660,302open jobs
38,440companies
97,349added this week
Browse all
Salary
$84k – $177k per year (Estimated)
Location
Remote (United States)
Seniority
Middle · 3+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Play chess online for free on Chess.com with over 250 million members from around the world. Have fun playing with friends or challenging the computer!

About Us

Chess.com is one of the largest gaming sites in the world and the #1 platform for playing, learning, and enjoying chess.

We are a team of 600+ fully remote people in 60+ countries working hard to serve the global chess community. We are here to support 250M+ chess players worldwide with the best possible product, content, and tools to serve the community!

We are a tech company. A gaming company. A content company. And we do it all with passion and commitment to the game. Above all we prize our mission-driven, flat, life-celebrating, no-corporate culture, and we look forward to meeting you and learning more about what you can bring to the team.

About The Role

The Security Engineer plays a critical role in protecting our technology infrastructure and maintaining the security posture of our gaming platform. This position exists to proactively identify, assess, and mitigate security vulnerabilities while serving as a trusted security advisor to engineering teams across the organization. The role directly impacts our ability to safeguard user data, maintain platform integrity, and ensure secure development practices are embedded throughout our product development lifecycle.

This position is essential for building and maintaining robust security defenses in a fast-paced, remote-first technology environment where security expertise must be seamlessly integrated into daily engineering operations and strategic decision-making processes.

What you'll do

  • Lead vulnerability management program by triaging, reproducing, and assessing security vulnerabilities submitted through Bug Bounty programs, working directly with engineering teams to prioritize and remediate discovered security gaps
  • Conduct comprehensive threat modeling by collaborating with engineering teams to analyze proposed solutions, ensuring designs meet security industry standards and identifying potential attack vectors before implementation
  • Manage security incident response by reviewing penetration testing results and SIEM reports, translating technical findings into actionable remediation tasks, and tracking resolution progress through completion
  • Optimize security infrastructure by applying updates to Web Application Firewalls (WAF) and other security systems, ensuring configurations align with current threat landscape and organizational needs
  • Drive security tool evaluation and implementation by researching, evaluating, and recommending security software solutions, attending vendor demonstrations, and leading procurement processes from requirements gathering through deployment
  • Provide security consultation and guidance by serving as subject matter expert to development teams, ensuring security best practices are integrated into software development lifecycle and architectural decisions
  • Maintain security awareness and documentation by communicating security updates, progress reports, and recommendations to stakeholders through established channels and maintaining current security policies and procedures

Qualifications

  • Bachelor's degree in Computer Science, Information Security, or related technical field, or equivalent professional experience
  • Minimum 3+ years of professional experience specifically in web application security
  • Demonstrated expertise with security testing tools such as Burp Suite or equivalent web request analysis and tampering tools
  • Strong written communication skills in English with ability to clearly explain technical security concepts to diverse audiences
  • Experience working effectively in fully distributed/remote team environments
  • Proven ability to collaborate cross-functionally with engineering and development teams

Preferred Skills and Qualifications

  • Previous hands-on experience managing or participating in Bug Bounty programs
  • Programming experience in PHP or JavaScript
  • Experience with penetration testing methodologies and tools
  • Knowledge of SIEM platforms and security monitoring systems
  • Familiarity with Web Application Firewall (WAF) configuration and management
  • Understanding of secure software development lifecycle (SDLC) practices
  • Experience with Jira or similar project management and issue tracking systems
  • Strong sense of ownership and accountability in a flat organizational structure
  • Passion for continuous learning and staying current with evolving security threats and technologies

About the Opportunity

  • This is a full-time opportunity
  • We are 100% remote (work from anywhere!)

---

You can learn more about us here:

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
660,302 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$308k – $339k per year • In office • Full-Time • 10+ years exp • Sunnyvale
Go
Ruby
C++
AI/ML
Red Teaming
DevOps
CI/CD
Cybersecurity
Zero Trust
Threat Modeling
Apply
$110k – $220k per year (Estimated) • In office • 5+ years exp • Bachelor's Degree • Raleigh
Python
PowerShell
AI/ML
Red Teaming
Cybersecurity
Okta
ISO 27001
Cortex XDR
SOC 2
HIPAA
NIST 800-53
Threat Modeling
Management
Google Workspace
Apply
$149k – $224k per year • In office • Full-Time • 5+ years exp • PhD • Washington
Python
AI/ML
AI Agents
Agentforce
DevOps
CI/CD
Cybersecurity
Threat Modeling
Management
Agile
Apply
$110k per year • In office • Burlington
Python
PowerShell
DevOps
Azure
AWS
Cybersecurity
Microsoft Defender
Threat Modeling
Apply
$94k – $126k per year • Equity • Remote/Hybrid • 3+ years exp
Cybersecurity
Threat Modeling
Apply
$104k – $210k per year (Estimated) • Remote • Full-Time • 5+ years exp
AI/ML
Claude
AI Agents
Apply
$51k – $128k per year (Estimated) • Remote • Full-Time • 2+ years exp
AI/ML
Cursor
Claude
AI Agents
Management
Slack
Apply
Ad Sales Director 12 days ago
$145k – $262k per year (Estimated) • Remote • Full-Time • 8+ years exp • Bachelor's Degree
Apply
Remote • Contractor
AI/ML
AI Agents
Apply
$113k – $245k per year (Estimated) • Remote • Full-Time
JavaScript
TypeScript
AI/ML
Cursor
Claude
Claude Code
Prompt Engineering
AI Agents
LLM
Tool Use
Frontend
Vue.js
React.js
Design
Figma
Apply
See all jobs
This is one of many
660,302 more open roles from verified company boards, updated every day.