification survey.Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiringprocess or thereafter. Any information that you do provide will be recorded and maintained in aconfidential file.
As set forth in Discord’s Equal Employment Opportunity policy,we do not discriminate on the basis of any protected group status under any applicable law.
If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection.As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measurethe effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categoriesis as follows:
A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.
A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.
An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.
An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.
Select...
Voluntary Self-Identification of DisabilityForm CC-305
Page 1 of 1
OMB Control Number 1250-0005
Expires 04/30/2026
Voluntary Self-Identification of DisabilityForm CC-305 Page 1 of 1 OMB Control Number 1250-0005 Expires 04/30/2026
Why are you being asked to complete this form?
We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years.
Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp .
How do you know if you have a disability?A disability is a condition that substantially limits one or more of your “major life activities.” If you have or have ever had such a condition, you are a person with a disability. Disabilities include, but are not limited to:
- Alcohol or other substance use disorder (not currently using drugs illegally)
- Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, HIV/AIDS
- Blind or low vision
- Cancer (past or present)
- Cardiovascular or heart disease
- Celiac disease
- Cerebral palsy
- Deaf or serious difficulty hearing
- Diabetes
- Disfigurement, for example, disfigurement caused by burns, wounds, accidents, or congenital disorders
- Epilepsy or other seizure disorder
- Gastrointestinal disorders, for example, Crohn's Disease, irritable bowel syndrome
- Intellectual or developmental disability
- Mental health conditions, for example, depression, bipolar disorder, anxiety disorder, schizophrenia, PTSD
- Missing limbs or partially missing limbs
- Mobility impairment, benefiting from the use of a wheelchair, scooter, walker, leg brace(s) and/or other supports
- Nervous system condition, for example, migraine headaches, Parkinson’s disease, multiple sclerosis (MS)
- Neurodivergence, for example, attention-deficit/hyperactivity disorder (ADHD), autism spectrum disorder, dyslexia, dyspraxia, other learning disabilities
- Partial or complete paralysis (any cause)
- Pulmonary or respiratory conditions, for example, tuberculosis, asthma, emphysema
- Short stature (dwarfism)
- Traumatic brain injury
PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.
#J-18808-Ljbffr-
Vulnerability Management Engineer
3 weeks ago
San Francisco, United States Discord Full timeDiscord is used by over 200 million people every month for many different reasons, but there’s one thing that nearly everyone does on our platform: play video games. Over 90% of our users play games, spending a combined 1.5 billion hours playing thousands of unique titles on Discord each month. Discord plays a uniquely important role in the future of...
-
Vulnerability Management Engineer @ Discord
3 weeks ago
San Francisco, United States Cyber Crime Full timeDiscordDiscord is great for playing games and chilling with friends, or even building a worldwide community. Customize your own space to talk, play, and hang out.Discord is used by over 200 million people every month for many different reasons, but there’s one thing that nearly everyone does on our platform: play video games. Over 90% of our users play...
-
Vulnerability Management Security Engineer
6 days ago
San Mateo, California, United States Roblox Full timeJob Title: Vulnerability Management Security EngineerAbout Roblox:Roblox is the ultimate virtual universe where users can create, share experiences and be anything they imagine. It attracts millions of people who explore, create, play, learn and connect with friends in 3D immersive digital experiences created by a global community.We are building tools and...
-
San Francisco, California, United States DocuSign Full timeJob SummaryDocusign is seeking a highly experienced Cybersecurity Leader to head our Vulnerability Management team. As a key member of our security ecosystem, you will be responsible for leading the detection, assessment, and remediation of vulnerabilities across the enterprise.About UsDocusign brings agreements to life, serving over 1.5 million customers...
-
Cybersecurity Research Engineer
2 days ago
San Francisco, California, United States Palo Alto Networks Full timeCybersecurity Research Engineer - Scalable Vulnerability AssessmentWe're seeking a highly skilled Cybersecurity Research Engineer to join our team at Palo Alto Networks. As a key member of our Vulnerability Assessment Research team, you will play a critical role in ensuring the security and integrity of our exposure management scanning platform, Cortex.Your...
-
San Francisco, California, United States Yoh Full timeAbout the JobYoh, a Day & Zimmermann company, is seeking an experienced Senior Vulnerability Management Security Specialist to join our team in McKinney, TX. As a key member of our cybersecurity team, you will be responsible for identifying, assessing, and mitigating security vulnerabilities across our enterprise infrastructure and...
-
Vulnerability Research and Development Manager
2 weeks ago
San Antonio, Texas, United States Northrop Grumman Full timeJob DescriptionAs a Sr. Principal Software Engineer: Vulnerability Research - Reverse Engineering, you will lead the development of solutions to national security threats with products that may involve kernel development, reverse engineering or vulnerability research of network and communication systems.You will design, develop, document, test and debug low...
-
Vulnerability Detection Specialist
2 weeks ago
San Bruno, California, United States YouTube Full timeDo you want to make a real impact on the world by ensuring the security of online platforms? We're looking for an experienced cybersecurity professional to join our team as a Vulnerability Detection Specialist at YouTube.About the JobThis is a full-time position with a base salary range of $189,000-$284,000 per year, depending on location and experience. In...
