Enable job alerts via email!

Product Security Engineer

Stella Contracting, Inc

Phoenix (AZ)

Remote

USD 90,000 - 130,000

Full time

Yesterday
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading technology company is seeking a Remote Product Security Engineer to enhance the security posture of its products and services. This critical role involves integrating security practices into the development lifecycle, conducting assessments, and collaborating with various teams to mitigate risks effectively. The ideal candidate will possess strong technical skills, a solid grasp of secure development principles, and a proactive approach to identifying potential threats.

Qualifications

  • 2 years of experience in product security or secure software engineering.
  • Proficiency in one or more programming languages (Python, JavaScript, Java, Go, C++).
  • Solid understanding of secure development practices and common vulnerabilities.

Responsibilities

  • Perform security assessments of product designs, codebases, and APIs.
  • Conduct threat modeling exercises for new and existing features.
  • Integrate and manage security tools for SAST, DAST, and container security.

Skills

Application Security
Secure Development Methodologies
Vulnerability Management
Threat Modeling
Interpersonal Communication

Education

Bachelor's degree in Computer Science, Cybersecurity, or related field

Tools

Veracode
SonarQube
Checkmarx
Snyk

Job description

As a Remote Product Security Engineer, you will be responsible for integrating security into the design, development, and deployment of the company's products and services. You will work closely with software engineers, product managers, DevOps, and security teams to identify and mitigate risks throughout the product lifecycle, ensuring that security is embedded into every stage of development without hindering innovation or speed.

You will play a critical role in threat modeling, secure coding reviews, vulnerability management, and security tooling. Your mission is to proactively identify weaknesses, educate engineering teams on best practices, and deliver scalable solutions that protect both the organization and its users from ever-evolving cyber threats.

This role is ideal for a security-minded technologist who enjoys working in agile, collaborative environments and has a deep understanding of application security, cloud infrastructure, and secure development methodologies.

Key Responsibilities:

Perform security assessments of product designs, codebases, APIs, and deployment pipelines

Collaborate with product and engineering teams to define secure architecture patterns and development best practices

Conduct and support threat modeling exercises (e.g., STRIDE, PASTA) for new and existing features

Perform secure code reviews and provide actionable feedback to development teams

Integrate and manage security tools for SAST, DAST, SCA, and container security (e.g., Veracode, SonarQube, Checkmarx, Snyk)

Lead or support incident response related to product vulnerabilities or security issues

Monitor, triage, and help remediate findings from bug bounty programs or penetration testing

Collaborate with DevOps teams to enforce security in CI/CD pipelines (e.g., GitHub Actions, GitLab, Jenkins)

Provide internal security training and guidance to engineers and product stakeholders

Stay current with industry trends, threats, and best practices in product and application security

Required Qualifications:

Bachelors degree in Computer Science, Cybersecurity, or a related field (or equivalent experience)

2 years of experience in product security, application security, or secure software engineering

Solid understanding of secure development practices and common vulnerabilities (OWASP Top 10, CWE/SANS Top 25)

Familiarity with software security tools and techniques (e.g., static/dynamic analysis, dependency scanning, fuzzing)

Experience with secure SDLC methodologies and DevSecOps integration

Proficiency in one or more programming languages (e.g., Python, JavaScript, Java, Go, C++)

Strong interpersonal and communication skills for interfacing with both technical and non-technical teams

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Product Security Engineer

Delinea

null null

Remote

Remote

USD 113,000 - 225,000

Full time

Today
Be an early applicant

Product Security Engineer

Apex Systems

Danvers null

Remote

Remote

USD 121,000 - 195,000

Full time

2 days ago
Be an early applicant

Product Security Engineer

Delinea Inc.

null null

Remote

Remote

USD 100,000 - 150,000

Full time

4 days ago
Be an early applicant

Product Security Engineer

Diagram

Sterling null

Remote

Remote

USD 110,000 - 160,000

Full time

6 days ago
Be an early applicant

Product Security Engineer

Databricks Inc.

null null

Remote

Remote

USD 100,000 - 194,000

Full time

6 days ago
Be an early applicant

Product Security Engineer

Databricks

null null

Remote

Remote

USD 100,000 - 235,000

Full time

13 days ago

Product Security Engineer

HPE Aruba Networking

California null

Remote

Remote

USD 101,000 - 235,000

Full time

8 days ago

Product Security Engineer

HPE Aruba Networking

Town of Texas null

Remote

Remote

USD 101,000 - 235,000

Full time

9 days ago

Product Security Engineer

HPE Aruba Networking

Iowa null

Remote

Remote

USD 101,000 - 235,000

Full time

11 days ago