- Recherche d'emploi
- Angus, ON
- e commerce
E commerce Offres d'emploi - Angus, ON
Créer une alerte d'emploi pour cette recherche
E commerce • angus on
Security Analyst, Bug Bounty Remote - Americas
ShopifyOntario, CanadaProject Accountant
DMC RecruitmentOntario, CAWCS Sr. Developer / Lead
eTeamRemote, ONCal Lin Alg Commerce
University of TorontoOntario, Canadasystems programmer
ICON ALLIANCE INC.ON, CAFULL & PART-TIME SALES ASSOCIATES
Point ZeroOntarioelectronic commerce (e-commerce) specialist
Ventmere Ltd.ON, CAProduct Manager, Treasury
Paramount CommerceON, CAWeb Designer (Ecommerce)
Design MatchOntario, Canada, CAdigital marketing specialist
Ivan VarietyEverett, ON, CADigital Merchandising Specialist
Yum! BrandsON, CanadaSecurity Analyst, Bug Bounty Remote - Americas
ShopifyOntario, Canada- Temps plein
- Télétravail
We're looking for two curious and detail-oriented individuals to join Shopify's Trust & Security Team as a Security Analyst for our bug bounty program.
As part of the Application Security team in Trust, you'll contribute to Shopify's mission of making commerce better for everyone by making commerce safe for everyone. The Application Security team works to discover, fix, and prevent security vulnerabilities across all of Shopify's code and ecosystem. Our bug bounty program helps us do that by enabling us to collaborate with a global network of hackers to identify security issues in our systems.
Here's what you can expect from the role - an opportunity to
Assess, validate, retest, and close bug bounty reports
Escalate complex reports to application security engineers
Coordinate with internal teams to ensure bug bounty reports are resolved
Communicate with hackers on the platform and answer questions about their reports
Participate in security incident response activities resulting from bug bounty reports
Create & maintain internal & external documentation supporting our program
Contribute to process & program level improvements
Qualifications
Understand common security issues and able to discuss, such as the OWASP Top 10
Comfortable using DAST tools (Burp Suite)
Ability to communicate clearly, concisely, friendly, and firmly
Proficiency in assessing high vs low risk issues and escalating them effectively
Experience communicating with different audiences & de-escalating tense situations
Demonstrated ability to maintain a consistent and sustainable operational rhythm
Superb investigative, analytical, and decision-making skills
Foundational understanding of how web requests & applications work
Foundational understanding of cybersecurity concepts and awareness of common risks
A desire to build a career in cybersecurity
It would be great if you had experience in one or more of the following (don't stress, we are not expecting experience in all of the following!) :
Ruby development experience
Participation in bug bounty or previous experience working on a bounty program
Experience interacting with system owners to fix or remediate issues.
Experience using frameworks such as CVSS
Passion for bug bounty programs and working with the hacker community