Chess.com · 5 hours ago
Security Engineer
Maximize your interview chances
GamificationGaming
Growth Opportunities
Insider Connection @Chess.com
Get 3x more responses when you reach out via email instead of LinkedIn.
Responsibilities
Triage, reproduce, and assess vulnerabilities submitted through the Bug Bounty Program, and work with the Engineering Teams to close the discovered gaps.
Work closely with the Engineering Teams to perform Threat Models of their solutions, acting as a security advisor when appropriate, and ensuring designs are vetted and adhering to security industry standards.
Review Penetration Testing results and SIEM reports. Translate the findings into actionable tasks in Jira and track them to completion.
Apply updates to the WAF and various other security systems where applicable, and/or support the Engineering Teams to address findings.
Evaluate security software and systems used by the company. Attend product demos to help determine the best solution for our company. Lead these efforts from beginning to end.
Act as a security expert, guiding developers and projects to ensure security best practices.
Be a security advocate in Slack and Zoom meetings. Proactively joining slack conversations to represent Security and provide guidance. We rely heavily on Slack for communications, so you should be comfortable with that, and a very active contributor within the Slack workspace.
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
Experience in cybersecurity
Expert-level quick-thinking abilities to foresee issues before they arise
Comfortable in a remote-first environment
Communicating in a kind and professional manner via Slack
Frequently posting updates in public channels keeping everyone aware of efforts and progress
Preferred
3+ years professional experience in web application security
Strong written communication skills in English
Familiarity with Burp Suite or similar tools for viewing and tampering with web requests
Prior experience with a Bug Bounty program is a plus
Experience in Python, PHP or JS
Strong collaboration and communication skills working in a fully distributed team primarily using Slack and some Zoom meetings
Programmer mindset. We prefer to automate software that defends our systems.
Sense of ownership and responsibility
Chess player
Lifelong learner
Company
Chess.com
Chess.com is an online community for chess players to learn and discuss strategy and play with others in real-time.
Funding
Current Stage
Late StageTotal Funding
$0.55MKey Investors
General Atlantic
2022-01-14Private Equity
2018-01-01Acquired
2013-01-01Secondary Market· $0.55M
Recent News
Multi Channel News - Tech
2024-03-20
2023-11-06
2023-09-19
Company data provided by crunchbase