Vulnerability Management Engineer

Posted 15 Days Ago
Be an Early Applicant
2 Locations
Remote
Junior
Gaming • Machine Learning • Mobile • Software
Discord is a voice, video and text app that helps friends and communities come together to talk and hang out.
The Role
As a Vulnerability Management Engineer, you will operate the Bug Bounty Program, validate and triage vulnerabilities, work with teams across Engineering to resolve issues, and create tools/processes for automation and self-service. Your goal is to enhance security in the Discord platform.
Summary Generated by Built In

Discord is used by over 200 million people every month for many different reasons, but there’s one thing that nearly everyone does on our platform: play video games. Over 90% of our users play games, spending a combined 1.5 billion hours playing thousands of unique titles on Discord each month. Discord plays a uniquely important role in the future of gaming. We are focused on making it easier and more fun for people to talk and hang out before, during, and after playing games.

We are looking for a well-rounded Security Engineer reporting to the Product Security Engineering Manager to join us in identifying, tracking, and resolving threats and vulnerabilities found in the Discord platform to help protect our users and employees. If you are an Engineer with the desire to find and solve complex technical challenges, work with other engineers in the Security and Product departments, a deep sense of curiosity to “find the problem, fix the problem”, and an endless desire to improve Discord, read on!

What you'll do

  • Operate the Bug Bounty Program
  • Validate and triage identified vulnerabilities.
  • Work with teams across Engineering to solve reported problems
  • Track remediation tasks across teams
  • Write code to solve reported problems as necessary
  • Build tools and processes with an emphasis on self-service, automation, and repeatability, to help identify and solve reported issues

Who you are

  • You have 2+ years experience securing production applications.
  • You have 1+ years of experience with application security tooling and processes, including code review, static code analysis, penetration testing, or risk management.
  • You have a working knowledge of Application Security concepts and best practices, particularly the OWASP Top 10.
  • You have can program in at least one general purpose programming language (e.g. Python, Rust, or Node).
  • Previous experience with Bug Bounty Programs (HackerOne, Bugcrowd, etc.)


#LI-Remote
The US base salary range for this full-time position is $159,000 to $175,000 + equity + benefits. Our salary ranges are determined by role and level. Within the range, individual pay is determined by additional factors, including job-related skills, experience, and relevant education or training. Please note that the compensation details listed in US role postings reflect the base salary only, and do not include equity, or benefits.

Why Discord? 
Discord plays a uniquely important role in the future of gaming. We're a multiplatform, multigenerational and multiplayer platform that helps people deepen their friendships around games and shared interests. We believe games give us a way to have fun with our favorite people, whether listening to music together or grinding in competitive matches for diamond rank. Join us in our mission! Your future is just a click away!

Check out our inclusion, diversity and purpose efforts, company principles, or learn more about the Life @ Discord experience!

Top Skills

Node.js
Python
Rust
The Company
HQ: San Francisco, CA
900 Employees
Hybrid Workplace
Year Founded: 2015

What We Do

Discord is a voice, video and text app that helps friends and communities come together to hang out and explore their interests — from artists and activists, to study groups, sneakerheads, plant parents, and more. With 150 million monthly users across 19 million active communities, called servers, Discord has grown to become one of the most popular communications services in the world. Discord was built without selling ads or user data and instead, offers a premium subscription called Nitro that gives users special perks like higher quality streams and fun customizations.

Why Work With Us

Imagine a workplace that not only tolerates but celebrates the unique perspectives each and every person brings to it. One that is representative of the world we want to live, play and work in. Well, imagine no more. Just as Discord gives everyone the power to belong, we are building a workplace that is welcoming and inclusive from the inside out.

Gallery

Gallery

Similar Jobs

CrowdStrike Logo CrowdStrike

ServiceNow Developer, Vulnerability Response and Asset Management (Remote)

Cloud • Information Technology • Sales • Security • Cybersecurity
Remote
USA
10000 Employees
80K-130K Annually

Celonis Logo Celonis

Vulnerability Management Engineer

Big Data • Productivity • Software • Database • Analytics • Business Intelligence • Consulting
Remote
10 Locations
3000 Employees

Coinbase Logo Coinbase

Staff Security Engineer, Vulnerability Management

Cloud • Fintech • Cryptocurrency • NFT • Web3
Remote
USA
3700 Employees
212K-249K Annually

Western Digital Logo Western Digital

Senior Vulnerability Management Engineer

Big Data • Cloud • Hardware • Software
Remote
Milpitas, CA, USA
25132 Employees

Similar Companies Hiring

InCommodities Thumbnail
Renewable Energy • Machine Learning • Information Technology • Energy • Automation • Analytics
Austin, TX
234 Employees
RunPod Thumbnail
Software • Infrastructure as a Service (IaaS) • Cloud • Artificial Intelligence
Charlotte, North Carolina
53 Employees
Hedra Thumbnail
Software • News + Entertainment • Marketing Tech • Generative AI • Enterprise Web • Digital Media • Consumer Web
San Francisco, CA
14 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account