Leads Mozilla’s security compliance and governance programs, maintaining the ISMS and supporting ISO 27001 and SOC 2 Type 2 audits. The role requires at least five years of information security or GRC experience, strong policy and remediation expertise, and effective cross-functional collaboration.
139k – 218k/yrRemote7+ YOESecurity Engineering
Staff Security Engineer
MozillaFrance +3
Maintains Mozilla’s information security management system and leads ISO 27001 and SOC 2 compliance activities, including audit readiness, policy governance, remediation tracking, and stakeholder coordination. Requires at least five years in information security, GRC, or compliance and strong audit experience.
Salary not listedRemote7+ YOESecurity Engineering
Senior Security Engineer, Bug Bounty
MozillaUnited States
Own and scale Mozilla's web bug bounty program. Triage and validate reports from HackerOne/Bugzilla, drive vulnerability remediation with engineering teams, perform code reviews, and collaborate with SIRT on incidents. Requires 3+ years security engineering experience and bug bounty or bug hunting background.
116k – 183k/yrRemote3+ YOESecurity Engineering
Senior Security Engineer, Bug Bounty
MozillaGermany +2
Own and scale Mozilla's web bug bounty program as the primary interface with external researchers. Lead triage, validation, remediation of reports, collaborate with SIRT on incidents, perform code reviews, and drive secure development improvements. Requires 3+ years security engineering experience and bug bounty or bug hunting background.
Salary not listedRemote3+ YOESecurity Engineering
Search
Location
4 jobs
Job results
Staff Security Engineer
MozillaUnited States
Leads Mozilla’s security compliance and governance programs, maintaining the ISMS and supporting ISO 27001 and SOC 2 Type 2 audits. The role requires at least five years of information security or GRC experience, strong policy and remediation expertise, and effective cross-functional collaboration.
139k – 218k/yrRemote7+ YOESecurity Engineering
Staff Security Engineer
MozillaFrance +3
Maintains Mozilla’s information security management system and leads ISO 27001 and SOC 2 compliance activities, including audit readiness, policy governance, remediation tracking, and stakeholder coordination. Requires at least five years in information security, GRC, or compliance and strong audit experience.
Salary not listedRemote7+ YOESecurity Engineering
Senior Security Engineer, Bug Bounty
MozillaUnited States
Own and scale Mozilla's web bug bounty program. Triage and validate reports from HackerOne/Bugzilla, drive vulnerability remediation with engineering teams, perform code reviews, and collaborate with SIRT on incidents. Requires 3+ years security engineering experience and bug bounty or bug hunting background.
116k – 183k/yrRemote3+ YOESecurity Engineering
Senior Security Engineer, Bug Bounty
MozillaGermany +2
Own and scale Mozilla's web bug bounty program as the primary interface with external researchers. Lead triage, validation, remediation of reports, collaborate with SIRT on incidents, perform code reviews, and drive secure development improvements. Requires 3+ years security engineering experience and bug bounty or bug hunting background.