Software Engineer III
Job description
About the role
Bugcrowd is seeking a Software Engineer III to contribute to the development of our autonomous application security testing platform, Mayhem. This role focuses on building and enhancing features within our cloud-native, API-driven system to enable organizations to identify and resolve security vulnerabilities efficiently. The successful candidate will own the full lifecycle of specific product features from conception through deployment, ensuring alignment with architectural best practices. You will be responsible for translating complex security requirements into robust, scalable software solutions that meet high standards of quality. Collaboration with cross-functional teams will be essential to define, refine, and deliver on project objectives. This position offers the opportunity to work on critical infrastructure that powers security testing for a global customer base. You will play a key role in maintaining and improving the reliability and performance of our core platform components.
Key facts
What you'll do
- Develop and maintain full-stack features, working with Python/Flask for the backend and TypeScript/React for the frontend, ensuring code quality and maintainability.
- Design and implement scalable, API-first architectures and service patterns that support the dynamic nature of security testing workflows.
- Create integrations that connect Mayhem with customer systems and various security tools, enabling seamless data exchange and functionality.
- Establish consistent service patterns and ensure reliable interfaces and performance across distributed systems and microservices.
- Enhance internal tools used for security triage and vulnerability management, improving efficiency for security analysts and researchers.
- Work with designers to implement our accessible and standards-compliant design system, focusing on usability and user experience.
- Ensure high levels of accessibility, stability, and performance for integration workflows, minimizing downtime and maximizing reliability.
- Participate in code reviews and technical discussions to uphold best practices and drive continuous improvement in the codebase.
- Troubleshoot complex production issues, collaborating with SRE and support teams to resolve incidents quickly and effectively.
- Contribute to the definition of technical requirements and assist in the creation of technical documentation for new features.
- Mentor junior engineers by providing guidance on coding standards, design principles, and effective problem-solving techniques.
- Explore and prototype new technologies and methodologies to assess their applicability to our security testing and deployment pipelines.
- Collaborate with product managers to translate business requirements into technical specifications and implementation plans.
- Ensure all deliverables meet regulatory and compliance standards relevant to security and data protection.
Requirements
- A minimum of 3 years of experience in full-stack software development, ideally in a product-focused setting, with a strong track record of delivering high-quality software.
- Prior experience in the cybersecurity field, demonstrating an understanding of security principles, threat models, and common vulnerabilities.
- Proficiency in backend API development using Python/Flask and frontend development with TypeScript/React, with a portfolio or examples of previous work.
- Solid understanding of agile development methodologies, backlog management, and stakeholder communication to effectively navigate dynamic project requirements.
- Strong analytical and problem-solving capabilities, with the ability to break down complex issues into manageable components.
- A Bachelor's or Master's degree in Computer Science, Engineering, or a related discipline from an accredited institution, providing a foundation for technical growth.
- Experience working with cloud-native environments and containerization technologies such as Docker and Kubernetes is essential.
- Familiarity with version control systems, specifically Git, and collaborative development workflows is required.
- Strong written and verbal communication skills, with the ability to articulate technical concepts to both technical and non-technical audiences.
- A proactive mindset with the ability to self-manage tasks and prioritize work in a fast-paced, iterative development cycle.
- Commitment to writing clean, testable, and efficient code that adheres to industry best practices and security standards.
- Willingness to engage in continuous learning and professional development to keep pace with evolving technologies and security landscapes.
Nice to have
- Familiarity with Rust, including experience with its concurrency model and memory safety features.
- Experience with Google Cloud Platform (GCP) and/or Amazon Web Services (AWS), including services like Lambda, EC2, S3, and IAM.
- Knowledge of GitHub Actions for CI/CD pipelines and Keycloak for authentication and identity management.
Practical notes
- Bugcrowd is an equal opportunity employer.
- Reasonable accommodations are provided for individuals with disabilities.
- Applications are subject to background checks.
- Personal data submitted will be processed in accordance with Bugcrowd's Privacy Policy.
- This position is fully remote and open to candidates located in India.
- The engagement for this role is full-time, requiring dedication during standard business hours for collaboration and meetings.
- No specific travel requirements are associated with this position, as the role is remote.
- There are no visa sponsorship details provided for this role at this time.
- The compensation details are not specified in the source information for this position.
- Candidates are encouraged to apply promptly to ensure full consideration, although no explicit deadline is published.