Security Researcher Job at Truffle Security Co., Jackson, MS

eE9QMm1IbHRPb1pscit4bUlsUmlTcjJpOFE9PQ==
  • Truffle Security Co.
  • Jackson, MS

Job Description

TruffleHog is a popular open source tool used by security researchers all over the world to find leaky API keys and responsibly disclose them to affected companies. This provides income through bug bounty platforms like HackerOne to individuals that may otherwise have a hard time finding employment. This also prevents breaches from occurring, which can be very costly for companies to resolve. When we founded Truffle Security Co. in February of 2021, we committed to continue to grow a community with security researchers around the world, and continue to provide free and open resources to support those that make the world more secure. We have a strong commitment to open source and to the community. We’re looking for help supporting our mission to prevent leaking credentials and build the best products for machine identity protection. At Truffle, you’ll have the opportunity to join a fully remote, collaborative team contributing to meaningful advancements in cybersecurity. About the role In this highly visible, community-focused position, you will spearhead open-source security research projects and share your findings with the broader security community via blog posts, videos, webinars, conference talks, and open-source code contributions. By highlighting real-world security vulnerabilities, you’ll help amplify the Truffle Security brand and inspire organizations to better secure themselves. Below are examples of our style of research: Working closely with our Security Research team lead, you'll have the opportunity to select and run research projects that align with industry trends, emerging threats, product features, and company goals. Your expertise in application security and one other information security domain will drive the creation of engaging, credible content that resonates with both technical and non-technical audiences. Note : While the role is primarily geared toward candidates in the U.S. to align with conference schedules and time zone collaboration, we’re open to applicants based in Canada and Europe who bring strong relevant experience and can maintain sufficient working hour overlap with our U.S.-based team. What you'll be working on Conduct cutting-edge open-source security research in areas broadly related to secrets (application security, cloud security, DevSecOps, etc.). Create engaging content to showcase research findings, including blog posts, technical documentation, videos, and whitepapers. Present at conferences and industry events to share your discoveries, represent Truffle Security, and build community interest/trust. Contribute to open source by sharing research-driven improvements or small proof-of-concept tools to Truffle’s projects. Collaborate with engineering to share insights and help track down the occasional bug. Maintain a positive, respectful, and ethical attitude in all external and internal interactions. There's no room for egos or “gotchas” when dealing with security research. What we're looking for 3+ years of experience in application security , or another category: Cloud Security DevSecOps Data Analytics Blue Team Other relevant field Background in security research – Ideally, you have experience investigating security issues (through professional roles, side projects, or open-source contributions) Public-facing research – Ideally, you’ve shared findings externally (blog posts, talks, etc.), or you’re excited to build that muscle here Excellent technical writing skills that demonstrate clarity, depth, and accuracy Intermediate programming skills – your code doesn’t need to be production-ready, but you should be comfortable prototyping and building proof-of-concept tools We work primarily in Python and Golang Familiarity with LLM tools and how to effectively incorporate them into research and programming workflows Strong collaboration abilities – You’re equally good at respectfully asking for help and humbly providing it Ability to juggle multiple long-term research projects – We often run 5 or 6 projects simultaneously without compromising quality or timelines High ethical standards and integrity – We find many security vulnerabilities in our research, and it takes maturity to handle interactions with the organizations we disclose to Attention to Detail – There are many moving parts during research projects, and this role requires patience and extreme attention to detail How we support our team Fully remote within the U.S. – We believe opportunity shouldn’t be limited by geography. Our remote-first approach lets us hire the best people across the United States and empowers them to do their best work from wherever they are. A culture of mentorship, equity, and psychological safety – We’re committed to fostering an environment where you can thrive, learn, and feel valued. Competitive salary & meaningful equity – Be rewarded for your contributions with a strong compensation package and a stake in our shared success. Flexible paid time off – We operate with a high level of autonomy and trust, giving you the flexibility to take time off as needed—no strict limits, just the expectation that you’re meeting your commitments and getting your work done. 14 paid holidays – Including Thanksgiving, Winter Break, and 'Truffle Holidays' when the entire company takes a well-deserved day off together. Comprehensive health benefits – Medical, dental, and vision coverage with 80% of premiums covered for you and your dependents . Remote work stipend – Get set up for success with an $800 new hire stipend and $100/month to keep your workspace comfortable. Health & wellness stipend – $1,200/year to support your physical, mental, and emotional well-being— we believe that feeling good helps you do great work. Learning & development stipend – $2,000/year to invest in your growth, whether it’s courses, certifications, or industry conferences. 401(k) match – We match 100% of the first 6% of your contributions on every paycheck, helping you build financial security for the future. 100% remote + company off-sites – Twice a year, we come together in amazing locations like Hawaii, Cabo, and the Rocky Mountains to collaborate and connect. Truffle Security is an equal opportunity employer. We welcome applications from qualified candidates of all backgrounds. We are committed to promoting a culture of inclusion, respect, and equity in our workplace. #J-18808-Ljbffr Truffle Security Co.

Job Tags

Remote work, Flexible hours,

Similar Jobs

Whirlpool

Tool Room Machinist - 2nd or 3rd shift Job at Whirlpool

 ...Job Description Requisition ID: 67204 ABOUT WHIRLPOOL CORPORATION Whirlpool Corporation (NYSE: WHR) is a leading kitchen and laundry appliance company, in constant pursuit of improving life at home and inspiring generations with our brands. The company is driving... 

ComTec Information Systems

senior Boiler Technician Job at ComTec Information Systems

 ...Job Summary: We are seeking an experienced Boiler Service Technician with a strong background in Cleaver-Brooks equipment. Youll be responsible for servicing, inspecting, and troubleshooting commercial and industrial boilers and related systems. A professional attitude... 

WindowWorks LLC

Data Entry Specialist Job at WindowWorks LLC

Window Works Llc in Lago Vista, TX is looking for one chat representative to join our team. We are located on 20603 Fawn Cir. Our ideal candidate is a self-starter, punctual, and engaged. Window Works LLC of Texas offers premium exterior cleaning solutions to make your...

Prime Staffing

Travel RN Case Manager Job at Prime Staffing

 ...a travel nurse RN Case Management for a travel nursing job in Apple Valley, California. Job Description & Requirements ~ Specialty...  ...network of qualified candidates includes nurses, allied healthcare professionals, corporate support professionals and executives.... 

Pacific Sun Electric

Data Entry Clerk Job at Pacific Sun Electric

This is a remote position. Job Summary: We are seeking a detail-oriented and reliable Data Entry Clerk to join our team. In this role, you will be responsible for entering and maintaining accurate data in our systems. This is an entry-level position ideal for...