Source Job

Global

  • Ownership and execution of XBOW across public bug bounty programs.
  • Assess targets, coordinate attack capabilities, and manage testing activity.
  • Review vulnerabilities, prepare disclosure reports, and maintain relationships.

7 jobs similar to Security Researcher

Jobs ranked by similarity.

US

  • Own and scale XBOW’s Developer & Security Relations programs.

XBOW is building the future of offensive security. They are creating a platform that puts security ahead in the arms race, backed by Sequoia, Altimeter, and other leading investors. They are a team of builders, hackers, and researchers who thrive on solving problems others think are impossible.

$55,000–$85,000/yr
US

  • Leverage your sysadmin background to set up research environments, manage lab infrastructure, and ensure our tooling is stable.
  • Assist in simulating threats (Red) while documenting detection gaps and defensive improvements (Blue).
  • Perform data collection, log analysis, and initial vulnerability triaging to support Senior Researchers.

Cobalt is evolving the way we approach security research. They are an equal opportunity employer committed to fair and equitable compensation practices with competitive benefits.

US

  • Own the roadmap for platform scalability, leading the transition to cell-based architectures to support new global regions and data residency requirements.
  • Drive the strategy and execution of enterprise-grade features, including Role-Based Access Control (RBAC), Audit logs, and advanced authentication/identity integrations.
  • Own the development and planning process for Bugcrowd’s APIs, integrating feedback from internal stakeholders and customers to ensure a seamless developer experience.

Bugcrowd empowers organizations to take back control and stay ahead of threat actors. They unite the collective ingenuity and expertise of customers and a trusted alliance of elite hackers with their patented data and AI-powered Security Knowledge Platform™. Bugcrowd is based in San Francisco and New Hampshire, and is supported by General Catalyst, Rally Ventures, Costanoa Ventures, and others.

$192,000–$278,000/yr
US Canada

  • Conduct original research into vulnerabilities in 1Password’s products and the broader identity security landscape; discover and document novel vulnerability classes.
  • Develop proof-of-concept exploits that validate research findings and support engineering teams in understanding and prioritizing remediation efforts.
  • Investigate security risks at the intersection of AI and identity, including prompt injection and data poisoning; address emerging challenges of agentic security.

1Password is building the foundation for a safe, productive digital future. As one of the most loved brands in cybersecurity, they take a human-centric approach in everything from product strategy to user experience. They have over 180,000 businesses, and they are known for their commitment to collaboration, transparent communication, and a culture that values honesty and puts people first.

$246,000–$369,000/yr
US Canada

  • Lead original research into vulnerability classes affecting 1Password’s products and the broader identity security ecosystem.
  • Design and develop sophisticated threat models, attack chains, and proof-of-concept exploits.
  • Lead research into the security implications of AI in identity systems.

1Password is building the foundation for a safe, productive digital future. They are the leader in enterprise password management and pioneered Extended Access Management, a new cybersecurity category. The company has over 180,000 businesses, from Fortune 100 leaders to the world’s most innovative AI companies.

US Unlimited PTO

  • Lead and execute offensive engagements, including red and purple team exercises.
  • Author comprehensive assessment deliverables detailing technical execution and remediation.
  • Contribute to thought leadership through research, conference speaking, and tool development.

GuidePoint Security delivers cybersecurity expertise, solutions, and services to help organizations make better decisions and minimize risk. With over 1,200 employees and strategic partnerships, they serve as a trusted advisor to more than 6,200 customers.

Brazil

  • Assess API and web application vulnerability
  • Engage in internal Red Team activities
  • Test cloud and infrastructure with penetration testing

Pismo, founded in 2016, provides a comprehensive processing platform for banking, card issuing, and financial market infrastructure, helping customers innovate and build next-generation banking and payment solutions. With over 500 employees across 10 countries, Pismo joined Visa in 2024 and leverages their solutions to address technological challenges faced by large banks, marketplaces, and fintech companies.