Security Analyst, Bug Bounty

Stripe

Remote

Quick summary

Work type
Remote
Location
South San Francisco, CA
Salary
$144,400–$216,600 / yr
Posted
6 days ago

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $176k
This role $180k
$122k most similar roles pay here $227k

This role pays more than 54% of similar roles. Most pay $142,400–$209,750 — the shaded band above. At the midpoint, this role pays about $180k versus about $176k for comparable roles.

Based on 239 similar postings.

Employer

About Stripe

Stripe is a financial infrastructure platform for internet businesses, providing payment processing, billing, fraud prevention, and banking-as-a-service APIs to businesses of all sizes globally. Industry: Payments Infrastructure & Financial Technology

Stripe currently has 61 open roles on FindRole.

Listed pay typically runs $172,500–$259,600 across 61 roles with salary data.

Most-posted roles

View all roles at Stripe

At a glance

TL;DR · Security Analyst, Bug Bounty

Join Stripe’s Vulnerability Management team as a Security Analyst and take on the critical task of managing the end-to-end lifecycle of security vulnerability reports from the bug bounty program. You will triage incoming reports, engage with external researchers to clarify findings, and coordinate with internal teams to resolve issues swiftly. Your day-to-day involves deep diving into vulnerabilities, understanding their root causes, and advising on mitigation strategies while leveraging scripting languages like Python for automation. Familiarity with tools such as Burp Suite and an understanding of web security issues are essential, alongside the ability to communicate technical concepts clearly across various stakeholders. This role demands a strong grasp of cloud services and experience in bug bounty programs or triaging vulnerabilities, making it ideal for those passionate about enhancing Stripe’s security posture at scale.

What you'll do

  • Analyze and triage security vulnerability reports from the bug bounty program.
  • Communicate with external researchers to clarify reports and enhance engagement.
  • Identify root causes of vulnerabilities and advise on mitigation strategies.
  • Coordinate with internal teams to drive timely resolution of security issues.
  • Conduct data analysis on bug reports to identify systemic risks and trends.
  • Provide tactical support for vulnerability management processes as needed.

What we're looking for

  • Proven ability to triage security vulnerabilities from bug bounty reports.
  • Familiarity with web security issues and exploit methodologies (e.g., OWASP Top 10).
  • Competence in offensive security tools like Burp Suite and custom scripting.
  • Ability to think like an attacker for vulnerability impact assessment.
  • Proficient in clear communication of technical concepts across various stakeholders.
  • Experience in bug bounty program triaging or general security expertise with Stripe products.

More like this

Similar roles

Principal Software Engineer, Platform Security

Salesforce

Remote (San Francisco, CA) 12 days ago $197,300$313,700
AWS GCP Azure Unix/Linux Python Ruby TCP/IP SDN REST API Database Engineering Event-Driven Architectures Distributed Systems CI/CD Agile Scrum Mentorship Security Engineering Vulnerability Analysis Firewalls Encryption IAM ELB S3 EMR OSI Stack MTTR Reduction System Design Records Architecture Decision Records
Remote

Security Software Engineer

Boeing

Remote (Usa - Swansea, Il, US) 37 days ago $81,000$95,000
AWS CI/CD Nessus Trend_Micro_Deep_Security AWS_Security_Hub GuardDuty Config IAM Encryption Python PostgreSQL Kubernetes Terraform Git Jenkins Swagger JUnit SonarQube
Remote

Software Engineering Director, Security

PNC

PA +3 9 days ago $143,000$297,000
Agile Kanban SAFE Cloud Security Platform Modernization CI/CD AWS DevOps Python Java SQL PostgreSQL Docker Kubernetes Terraform Prometheus Grafana

Staff Software Engineer, Security

Anduril Industries

Costa Mesa, CA +2 9 days ago $220,000$292,000
Python C/C++ Rust CI/CD PostgreSQL AWS Kubernetes Docker Prometheus Grafana Terraform Git GitHub Linux Secure SDLC Cyber Threat Intelligence Incident Response TLS SSH Encryption Firewall DDoS Protection

Staff Software Engineer, Security

Anduril Industries

Seattle, WA +2 9 days ago $220,000$292,000
Python C/C++ Rust CI/CD PostgreSQL AWS Kubernetes Docker Prometheus Grafana Terraform Git Linux Secure SDLC Cyber Threat Intelligence Incident Response

Lead Security Software Engineer

CME Group

Chicago, IL 8 days ago $119,900$199,800
AWS Kubernetes Terraform Python Java JavaScript Docker Jenkins Maven Git CloudFormation Ansible Bash CI/CD PostgreSQL Splunk CloudWatch DevSecOps CIS NIST_800 PCI HIPAA