Remote job
Bug Bounty Hunter (M/F)
Job details
About this role
Role overview A permanent, full-remote cybersecurity engineering position based in France, working within an internal IT and information systems department. The role sits in a security function supporting a software division and is framed as a bug bounty style engagement focused on identifying vulnerabilities across internal products and systems.
Responsibilities - Proactively search for security weaknesses across web applications, APIs, and internal infrastructure. - Document findings with reproducible steps, impact assessments, and remediation guidance. - Collaborate with development and infrastructure teams to validate and triage reported issues. - Contribute to the maturity of internal security processes and reporting practices.
Requirements - Demonstrated experience in cybersecurity or ethical hacking, supported by a track record of disclosed vulnerabilities or equivalent professional work. - Familiarity with common vulnerability classes such as injection, authentication flaws, and access control issues. - Ability to write clear technical reports in English or French. - Comfort working independently in a remote, asynchronous setup.
Nice to have - Prior participation in public or private bug bounty programs. - Experience with software development, system administration, or security tooling. - Relevant certifications such as OSCP, CEH, or equivalent.