Offensive Security Engineer, Offensive Security

1 week ago


Indore, Madhya Pradesh, India Coinbase Full time US$ 1,25,000 - US$ 1,75,000 per year

Ready to be pushed beyond what you think you're capable of?

At Coinbase, our mission is to increase economic freedom in the world. It's a massive, ambitious opportunity that demands the best of us, every day, as we build the emerging onchain platform — and with it, the future global financial system.

To achieve our mission, we're seeking a very specific candidate. We want someone who is passionate about our mission and who believes in the power of crypto and blockchain technology to update the financial system. We want someone who is eager to leave their mark on the world, who relishes the pressure and privilege of working with high caliber colleagues, and who actively seeks feedback to keep leveling up. We want someone who will run towards, not away from, solving the company's hardest problems.

Our work culture is intense and isn't for everyone. But if you want to build the future alongside others who excel in their disciplines and expect the same from you, there's no better place to be.

While many roles at Coinbase are remote-first, we are not remote-only. In-person participation is required throughout the year. Team and company-wide offsites are held multiple times annually to foster collaboration, connection, and alignment. Attendance is expected and fully supported.

About the Role

The Application Security organization at Coinbase is seeking to hire an experienced Offensive Security Engineer specializing in bug bounty program management and optimization. In this role, you will work with the Bug Bounty Program Lead and drive bug bounty triage and validation. You will also support strategic bug bounty initiatives aimed to increase program efficiency, maturity and hacker engagement. You will collaborate with whitehat hackers, security engineers, and cross-functional teams to enhance the security posture of the company through an effective bug bounty program.

What you'll be doing:

  • Participate in bug bounty triage and validation, ensuring timely and accurate assessments.
  • Develop and implement strategies to incentivize and attract high-quality bug bounty submissions.
  • Help manage the bug bounty program, including scope updates, researcher communication and bug bounty payout disbursements.
  • Analyze bug bounty data to identify trends, common vulnerabilities, and areas for security improvement.
  • Collaborate with engineering teams to prioritize and remediate vulnerabilities identified through the bug bounty program.
  • Mentor and train junior security engineers in bug bounty triage and analysis.
  • Provide on-call support for critical bug bounty related incidents.
  • Document and report on bug bounty metrics and program effectiveness.
  • Conduct internal penetration testing engagements on web and mobile applications and services.
  • Participate in red team activities to identify weaknesses in security controls, as well as network and application-level security boundaries.

What we look for in you:

  • A Bachelor's degree in Computer Science, Computer Engineering, or a related field.
  • Relevant security certifications (e.g., OSCP, GPEN).
  • Experience in programming languages such as Go, JavaScript, Python or Ruby.
  • 2 years of experience in application security, bug bounty triage, or offensive security roles.
  • Deep understanding of Web2 security concepts and common vulnerabilities (e.g., OWASP Top 10, SANS Top 25)
  • Experience with bug bounty programs and platforms.
  • Strong analytical skills to identify trends and patterns in bug bounty submissions.
  • Excellent communication skills to effectively communicate with researchers and internal teams.
  • Passion for security and a drive to improve bug bounty program efficiency and effectiveness.
  • Ability to work independently and take ownership of the bug bounty program.

Nice to haves:

  • Experience performing red team activities of company products and services.
  • Experience pentesting AI products and features.
  • Contributions to the security community, particularly through bug bounty programs.
  • Experience in Web3 security, network security and/or cloud security.
  • Experience with developing and implementing security tooling to support bug bounty triage and analysis.

PID : P69661

Please be advised that each candidate may submit a maximum of four applications within any 30-day period. We encourage you to carefully evaluate how your skills and interests align with Coinbase's roles before applying.

Commitment to Equal Opportunity

Coinbase is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, creed, gender, national origin, age, disability, veteran status, sex, gender expression or identity, sexual orientation or any other basis protected by applicable law. Coinbase will also consider for employment qualified applicants with criminal histories in a manner consistent with applicable federal, state and local law. For US applicants, you may view the Employee Rights and the Know Your Rights notices by clicking on their corresponding links. Additionally, Coinbase participates in the E-Verify program in certain locations, as required by law.

Coinbase is also committed to providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please contact us at accommodations[at] to let us know the nature of your request and your contact information. For quick access to screen reading technology compatible with this site click here to download a free compatible screen reader (free step by step tutorial can be found here).

Global Data Privacy Notice for Job Candidates and Applicants

Depending on your location, the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA) may regulate the way we manage the data of job applicants. Our full notice outlining how data will be processed as part of the application procedure for applicable locations is available here. By submitting your application, you are agreeing to our use and processing of your data as required. For US applicants only, by submitting your application you are agreeing to arbitration of disputes as outlined here.

