Jobs
>
Seattle

    Defiant, Inc.: Web Application Vulnerability Analyst Contractor - Seattle, United States - Philpar

    Default job background
    Freelance
    Description

    Defiant, Inc:
    Web Application Vulnerability Analyst Contractor

    Wordfence is owned and operated by Defiant Inc.

    We are a small, dynamic, fast-growing, profitable and 100% founder owned company with loyal customers who love our products and services.

    We are the global leader in WordPress security, protecting over 4 million websites. We regularly release high-quality software, firewall rules, and threat intelligence to millions of customers around the world.

    We also publish ground-breaking security research weekly that is covered by journalists and information security professionals and publications around the world.


    If you are excited about working for a technology company that is securing a huge part of the Web and are looking for a full-time contractor job with flexible hours working remotely, this may be your dream job Our core hours are 10 am to 1 pm Pacific time and our team has flexibility outside those hours.

    Compensation is an hourly rate of $30 USD.
    Job Description

    We are looking for a Web Application Vulnerability Analyst Contractor with a focus on WordPress to join our Threat Intelligence team.

    In this role, you will be expected to analyze newly reported WordPress Plugin, Theme, and Core vulnerabilities to determine their exploitability, severity, impact and more along with determining existing coverage of the Wordfence firewall's rules.

    You will also be expected to triage incoming Bug Bounty report submissions which involves validating reports and proposing bounties based on company assessed impact.

    Key Responsibilities
    Triaging and validating vulnerability reports submitted to our Bug Bounty Program


    This includes:
    Quickly assessing impact to determine the order in processing incoming submissions.
    Setting up a test environment to replicate any reported vulnerabilities
    Finding the source of the vulnerability in the source code, when not provided by the researcher
    Populating a vulnerability record based on the provided data
    Determining if a custom firewall rule needs to be developed for the vulnerability.
    Providing a recommended solution to the developer for common vulnerabilities
    Proposing a bounty amount based on our internal calculator to reflect the severity and impact of the vulnerability.
    Working with the customer service team that handles the responsible disclosure.
    Validating a patch is sufficient when released.

    Adding newly disclosed vulnerabilities from public data sources to our Vulnerability Database


    This includes:
    Fully analyzing the vulnerability to determine impact
    Identifying where in the code the vulnerability occurs
    Verifying that the issue is fully patched.
    Formulating a CVSS score and choosing a CWE.
    Populating a vulnerability record based on disclosed and newly discovered data.
    Determining if a custom firewall rule needs to be developed for the vulnerability.


    Our ideal candidate has:
    Certifications, or desire to get certified (OSWE, eWPTx, PenTest+, Security+, eWPT, GWAPT, etc.)
    Experience formulating CVSS scores and identifying CWEs for vulnerability types.
    Ability to process large amounts of technical data consistently and accurately with minimal mistakes.
    Experience performing data entry related tasks where some technical proficiency and additional analysis is required prior to data entry.
    An understanding of the WordPress threat model
    Experience with writing and/or testing Web Application Firewall rules, or familiarity with functionality of access control lists.
    Experience working with REGEX.
    Experience writing simple scripts to improve workflows and efficiency.
    Desired Qualifications

    Technical experience with common web application based vulnerabilities in WordPress plugins and themes.

    Ability to develop proof of concepts programmatically or conceptually to test the exploitability of vulnerabilities, and the general ability to read/understand programmatic and conceptual proof of concepts.

    Ability to replicate the exploitability of vulnerabilities in a test environment
    Ability to review source code changes to determine if a vulnerability was patched, and what the patch was for.
    Experience generating/modifying HTTP requests.
    Experience working with BURP suite, or similar proxy software, and a PHP debugger.
    Experience programmatically interacting with REST APIs
    Comfort with diff'ing and searching files using command line tools.
    A solid understanding of WordPress hooks, how they are used, and how they can lead to vulnerabilities.
    A solid understanding of the responsible disclosure process.
    Excellent analytical ability, ability to think outside of the box, and an eagerness to learn.
    Hiring Process

    Please fill in the form provided in this application. The hiring team will look at this first. The way you answer our form will determine if your application moves to the next step. Please note that we read every answer and this form is a critical part of our hiring process.
    Participate in a series of phone interviews.

    We are respectful of your time and keep the number of interviews you will need to attend to a minimum.

    This is usually two or three interviews.
    All contracts and offers of employment are contingent on the successful completion of a background check.

    The results of the background check are considered as they relate to the position and do not automatically disqualify someone from a contract or employment with the company.

    Join our fast-paced team and start testing our products and and helping release software to over 4 million customers All positions require a trial period of approximately 2-3 weeks with a minimum commitment of 10 hours per week.

    You will be paid for this short-term contract, and it will be used to evaluate whether both parties want to pursue an ongoing, regular employment relationship.

    Diversity at Defiant


    We value diversity and do not discriminate based on race, color, religion or creed, national origin or ancestry, sex, age, physical or mental disability, military or veteran status, gender identity or expression, marital status, sexual orientation, political ideology, economic status, parental status, or any other non-performance-related status.

    #J-18808-Ljbffr


  • iMatch Technical Services Seattle, United States

    Job Title: Clinical Application Analyst (Procedural Suite) · Employment Type: Contract to Hire · Duration: 6 months · Pay Range: Convert between $110k-140k · Benefits Offered: Standard contractor benefits during the contract period if necessary · Location: Hybrid in Seattle, WA 1 ...


  • ProjectCorps Seattle, United States

    ProjectCorps, a leading business and technology consulting firm in Seattle, seeks Senior Business Analyst with exceptional consulting skills for work in diverse business environments to expand and enhance our clients' program and project management capabilities. · Qualified seni ...


