CrawlJobs Logo

Browser Security Engineer

perplexity.ai Logo

Perplexity

Location Icon

Location:
United States , San Francisco

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

210000.00 - 385000.00 USD / Year

Job Description:

As Comet continues to grow as a stand-alone product and codebase, we are seeking a Browser Security Engineer to lead and own browser-specific security initiatives, including custom Chromium development, extension security, and cross-device features.

Job Responsibility:

  • Lead threat modeling and security architecture reviews for all Comet browser surfaces
  • Collaborate closely with product and engineering teams to proactively identify and mitigate browser vulnerabilities, especially issues specific to custom Chrome engineering and browser extension architecture
  • Develop security best practices, tooling, and documentation for engineers building browser-facing features
  • Serve as the security expert for topics such as Same-Origin Policy (SOP), XSS, sandboxing, browser extension permissions, and secure inter-device communication
  • Triage and resolve vulnerabilities found by external researchers (e.g., bug bounty, red-teaming partners) and the Chromium community
  • Build strong relationships with security partners and leverage their feedback for continuous improvement
  • Stay up to date on emerging browser security threats, tools, and industry trends

Requirements:

  • Prior experience in browser, application, or product security (ideally with Chrome/Chromium or other browser engine experience)
  • Deep knowledge of modern browser architectures
  • understanding of XSS, CSP, sandboxing, extension security, and WebView-specific threats
  • Experience with security reviews and threat modeling for web, mobile, and extension platforms
  • Ability to work cross-functionally with engineers, product leads, and external security researchers

Nice to have:

  • Contributions to open-source browser projects, security research, or participation in bug bounty programs
  • Experience with web and mobile threat modeling
  • Familiarity with secure sync and cross-device communication mechanisms
  • Track record of proactive security work embedded within product teams
What we offer:
  • Offers Equity
  • Full-time U.S. employees enjoy a comprehensive benefits program including equity, health, dental, vision, retirement, fitness, commuter and dependent care accounts, and more
  • Full-time employees outside the U.S. enjoy a comprehensive benefits program tailored to their region of residence

Additional Information:

Job Posted:
February 21, 2026

Employment Type:
Fulltime
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Browser Security Engineer

Corporate Security Engineer

We are looking for a Corporate Security Engineer to work with our Security, Engi...
Location
Location
Netherlands
Salary
Salary:
Not provided
clickhouse.com Logo
ClickHouse
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience with automation tools and scripting
  • Familiarity with security and privacy compliance programs
  • Strong stakeholder management skills
Job Responsibility
Job Responsibility
  • Architect and secure corporate security assets and infrastructure supporting ClickHouse products and services (e.g. Google Workspace, Okta)
  • Collaborate with business operations, IT, legal, product and engineering teams to facilitate safe and secure use of company assets (e.g. user and device provisioning)
  • Develop and maintain corporate security tools and processes (endpoint security, mobile device management, vulnerability management, patch management, system hardening, vendor management, user authentication and authorization, physical security, DLP)
  • Support the ClickHouse compliance security and privacy programs including SOC 2 Type II and ISO 27001
  • Manage vendor on-boardings and secure configuration (e.g. integrations, Slack Apps, browser extensions)
  • Lead security training program
  • Collaborate with business operations on resolving ad-hoc IT and IT security tasks
  • Develop and improve insider risk program
  • Identify and respond to security issues, vulnerabilities, and incidents concerning corporate assets and users
What we offer
What we offer
  • Flexible work environment
  • Healthcare - Employer contributions towards your healthcare
  • Equity in the company - Every new team member who joins our company receives stock options
  • Time off - Flexible time off in the US, generous entitlement in other countries
  • A $500 Home office setup if you’re a remote employee
  • Global Gatherings – We believe in the power of in-person connection and offer opportunities to engage with colleagues at company-wide offsites
Read More
Arrow Right

