Position Details
About this role
This remote role focuses on external threat management, offensive security oversight, and human risk programs. You will run threat intelligence triage, manage a crowdsourced bug bounty program, oversee outsourced penetration testing, and coordinate remediation workflows with engineering.
Key Responsibilities
- Oversee outsourced penetration testing and ensure rigorous scoping and testing
- Triage and validate bug bounties; reproduce and confirm exploit reports
- Monitor and analyze threat intelligence using the Threat Intelligence Platform (TIP)
- Administer corporate domains and DNS security (DNSSEC, DMARC) and manage takedowns
- Translate findings into Jira tickets and track developer SLAs to resolution
Technical Overview
You will work with a Threat Intelligence Platform (TIP) to monitor credential exposures and active exploits, and you will manage enterprise domain administration using DNS security controls such as DNSSEC and DMARC. The role also includes validating exploit reports, tracking findings through a vulnerability pipeline into Jira tickets, and supporting security testing against OWASP Top 10 issues.
Ideal Candidate
The ideal candidate is an adaptable Threat Engineer who can own the external attack surface, coordinate offensive security activities, and translate threat intelligence into actionable engineering tasks. They have strong experience managing outsourced penetration testing, triaging crowdsourced bug bounties, and handling domain and DNS security controls like DNSSEC and DMARC.
Must-Have Skills
None listed
Tools & Platforms
Required Skills
Hard Skills
Soft Skills
Industry & Role
Keywords for Your Resume
Deal Breakers
Ability to manage and oversee outsourced penetration testing programs, Ability to triage and validate bug bounty reports and translate findings into Jira tickets
Get matched to jobs like this
Luna finds roles that fit your skills and career goals — no endless scrolling required.
Create a Free Profile