AI Disclosure

For select roles, Coinbase is piloting an AI tool based on machine learning technologies to conduct initial screening interviews to qualified applicants. The tool simulates realistic interview scenarios and engages in dynamic conversation. A human recruiter will review your interview responses, provided in the form of a voice recording and/or transcript, to assess them against the qualifications and characteristics outlined in the job description.

For select roles, Coinbase is also piloting an AI interview intelligence platform to transcribe and summarize interview notes, allowing our interviewers to fully focus on you as the candidate.

The above pilots are for testing purposes and Coinbase will not use AI to make decisions impacting employment. To request a reasonable accommodation due to disability, please contact .



  • Indore, Madhya Pradesh, India VIBS Infosol Full time ₹ 5,00,000 - ₹ 10,00,000 per year

    Job Summary:We are looking for Trainee Security Engineerswith a strong foundation innetworking conceptsand a keen interest in cybersecurity. You will undergo structured training and hands-on project exposure, supporting our security and network teams in implementing, maintaining, and monitoring enterprise security solutions.Job Title:Trainee Security...


  • Indore, Madhya Pradesh, India Intertec Softwares Pvt Ltd Full time US$ 90,000 - US$ 1,20,000 per year

    Responsible for managing enterprise-level Microsoft security solutions, executing L3 security operations, and ensuring comprehensive protection across Microsoft Defender, Purview, and Cloud Security platforms.Technical Knowledge & ExpertiseDeep understanding of Microsoft Security stack including:Microsoft Purview DLP solutionsMicrosoft Defender...

  • SAP Security

    2 weeks ago


    Indore, Madhya Pradesh, India LTIMindtree Full time

    LTIMindtree Hiring SAP Security & GRC Consultant Experience- 5+ Location- Indore, Nagpur, Bhubaneswar, Coimbatore E-Mail Id- Job description SAP Security Job Description Senior Level We are seeking experienced professionals for the role of SAP Security Specialist. Only candidates with a minimum of 5 years' experience in SAP S/4HANA Security will be...


  • Indore, Madhya Pradesh, India beBeeCloudSecurity Full time ₹ 20,00,000 - ₹ 30,00,000

    Cloud Security PositionWe are seeking a highly skilled Cloud Security Specialist to join our team.As a key member of the security team, you will play a crucial role in defining and implementing cloud security strategies.Collaborate with cross-functional teams to design, implement, and maintain secure cloud-based systems and applications.Stay up-to-date on...


  • Indore, Madhya Pradesh, India beBeeSecurity Full time ₹ 9,00,000 - ₹ 12,00,000

    Cloud Security Framework ArchitectWe are seeking a seasoned Cloud Security Framework Architect to lead our organization's cloud security strategy and implementation.This individual will define the cloud security framework and architecture, ensuring alignment with business requirements and performance goals.The selected candidate will document the...


  • Indore, Madhya Pradesh, India beBeeSecurity Full time ₹ 1,04,000 - ₹ 1,30,878

    Job Title: SAP Security SpecialistAs a seasoned SAP security specialist, you will play a pivotal role in leading and managing our organization's risk management activities. You will be responsible for analyzing segregation of duties (SoD) checks, mitigating risks, and providing governance reporting.Key Responsibilities:Lead SoD analysis, risk mitigation, and...

  • SAP Security Expert

    1 week ago


    Indore, Madhya Pradesh, India beBeeSecurity Full time ₹ 12,00,000 - ₹ 15,00,000

    Job SummaryWe are seeking a highly skilled SAP Security Specialist to implement and manage end-to-end SAP S/4HANA Security solutions.Main Responsibilities:Design and implement comprehensive SAP security strategies, ensuring seamless integration with existing systems.Analyze and resolve complex Fiori-related authorization issues, maintaining optimal system...

  • HR Manager

    2 weeks ago


    Indore, Madhya Pradesh, India Quick Manpower Supply & Security Full time US$ 40,000 - US$ 80,000 per year

    Company DescriptionQuick Manpower Supply & Security has extensive experience in labor supply services. With practical experience and a long track record of success, we are confident in our ability to perform at a high level. Our long-term goal is to continue to enhance our specialist skills and abilities while leveraging our experience and knowledge to...


  • Indore, Madhya Pradesh, India ECI Full time ₹ 1,04,000 - ₹ 1,30,878 per year

    ECI is the leading global provider of managed services, cybersecurity, and business transformation for mid-market financial services organizations across the globe. From its unmatched range of services, ECI provides stability, security and improved business performance, freeing clients from technology concerns and enabling them to focus on running their...


  • Indore, Madhya Pradesh, India beBeeSecurity Full time ₹ 15,00,000 - ₹ 25,00,000

    Cloud Security Framework ArchitectThis senior-level position focuses on developing and implementing a comprehensive cloud security framework. You will be responsible for ensuring the framework aligns with business objectives and adheres to industry standards.Key Responsibilities:Develop and maintain the cloud security frameworkCollaborate with...