Corporate Security Engineer

We are looking for a Corporate Security Engineer to work with our InfoSecurity, ...
Location
Location
United Kingdom
Salary
Salary:
Not provided
clickhouse.com Logo
ClickHouse
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience with automation tools and scripting
  • Familiarity with security and privacy compliance programs
  • Strong stakeholder management skills
Job Responsibility
Job Responsibility
  • Architect and secure corporate security assets and infrastructure supporting ClickHouse products and services (e.g. Google Workspace, Okta)
  • Collaborate with business operations, IT, legal, product and engineering teams to facilitate safe and secure use of company assets (e.g. user and device provisioning)
  • Develop and maintain corporate security tools and processes (endpoint security, mobile device management, vulnerability management, patch management, system hardening, vendor management, user authentication and authorization, physical security, DLP)
  • Support the ClickHouse compliance security and privacy programs including SOC 2 Type II and ISO 27001
  • Manage vendor onboardings and secure configuration (e.g. integrations, Slack Apps, browser extensions)
  • Lead security training programs
  • Collaborate with business operations on resolving ad-hoc IT and IT security tasks
  • Develop and improve insider risk program
  • Identify and respond to security issues, vulnerabilities, and incidents concerning corporate assets and users
What we offer
What we offer
  • Flexible work environment - ClickHouse is a globally distributed company and remote-friendly. We currently operate in 20 countries
  • Healthcare - Employer contributions towards your healthcare
  • Equity in the company - Every new team member who joins our company receives stock options
  • Time off - Flexible time off in the US, generous entitlement in other countries
  • A $500 Home office setup if you’re a remote employee
  • Global Gatherings – We believe in the power of in-person connection and offer opportunities to engage with colleagues at company-wide offsites
Read More
Arrow Right

Corporate Security Engineer

We are looking for a Corporate Security Engineer to work with our Security, Engi...
Location
Location
United States
Salary
Salary:
169150.00 - 225000.00 USD / Year
clickhouse.com Logo
ClickHouse
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience with automation tools and scripting
  • Familiarity with security and privacy compliance programs
  • Strong stakeholder management skills
Job Responsibility
Job Responsibility
  • Architect and secure corporate security assets and infrastructure supporting ClickHouse products and services (e.g. Google Workspace, Okta)
  • Collaborate with business operations, IT, legal, product and engineering teams to facilitate safe and secure use of company assets (e.g. user and device provisioning)
  • Develop and maintain corporate security tools and processes (endpoint security, mobile device management, vulnerability management, patch management, system hardening, vendor management, user authentication and authorization, physical security, DLP)
  • Support the ClickHouse compliance security and privacy programs including SOC 2 Type II and ISO 27001
  • Manage vendor on-boardings and secure configuration (e.g. integrations, Slack Apps, browser extensions)
  • Lead security training program
  • Collaborate with business operations on resolving ad-hoc IT and IT security tasks
  • Develop and improve insider risk program
  • Identify and respond to security issues, vulnerabilities, and incidents concerning corporate assets and users
What we offer
What we offer
  • Flexible work environment - ClickHouse is a globally distributed company and remote-friendly. We currently operate in 20 countries
  • Healthcare - Employer contributions towards your healthcare
  • Equity in the company - Every new team member who joins our company receives stock options
  • Time off - Flexible time off in the US, generous entitlement in other countries
  • A $500 Home office setup if you’re a remote employee
  • Global Gatherings – We believe in the power of in-person connection and offer opportunities to engage with colleagues at company-wide offsites
  • Fulltime
Read More
Arrow Right

