Product Security Analyst
hackerone
HackerOne is a global leader in Continuous Threat Exposure Management (CTEM). The HackerOne Platform unites agentic AI solutions with the ingenuity of the world’s largest community of security researchers to continuously discover, validate, prioritize, and remediate exposures across code, cloud, and AI systems. Through solutions like bug bounty, vulnerability disclosure, agentic pentesting, AI red teaming, and code security, HackerOne delivers measurable, continuous reduction of cyber risk for enterprises. Industry leaders, including Anthropic, Crypto.com , General Motors, Goldman Sachs, Lufthansa, Uber, UK Ministry of Defence, and the U.S. Department of Defense, trust HackerOne to safeguard their digital ecosystems. HackerOne was recognized in Gartner’s Emerging Tech Impact Radar: AI Cybersecurity Ecosystem report for its leadership in AI Security Testing and has been named a Most Loved Workplace for Young Professionals (2024).
HackerOne is at a pivotal inflection point in the security industry. Offensive security is no longer optional – it is the standard for forward-thinking companies that want to build trust and resilience in a world where AI-driven innovation and adversaries are moving faster than ever. With the industry shifting, HackerOne stands apart: we combine the ingenuity of the largest security research community with a best-in-class AI-powered platform, trusted by the world’s top organizations.
HackerOne Values
HackerOne is dedicated to fostering a strong and inclusive culture. HackerOne is Customer Obsessed and prioritizes customer outcomes in our decisions and actions. We Default to Disclosure by operating with transparency and integrity, ensuring trust and accountability. Employees, researchers, customers, and partners Win Together by fostering empowerment, inclusion, respect, and accountability.
Product Security Analyst
Location : Pune
Working model : on-site
Shift : Night shift along with Weekend support
HackerOne is seeking a dynamic individual with a passion for Information Security to join our Technical Services team. As a Security Analyst, you will gain hands-on technical experience and exposure to some of the world’s best hackers while delivering high-impact vulnerabilities to the top bug bounty programs in the industry.
This role requires excellent communication skills, intellectual curiosity and drive to acquire the technical skills you’ll need to ensure every valid bug report is reproducible and provides value to HackerOne customers.
Who You Are
Evaluate assigned vulnerability reports submitted by hackers to determine the validity, risk and severity to HackerOne customers
Collaborate with hackers to address missing information from reports as well as educate the HackerOne community members when reports are invalid
Compose a technical summary for each valid report that includes clear and concise details regarding the impact, steps to reproduce and remediation advice
Ensure clear and efficient communication between hackers and customers
Proactively identify and solve issues, as well as accept and quickly respond to delegated work; as we are distributed, being able to win as a team to solve problems is critical to our success
Assess vulnerability findings and determine whether the submission is valid based on program policies, scope and impact.
Independently reproduce reported vulnerabilities in a test environment and compose a technical summary for valid findings.
Minimum Qualifications
Proven experience with vulnerability disclosure and bug bounty (experience managing a bug bounty program is a plus but not required)
3+ years of corporate experience doing security testing or ethical hacking on web and mobile applications
Experienced in assessing and validating security reports for open-source projects by analyzing attack surfaces, reproducing reported issues, and determining real-world security impact.
Proficient in analyzing application architectures, trust boundaries, request flows, and attack surfaces to identify security weaknesses.
Skilled in reviewing proof-of-concepts, performing root-cause analysis, assessing exploitability and impact, and distinguishing framework-level vulnerabilities from implementation-specific issues.
Strong technical knowledge of OWASP top 10
Comfortable using security testing tools including Burpsuite
Excellent written and verbal communication skills
Experience using frameworks such as CVSS
Self-motivated and able to manage your time and energy output while maintaining a consistent and sustainable operational rhythm
This role is based in our Pune office and you must be able to work 4-5 days a week in office
This role requires availability to work weekends
This role requires regular coverage of US business hours
English fluency
Job Benefits:
Health (medical, vision, dental), life, and disability insurance*
Equity stock options
Retirement plans
Paid public holidays and unlimited PTO
Paid maternity and parental leave
Leaves of absence (including caregiver leave and leave under CO's Healthy Families and Workplaces Act)
Employee Assistance Program
*Eligibility may differ by country
We're committed to building a global team! For certain roles outside the United States, India, the U.K., and the Netherlands, we partner with Remote.com as our Employer of Record (EOR).
