Job Summary
Comcast is seeking a Product Security Engineer to join its dynamic Bug Bounty team. In this pivotal role, you will collaborate with security researchers and ethical hackers to identify, assess, and remediate vulnerabilities across the organization. You will work closely with product teams to ensure thorough and prompt resolution of security issues, gaining deep technical insights into Comcast's infrastructure and operations.As a key member of the security team, you will leverage your technical expertise and leadership skills to drive the expansion of Comcast's Bug Bounty Program by assessing the overall security maturity and systems architecture of products to launch bug bounty programs.
Your responsibilities will also include conducting web application pen testing, developing vulnerability detection tools and process improvements. The ideal candidate will demonstrate resilience, a passion for continuous learning, and a proactive security mindset, ultimately working to uphold the highest standards of customer trust and safety.
Job Description
Core Responsibilities
- Assess, research, prioritize, and escalate reported vulnerabilities as appropriate, often involving web application testing.
- Identify trends in security research methods and develop tools for proactive vulnerability detection
- Coordinate security incident response and vulnerability management activities with product teams
- Partner with other teams in the security organization to build and test remediation strategies
- Attend technical calls with internal or external parties regarding reported vulnerabilities
- Identify gaps within existing internal security practices and propose enhancements where necessary
- Participate in a weekend rotation that includes your peers on the team
Basic Qualifications -
- Masters or Bachelor's degree in computer science or equivalent
- Knowledge of system security vulnerabilities and remediation techniques, including penetration testing and the development of exploits or equivalent
- Experience applying threat modeling or other risk identification techniques or equivalent
- 3+ years' experience in web application security and vulnerability management roles
Must-Have Skills:
- Technical background, Linux, Burpsuite, Python, OWASP Top 10, hand-on experience in security projects
- Excellent written and oral communication skills
- Ability to convey technical concepts relating to vulnerability details to a non-technical audience.
Preferred:
- Certifications- OSCP, PNPT, eJPT
- Contributions to the security community (public research, blogging, presentations, bug bounty, etc.)
Skills
Infrastructure Penetration Testing, Penetration Testing, Security ResearchWe believe that benefits should connect you to the support you need when it matters most, and should help you care for those who matter most. That's why we provide an array of options, expert guidance and always-on tools that are personalized to meet the needs of your reality—to help support you physically, financially and emotionally through the big milestones and in your everyday life.
Please visit the benefits summary on our careers site for more details.
Education
Bachelor's DegreeWhile possessing the stated degree is preferred, Comcast also may consider applicants who hold some combination of coursework and experience, or who have extensive related professional experience.Certifications (if applicable)
Relative Work Experience
5-7 YearsComcast is proud to be an equal opportunity workplace. We will consider all qualified applicants for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, disability, veteran status, genetic information, or any other basis protected by applicable law.Other Jobs from Comcast
Transport Operations Network Engineer
Network Engineer 2
Engineer 3, Machine Learning
Sr. Director, Network Maintenance
Data Engineer
Similar Jobs
Senior Analytical Data Engineer
Senior Data Scientist (Data Design / Modeling,Data Visualization, Analytics)
Lead Data Scientist
Senior Software Engineer, Applied
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 452 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say