Senior Web Security Engineer, Browser Platform

Working on the Security Functional Team, you'll play a pivotal role in ensuring ...
Location
Location
Salary
Salary:
178500.00 USD / Year
duckduckgo.com Logo
DuckDuckGo
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years of experience in web or application security (performing security assessments, vulnerability research, penetration testing, or secure code review)
  • Advanced programming or scripting experience with JavaScript
  • Experience with at least one WebView technology (WebKit, WebView2, Chromium WebView, etc.) and understanding of browser security models (SOP, CSP, CORS, SameSite cookies)
  • Hands-on experience identifying and exploiting web vulnerabilities (XSS, CSRF, injection attacks, authorization flaws, etc.)
  • Familiarity with security testing tools and frameworks
  • Experience partnering and collaborating with Product Engineers, advising on security matters and helping teams ship secure code faster
  • Experience shaping how an organisation thinks about security - driving best practices, improving processes, and raising the bar across teams
Job Responsibility
Job Responsibility
  • Conduct browser security audits (special pages, DuckAI integrations, password manager, etc.)
  • Execute on SERP security mitigations (XSS prevention, tooling development to help engineers write safer code)
  • Manage application security scanning infrastructure setup (aka SAST/DAST integrations in GitHub)
  • Deliver on Internal red-team operations (simulated attack scenarios)
  • Support security triage
What we offer
What we offer
  • Offers Equity
  • Paid parental leave
  • Office setup allowance
  • Co-working allowances
  • Fulltime
Read More
Arrow Right

Product Security Researcher

We’re a team of hungry, high-character professionals from all backgrounds who ca...
Location
Location
Israel , Tel Aviv
Salary
Salary:
Not provided
island.io Logo
Island
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong understanding of browser internals, OS security mechanisms, or application-layer security
  • Proficiency in one or more programming/scripting languages (e.g., Python, JavaScript, C/C++, Go)
  • Experience in vulnerability research, bug hunting, reverse engineering, or exploit development
  • Familiarity with common vulnerability classes (e.g. RCE, memory corruption, sandbox escapes)
  • Curiosity-driven mindset with a passion for breaking things and understanding how they work
Job Responsibility
Job Responsibility
  • Vulnerability Research: Identify and analyze vulnerabilities in browser components, system integrations, and third-party libraries relevant to the Island Enterprise Browser
  • Security Testing & Tooling: Develop custom tooling and automation for security testing, fuzzing, and vulnerability detection tailored to our product stack
  • Threat Modeling: Collaborate with developers, architects, and the Product Security Lead to assess threat scenarios and attack surfaces for new features and integrations
  • Exploit Prototyping: Build proof-of-concepts to validate the impact and exploitability of discovered security issues
  • Collaboration & Knowledge Sharing: Support development teams in secure coding practices, and contribute to internal knowledge bases and playbooks
  • Security Research Enablement: Stay ahead of the curve by tracking current exploits, security trends, and techniques
  • attend or present at security conferences and engage with the broader security community
  • Fulltime
Read More
Arrow Right

Technology Services Engineer – Endpoint Protection

Immediate need for an Endpoint Protection Tech Services Engineer to work with a ...
Location
Location
United States , Alpharetta, Georgia
Salary
Salary:
Not provided
tier4group.com Logo
Tier4 Group
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3+ years in an MSP or multi-tenant environment focused on endpoint security and patch management
  • Hands-on expertise with device management tools
  • Operational experience with EDR/XDR and vulnerability tools for Endpoints including policy tuning, incident handling, and containment
  • Intermediate PowerShell for automation and reporting
  • Solid fundamentals in Windows endpoint administration, AD/Entra device compliance, networking basics and change management
  • Clear, concise communication: comfortable leading client-facing security reviews and incident updates
Job Responsibility
Job Responsibility
  • Patch management at scale: Build ringed deployment strategies, pilots, and phased rollouts
  • schedule maintenance windows
  • handle approvals/rollback
  • track patch compliance SLAs across Windows (and macOS where applicable) via various ITSM tools
  • Application & driver updates: Package, test, and deploy third-party updates (e.g., browsers, runtimes)
  • manage superdense and compatibility issues
  • EDR/XDR operations: Deploy and maintain EDR/XDR
  • configure policies, prevention/visibility settings, exclusions, device control, and rules
  • monitor detections and contain/isolate endpoints
  • Threat hunting & investigations: Use ITSM tools (Advanced Hunting / KQL) to identify IOCs, suspicious behaviors, lateral movement, and persistence
What we offer
What we offer
  • Competitive salary
  • comprehensive benefits (medical, dental, vision, life, disability, 401(k) match)
  • robust PTO
  • Impactful work: your projects directly support the systems that power healthcare delivery
  • Close collaboration with experienced engineers and IT leaders across infrastructure, cloud, and security
  • Opportunity to shape and scale project delivery practices in a growing MSP environment
  • Fulltime
Read More
Arrow Right