Visa/work permit sponsorship is not available.
Employment at HackerOne is contingent on a background check.
HackerOne is an Equal Opportunity Employer in the terms and conditions of employment for all employees and job applicants without regard to race, color, religion, sex, sexual orientation, age, gender identity or gender expression, national origin, pregnancy, disability or veteran status, or any other protected characteristic as outlined by international, federal, state, or local laws.
This policy applies to all HackerOne employment practices, including hiring, recruiting, promotion, termination, layoff, recall, leave of absence, compensation, benefits, training, and apprenticeship. HackerOne makes hiring decisions based solely on qualifications, merit, and business needs at the time.
For US based roles only: Pursuant to the San Francisco Fair Chance Ordinance, all qualified applicants with arrest and conviction records will be considered for the position.
- What You'll Do :Security Operations & Incident Response :- Monitor, triage, and respond to... ...broader security team.- Mentor junior analysts and contribute to improving team knowledge... ...use of AI tools to improve analyst productivity.- Strong Google Workspace security administration...SuggestedHybrid work
- ...About The Opportunity Netrix Global team is looking for an experienced Security Analyst II to join our growing security team. In this role, you will be responsible for defending client environments and internal infrastructure against evolving cyber threats. You will operate...SuggestedRemote jobFull timeCasual workShift workNight shiftRotating shift
- ...leader focused on helping the world’s manufacturers be more productive, sustainable, and agile. With more than 28,000 employees who... ...have you join us! Job Description Job Description PAM Security Analyst Job Location : Pune/Bangalore Job Summary: The PAM Security...SuggestedHybrid workWork at officeLocal areaMonday to Thursday
- ...experience with CrowdStrike, vulnerability management, and handling security incidents, phishing incidents, and high-level incident response... ...Certifications :- Microsoft Certified: Security Operations Analyst Associate SC 200- CEHEducational Qualification : Relevant BE/Btech...Suggested
- Job Description :At EXO Edge, We are looking for a Junior Information Security Analyst to join our Information Security team. In this role, you will support vulnerability management, SOC monitoring, and Identity & Access Management (IAM) to help protect enterprise systems and...Suggested
- ...Position Reporting to the VP, Cloud Operations & GRC, the Sr. Security & Compliance Analyst will support the execution and continuous improvement of... ...activities across Engineering, Cloud Operations, IT, and Product teams to ensure remediation within defined EE SLAs....Full timeWork at office
- ...Position:Reporting to the VP, Cloud Operations & GRC, the Sr. Security & Compliance Analyst will support the execution and continuous improvement of... ...remediation activities across Engineering, Cloud Operations, IT, and Product teams to ensure remediation within defined EE SLAs.- Track...Permanent employmentFull time
- The Technology Information Security Office (TISO) is a global organization within Group Technology. Our services focus on preventing and detecting cyber threats and securing our IT systems. We provide consolidated and reliable security services that implement secure design principles...Work at office
- ...➢ Application performance improvement, analysis, and network security. ➢ Experience / Exposure in setting up Manufacturing lines /... ...network hardware/software support to Mfg applications ➢ Perform production operation support including log review, backup/recovery procedures...
- ...closing the loop between what was hypothesised and what customers actually do.Ideal Candidate :- Strong Consumer Insights / CX Analytics / Product Insights profile (behavioral/user/product/UX analytics)- Must have 3+ years of experience in Consumer Insights, CX Analytics, Product...
- Job Description :Strong Consumer Insights / CX Analytics / Product Insights profile (behavioral/user/product/UX analytics).Mandatory Experience :- 1. Experience Requirement : Must have 4+ years of experience in Customer Experience (CX) Analytics, Consumer Insights, Product...
