Used Tools & Technologies
Not specified
Required Skills & Competences ?
Pentesting @ 4 Security @ 4 Go @ 4 Ruby @ 4 Python @ 4 Communication @ 7 JavaScript @ 4 OWASP @ 4 Web3 @ 4Details
At Coinbase, our mission is to increase economic freedom in the world by building the emerging onchain platform and the future global financial system.
Responsibilities
- Lead and conduct internal penetration testing engagements on web and mobile applications and services.
- Lead and conduct Red Team operations to test the resiliency of security protections.
- Document and report findings from security assessments and pentests.
- Collaborate with engineering teams to prioritize and remediate known vulnerabilities.
- Participate in the triage and validation of bug bounty submissions.
- Contribute to the development of security tools and automation.
- Develop and improve security testing methodologies.
- Provide on-call support for product security incidents.
- Lead and participate in red team activities to identify weaknesses in security controls, including network and application-level security boundaries.
Requirements
- Bachelor’s or Master’s degree in Computer Science, Cybersecurity, Software Engineering, or related field.
- At least one relevant security certification (e.g., OSCP, GPEN).
- 5+ years in application security, penetration testing, bug bounty triage, or offensive security roles.
- 3+ years of Red Team experience with a record of breaking complex systems using novel techniques.
- Experience with programming languages such as Go, JavaScript, Python, or Ruby.
- Expert understanding of Web2 security concepts and common vulnerabilities (e.g., OWASP Top 10, SANS Top 25).
- Experience with bug bounty programs and platforms.
- Strong analytical and communication skills.
- Energy and self-drive for continuous learning in the evolving crypto space.
- Ability to independently own penetration testing and red team engagements and oversee junior engineers.
- Experience building relationships with product, engineering, and security teams.
Nice to Haves
- Participation in CTFs, bug bounty programs, open-source security research, CVE analysis.
- Experience in Web3, network security, and/or cloud security.
- Experience developing security tooling for pentesting and AI pentesting.
- Experience pentesting AI systems and large language models (LLMs).
Benefits
- Medical, dental, and vision insurance for employees and dependents.
- Group personal accidental and term life insurance.
- Employee stock purchase plan (ESPP).
- Wellness, mobile/internet, and connections stipends.
- Learning and development allowance.
- Employee assistance program.
- Global travel medical policy.
- Fertility benefits.
- Generous time off and leave policies.
Additional Information
- Position ID: P69494
- Pay Range: ₹6,612,600 INR per year (target annual salary; includes bonus, equity, and benefits)
- Role requires in-person participation throughout the year and attendance at team and company-wide offsites.
- Work culture is intense and collaborative.