Senior Product Security Researcher

As a Product Security Researcher at Island, you will dive deep into the security...
Location
Location
Israel , Tel Aviv
Salary
Salary:
Not provided
island.io Logo
Island
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong understanding of browser internals, OS security mechanisms, or application-layer security
  • Proficiency in one or more programming/scripting languages (e.g., Python, JavaScript, C/C++, Go)
  • Experience in vulnerability research, bug hunting, reverse engineering, or exploit development
  • Familiarity with common vulnerability classes (e.g. RCE, memory corruption, sandbox escapes)
  • Curiosity-driven mindset with a passion for breaking things and understanding how they work
  • Experience with fuzzing tools, debuggers, or reverse engineering frameworks is a strong plus
Job Responsibility
Job Responsibility
  • Vulnerability Research: Identify and analyze vulnerabilities in browser components, system integrations, and third-party libraries relevant to the Island Enterprise Browser
  • Security Testing & Tooling: Develop custom tooling and automation for security testing, fuzzing, and vulnerability detection tailored to our product stack
  • Threat Modeling: Collaborate with developers, architects, and the Product Security Lead to assess threat scenarios and attack surfaces for new features and integrations
  • Exploit Prototyping: Build proof-of-concepts to validate the impact and exploitability of discovered security issues
  • Collaboration & Knowledge Sharing: Support development teams in secure coding practices, and contribute to internal knowledge bases and playbooks
  • Security Research Enablement: Stay ahead of the curve by tracking current exploits, security trends, and techniques
  • attend or present at security conferences and engage with the broader security community
  • Fulltime
Read More
Arrow Right

Senior Security Engineer - Edge Browser

The Microsoft Edge Browser Security Team is responsible for securing Edge client...
Location
Location
United States , Redmond
Salary
Salary:
119800.00 - 234700.00 USD / Year
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Doctorate in Statistics, Mathematics, Computer Science, Computer Security, or related field
  • Master's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection
  • Bachelor's Degree in Statistics, Mathematics, Computer Science, Computer Security, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat analysis or modeling, cybersecurity, vulnerability research, and/or anomaly detection
  • equivalent experience
  • Experience with relevant security research along with relevant CVEs (if available) ideally in browser vulnerability discovery
  • Experience with writing basic exploits for native or web applications
  • Development and deployment of fuzz testing and/or static analysis software
Job Responsibility
Job Responsibility
  • Analyse complex issues using multiple data sources to develop insights and identify security problems and threats
  • Identify and perform research on critical security areas, collaborate across teams, design preventive solutions, and escalate impactful findings appropriately
  • Help plan and execute strategies for growing Edge’s capabilities
  • Drive initiatives to identify and mitigate security risk for our customers
  • Oversee our security response work, acting on reports from vulnerability researchers
  • Monitor and alert the security health of Edge and plan remedial actions
  • Collaborate with other security teams across Microsoft to design and develop new security mitigations and defences
  • Work closely with our partners in the Chromium community to improve browser security
  • Leverage curiosity and learn new skills to operate in a fast-paced and ever-changing environment
  • Interact with the external security community, researchers and security conference presenters
  • Fulltime
Read More
Arrow Right