-
Care Manager for Vulnerable Populations
5 days ago
San Francisco, California, United States Social Service Staffing & Recruiting, Inc. Full timeCare Manager Job DescriptionWe are a staffing and recruiting agency specializing in social services, and we have an exciting opportunity for a skilled Care Manager to join our team in San Francisco. As a Care Manager, you will work closely with our clients to provide intensive case management services, ensuring their well-being and...
-
IT Security Specialist
6 days ago
San Diego, California, United States MILLENNIUMSOFT Full timeJob Title: IT Security Specialist - Vulnerability ManagementEstimated Salary: $90,000 - $120,000 per yearThis role requires a highly motivated and dynamic individual to support the Threat & Vulnerability team within Security Operations. As an IT Security Specialist - Vulnerability Management, you will be responsible for identifying and proactively mitigating...
-
Cybersecurity Vulnerability Research Specialist
3 weeks ago
San Francisco, California, United States Palo Alto Networks Full timeEmbark on a challenging role with Palo Alto Networks, where you will contribute to the development of industry-leading vulnerability management solutions. As a Cybersecurity Vulnerability Research Specialist, you will be responsible for conducting research and testing, enhancing automation processes, and ensuring a smooth workflow for identifying,...
-
Experienced Engineering Manager, Security
1 month ago
San Francisco, United States Plaid Inc Full timeExperienced Engineering Manager, SecurityUnited States | Full-timeWe enable Plaid to quickly build safe and secure products while ensuring that Plaid's users, data, and infrastructure remains protected.We believe that the way people interact with their finances will drastically improve in the next few years. We’re dedicated to empowering this...
-
Cyber Vulnerability Reseacher
4 weeks ago
San Diego, United States ActioNet Full timeDescription ActioNet has an immediate opportunity for a Cyber Vulnerability Researcher requiring a Top Secret clearance located in Camp Pendleton, CA.. ActioNet is an IT service provider and solutions integrator headquartered in Vienna, VA that works with the Federal Government and Department of Defense. In this role, you will be responsible for Network...
-
Cyber Vulnerability Reseacher
4 weeks ago
San Diego, United States ActioNet Full timeDescription ActioNet has an immediate opportunity for a Cyber Vulnerability Researcher requiring a Top Secret clearance located in Camp Pendleton, CA.. ActioNet is an IT service provider and solutions integrator headquartered in Vienna, VA that works with the Federal Government and Department of Defense. In this role, you will be responsible for Network...
-
Information Security Analyst
4 weeks ago
San Diego, United States MILLENNIUMSOFT Full timeJob Title - Information Security Analyst [Vulnerability Management] Location - San Diego, CA or Franklin Lakes, NJ [Remote OK] Duration 12 Months Work hours: 8am-5pm, 40 hours/week Client: Medical Device Company Employment Type: Contract on W2 (Need US Citizens Or GC Holders Only) Remote OK, would prefer NJ or San Diego Description: 3 must haves on the...
-
System Vulnerability Analyst 2
3 months ago
San Antonio, United States iNovex Information Systems Full timeJob Brief Vulnerability analysis, penetration testing, computer forensics. Job Description We're searching fortalented individuals who provide system vulnerability analysis.This program will maximize the effectiveness and efficiency of our country's most important missions both at home and abroad. If you are ready to support a high-performing team that truly...
-
Information Security Analyst
7 months ago
San Diego, United States MILLENNIUMSOFT Full timeJob Title - Information Security Analyst [Vulnerability Management] Location - San Diego, CA or Franklin Lakes, NJ [Remote OK] Duration – 12+ Months Work hours: 8am-5pm, 40 hours/week Client: Medical Device Company Employment Type: Contract on W2 (Need US Citizens Or GC Holders Only) Remote OK, would prefer NJ or San Diego Description: 3 must...
-
Security Engineer
4 weeks ago
San Francisco, United States Factory Full timeFactory is seeking a talented Security Engineer to join our team. In this role, you will play a critical role in developing and maintaining the security foundation of our platform. You will conduct in-depth code reviews, implement security best practices, and influence the overall security strategy. Your expertise in TypeScript, Python, Kubernetes, CI/CD,...
-
Security Engineer
2 months ago
San Francisco, United States Factory Full timeFactory is seeking a talented Security Engineer to join our team. In this role, you will play a critical role in developing and maintaining the security foundation of our platform. You will conduct in-depth code reviews, implement security best practices, and influence the overall security strategy. Your expertise in TypeScript, Python, Kubernetes, CI/CD,...
-
Security Engineer
2 months ago
San Francisco, United States Factory Full timeFactory is seeking a talented Security Engineer to join our team. In this role, you will play a critical role in developing and maintaining the security foundation of our platform. You will conduct in-depth code reviews, implement security best practices, and influence the overall security strategy. Your expertise in TypeScript, Python, Kubernetes, CI/CD,...