- ...@ IntegriChain and LinkedIn . Job Description Role Overview: We are seeking a highly analytical, detail-oriented Product Analyst to partner closely with Product Managers, Engineering, and business stakeholders to drive product delivery and continuous improvement...Flexible hours
- ...Position Overview Job Title: Technical Product Senior Analyst (SAS Mainframe), AVP Location: Pune, India Role Description This role is for Senior Product Analyst / Product Owner who is responsible for design, development, and unit testing software applications...Full timeFlexible hours
- ...Years Location : Hyd/Bangalore/Pune Notice period - Immediate or upto 45 days We are looking for an experienced nCino Product Owner/Business Analyst - Lending with strong exp in nCino (Salesforce) and Lending workflows. The role involves working with cross - functional...Immediate start
- ...efficiently — whether that's publishing content, supporting a campaign launch or pulling together a performance report? The Marketing Analyst will be a versatile, reliable presence within Modulr's marketing function — working across the team, picking up operational and...Immediate start
- ...and scripts, data analysis concepts and informing general Cyber Security team on proposed companywide improvements. The work requires also... ...responsibilities within the following roles; SOC operator, SOC analyst, Event Analyst, First Responder or similar • Experience with...Permanent employment
- ...About the Role You’ll work alongside senior analysts and the wider SEO and Analytics team to keep client tracking accurate, reporting reliable, and insights actionable. Day to day, you’ll split your time between implementation and QA work (GA4 audits, GTM audits, UTMs...Full time
- Job Description : Required Skills : - Define IAM and PAM architecture, strategy, and roadmap aligned with business and security requirements.- Design and implement OKTA-based IAM solutions including SSO, MFA, federation, and lifecycle management.- Design and implement BeyondTrust...
- ...posture Improve and collaborate on the definition of an awareness program, completing task and producing content as to implement security awareness and training initiatives to reach target audiences through appropriate channels (digital media, print media, training, events...Permanent employmentLocal area
- ...ways. Who knows where our shared journey will take you? About This Role This role is responsible for ensuring end-to-end security of products and solutions by embedding security into the Secure Software Development Lifecycle (SDLC). You will work closely with development...Worldwide1 day week
- ...Position Overview Job Title: Information Security Specialist Corporate Title: AVP Location: Pune , India Role Description This role will be as part of the I&A SDA review team in the Security Design Authority. This service is an essential first line of defense...Flexible hours
- ...Past responsibilities within the following roles SOC operator, SOC analyst, Event Analyst, First Responder or similar • Experience... ...Understanding of the defensive operations and improvements like security tool administration, detection rule engineering, scripting, cloud...Permanent employment
- ...Description : Summary : Armor is seeking an Incident Response and Security Operations Technical Leader to serve as the senior technical... ...standards and escalation protocols between the SOC and Engineering, Product, and Customer Success teams.- Mentor the entire security...Permanent employmentFull timeHybrid workMonday to WednesdayMonday to Thursday
Rs 3 - 6 lakhs p.a.
...Posted 1 day ago Fresher Job 69 applicants About the job Key Responsibilities: 1. Analyze the performance and pricing of securities for companies listed in the US market. 2. Create forecasts and predictions for market movements. 3. Monitor key industry trends...Immediate start- ...and content expansion, with complementary product and content capabilities that enable... ...About The Role We are looking to hire an Analyst, Customer & Product Support to join the... ...purportedly from or on behalf of AlphaSense please contact us. Your security and trust matter to us.
- ...fulfilling experiences throughout your career to help you on the path to becoming your best professional self. The opportunity : Project Analyst-National-Forensics-ASU - Forensics - Investigations & Compliance - Pune National : National comprises of sector agnostic teams...Full timeImmediate start
- ...Financial Analyst – AIFA (Project Finance & Investments) At ENGIE, we are accelerating the energy transition across Asia, the Middle East... ...analyses will directly influence investment decisions and help secure the funding that turns ambitious plans into operational assets....
- ...resilient and equitable food system for all. Job Description Join Syngenta's Global Business Services team as a Sr. Finance Analyst I2P and be part of our digital transformation journey! This role offers the opportunity to apply global standard processes while...Full timeLocal areaRemote jobWorldwide
- ...XPO India Shared Services Job Title: Sr. Analyst, Financial Reporting Reports to: Manager Job Grade: Assigned by Comp.... ...establish proactive communication methods for alerting management to production issues and supporting timely resolution. Audit Support – 5...Work at office
- Payatu is hiring an Application Security Consultant who's genuinely good at breaking things by hand, not someone who lets a scanner do the thinking.Who we are : We are a service-based cybersecurity company, and pentesting is what we do all day, every day, across Web Apps, Mobile...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Product Security Analyst. Be the first to apply!