  • Aalis Management Consulting Seattle, United States

    Job Description · Job DescriptionAalis Management Consulting is an 8(a) certified, Service-Disabled Veteran-Owned Small Business (SDVOSB) and Economically Disadvantaged Woman-Owned Small Business (EDWOSB) driven by the same principles that guide our armed forces. Founded by a US ...


  • Abacus Seattle, United States

    Sound Transit IT Temporary Contractor Request Form · ssignment: IT Operations Center Analyst I (4 positions) Category/Level*: /2 Term of Assignment: 12 Months Rate Range: [Minimum to midpoint] General Summary: Under general direction the IT Operations Center (ITOC) Analyst will o ...


  • N C Machinery Seattle, United States

    Harnish Group Inc. is the Caterpillar Dealer in Central and Western Washington, Central and Eastern Montana, Northwestern Wyoming, Northwestern North Dakota, and the state of Alaska. Our Member Companies are N C Machinery, N C The Cat Rental Store, N C Power Systems, Tractor & Eq ...


  • Washington Trust Bank Seattle, United States

    Under the supervision of the Director of Investments, works as a partner with the WMAS Investments Team and the WMAS Relationship Managers (RMs) by handling all investment aspects and client investment inquiries on assigned accounts. · Essential Functions: · Handles all investme ...


  • Washington Trust Bank Seattle, United States

    Under the supervision of the Director of Investments, works as a partner with the WMAS Investments Team and the WMAS Relationship Managers (RMs) by handling all investment aspects and client investment inquiries on assigned accounts. · Essential Functions: · Handles all investmen ...


  • Koniag Government Services Seattle, WA, United States

    KGS Job ID Koniag Government Services is seeking an Intelligence/Program Analyst to support our sector of companies in Washington, DC · We offer competitive compensation and an extraordinary benefits package including health, dental and vision insurance, 401K with company matchin ...


  • Shelf Engine Seattle, United States

    **Customer Experience Analyst** · at Shelf Engine Seattle, WA or Remote Shelf Engine is searching for a talented **Customer Experience Analyst** to join our growing team and report directly to our Head of Operations. In this role, you will work with multiple teams across functio ...


  • Apollo Professional Solutions Seattle, United States

    Job Description · Materials Engineer · Location: Tukwila, WA · Hourly rate: $ $70.00 · Contractor benefits: Medical, Vision, Dental, 401k · On-Call: Up to 40 hours per week. · Materials Analysts and Materials Engineers are encouraged to apply. · Materials Analyst Responsibilit ...


  • DLR Group Seattle, United States

    Elevate the human experience through design TM · Building Performance Analyst, Sustainability Certifications · We are an integrated design firm with a promise to elevate the human experience through design. This fuels the work we do around the world and inspires our mission to i ...

  • K2 Staffing, LLC

    Project Accountant

    3 days ago


    K2 Staffing, LLC Seattle, United States

    Summary · Our client, one of Seattle's most well-respected commercial construction general contractors, is in need of an · Project Accountant . · This individual will be managing daily tasks associated with various projects. Their primary responsibilities will be focused on pr ...


  • Sound Transit Seattle, United States

    Hourly range is $26.44 to $62.50, with a midpoint of $40.86.New hires typically receive between minimum and midpoint, however, we may go slightly higher based on experience, internal equity and market. · Sound Transit also offers a competitive benefits package with a wide range ...


  • Sound Transit Seattle, United States

    Hourly range is $26.44 to $62.50, with a midpoint of $40.86. New hires typically receive between minimum and midpoint, however, we may go slightly higher based on experience, internal equity and market. · Sound Transit also offers a competitive benefits package with a wide range ...


  • Neighborcare Health Seattle, United States

    Purpose · The Financial Analyst is responsible for complex financial analysis by extracting financial data from various accounting and information systems; perform objective financial and cost accounting analysis of data with recommendations to leadership on cost savings and pro ...


  • Community Health Plan of Washington Seattle, United States

    ** Risk Adjustment Analyst** · **Job Category****:** Accounting & Finance **Requisition Number****:** RISKA001587 Showing 1 location **Job Details** · **Description** · **Job Summary****:** · At CHPW, analytics translate healthcare data into actionable insights. This role lea ...

  • LHH Recruitment Solutions

    Financial Analyst

    1 day ago


    LHH Recruitment Solutions Seattle, United States

    Job Description · Job DescriptionLHH is partnering with a large company in Seattle, WA to identify a temporary Financial Analyst. You will be handling revenue reports, updating and processing KPI reports, and researching variances. The team is looking for a candidate who has a ba ...


  • Delta Dental of Washington Seattle, United States

    Join Delta Dental of Washington or Arcora Foundation as a Digital Marketing Business Analyst Intern this summer and make a direct impact to help all Washingtonians' healthy smilesDelta Dental of Washington is the largest Washington State dental benefits provider and is part of th ...


  • Hiya Inc Seattle, United States

    **Trust & Safety Manager** · at Hiya Seattle At Hiya, we are on a mission to modernise the voice call with trust, identity and intelligence. We are trusted by global enterprises, carriers and consumers to provide secure, engaging connections and stop unwanted calls. Built on the ...

  • Aquent

    Business Analyst 2

    6 days ago


    Aquent Seattle, United States

    Overview · Placement Type: · Temporary · Salary (USD): · $35.18 to $39.09 an hour · Start Date: · We are looking for a Business Analyst who is well-organized and possesses the ability to multi-task and help execute the Studio's contracting needs. The ideal candidate will inter ...