HackerOne
Cybersecurity
ProductSecurityAnalyst
Neural analysis suggests this role is
optimal for Mid candidates.
“Product Security Analyst at HackerOne. Skills: Vulnerability assessment, Risk assessment, Severity assessment, Technical summary composition, Communication with hackers and customers. Evaluate assigned vulnerability reports submitted by hackers to determine the validity, risk and severity to HackerOne customers. Collaborate with hackers to address missing information from reports”
What You'll Achieve.
Deliver high-impact vulnerabilities to the top bug bounty programs in the industry; Ensure every valid bug report is reproducible and provides value to HackerOne customers; Measurable, continuous reduction of cyber risk for enterprises
Industry & Context.
Proactively identify and solve issues
Night shift, Weekend support, Work 4-5 days a week in office, Regular coverage of US business hours
What They're Looking For.
Must Have
Proven experience with vulnerability disclosure and bug bounty, 3+ years of hands-on experience doing security testing or ethical hacking on web and mobile applications, technical knowledge of OWASP top 10, Comfortable using security testing tools including Burpsuite, Excellent written and verbal communication skills, Experience using frameworks such as CVSS, Self-motivated and able to manage your time and energy output while maintaining a consistent and sustainable operational rhythm, Availability to work weekends, Regular coverage of US business hours, English fluency
Nice to Have
Experience managing a bug bounty program is a plus
What You'll Do.
Evaluate assigned vulnerability reports submitted by hackers to determine the validity
risk and severity to HackerOne customers
Collaborate with hackers to address missing information from reports
Educate the HackerOne community members when reports are invalid
Compose a technical summary for each valid report that includes clear and concise details regarding the impact
steps to reproduce and remediation advice
Ensure clear and efficient communication between hackers and customers
Proactively identify and solve issues
Accept and quickly respond to delegated tasks
Assess vulnerability findings and determine whether the submission is valid based on program policies
Independently reproduce reported vulnerabilities in a test environment
Compose a technical summary for valid findings
How You'll Work.
Team & Collaboration
Collaborate with hackers; Ensure clear and efficient communication between hackers and customers; Win as a team to solve problems
Communication Scope
Excellent written and verbal communication skills; Clear and concise details regarding the impact, steps to reproduce and remediation advice; Clear and efficient communication between hackers and customers
Process & Methodology
Manage your time and energy output
Full Job Description
HackerOne is a global leader in Continuous Threat Exposure Management (CTEM). The HackerOne Platform unites agentic AI solutions with the ingenuity of the world’s largest community of security researchers to continuously discover, validate, prioritize, and remediate exposures across code, cloud, and AI systems. Through solutions like bug bounty, vulnerability disclosure, agentic pentesting, AI red teaming, and code security, HackerOne delivers measurable, continuous reduction of cyber risk for enterprises. Industry leaders, including Anthropic, Crypto.com http://Crypto.com, General Motors, Goldman Sachs, Lufthansa, Uber, UK Ministry of Defence, and the U.S. Department of Defense, trust HackerOne to safeguard their digital ecosystems. HackerOne was recognized in Gartner’s Emerging Tech Impact Radar: AI Cybersecurity Ecosystem report for its leadership in AI Security Testing and has been named a Most Loved Workplace for Young Professionals (2024). HackerOne is at a pivotal inflection point in the security industry. Offensive security is no longer optional – it is the standard for forward-thinking companies that want to build trust and resilience in a world where AI-driven innovation and adversaries are moving faster than ever. With the industry shifting, HackerOne stands apart: we combine the ingenuity of the largest security research community with a best-in-class AI-powered platform, trusted by the world’s top organizations. HackerOne Values HackerOne is dedicated to fostering a strong and inclusive culture. HackerOne is Customer Obsessed and prioritizes customer outcomes in our decisions and actions. We Default to Disclosure by operating with transparency and integrity, ensuring trust and accountability. Employees, researchers, customers, and partners Win Together by fostering empowerment, inclusion, respect, and accountability. PRODUCT SECURITY ANALYST LOCATION : PUNE WORKING MODEL : ON-SITE SHIFT : NIGHT SHIFT AND WEEKEND SUPPORT HackerOne is seeking a dynamic
Applying for this Product Security Analyst role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Ashby
- Ashby is a fast modern ATS — most applications take under 3 minutes.
- The resume parser is strong; verify parsed experience dates and job titles.
- Custom screening questions are often scored algorithmically — answer completely.
- Location field affects geo-based screening; use your actual metro area.
ANONYMOUS · UNFILTERED
What do employees actually say about HackerOne?
Real rants from real employees. Read before you apply.