Senior Product Security Engineer

Jobtailor

United States

On-site

USD 150,000 - 190,000

Full time

4 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Chainalysis is seeking an experienced security engineer to build product security across its SaaS offerings. You will partner with product and platform teams to design, review code, and remediate vulnerabilities throughout the development lifecycle.

You will drive security code reviews for product launches, perform custom penetration tests, and help secure AI platforms and coding agents. Strong PKI experience with CI/CD automation is essential.

Qualifications

  • 5+ years of application security engineering experience.
  • Strong production coding in Java, TypeScript/JavaScript, Python, or Go.
  • Ability to perform deep code review, write proof-of-concept exploits, and contribute fixes directly into product repositories.
  • Experience building security automation into CI/CD pipelines.
  • Hands-on penetration testing of production SaaS applications, including custom tests for new product launches.
  • Experience identifying and remediating OWASP Top 10 web application vulnerabilities.
  • Experience securing internal AI/LLM platforms and coding agents, including model gateways, prompt/response controls, and agent permissioning.
  • Experience in Web3, blockchain, or digital assets is nice to have.
  • Experience building AI workflows, agents, and guardrailing is nice to have.
  • Knowledge of AWS, GCP, Kubernetes, EKS/GKE, Terraform, Wiz, SonarCloud, Burp, Cloudflare, GitHub, GitHub Actions, Artifactory, Java, JavaScript, Python, and Go

Responsibilities

  • Build product security across Chainalysis' SaaS offerings, partnering with product and platform engineering teams on design, code, and remediation.
  • Drive security code reviews for new product launches, including custom penetration tests.
  • Provide security review and guardrails for internal AI platforms and coding agents.
  • Create threat models, secure design reviews, and static/dynamic code analysis across the SDLC.
  • Build security automation into CI/CD pipelines.
  • Participate in a shared on-call rotation for high-severity production security incidents.

Skills

Application Security
Security Code Review
Penetration Testing
CI/CD Automation
OWASP Top 10 Remediation
Threat Modeling
Static Code Analysis
Proof-of-Concept Exploits
Vulnerability Remediation

Tools

AWS
GCP
Kubernetes
Terraform
Wiz
SonarCloud
Burp
Cloudflare
GitHub
GitHub Actions

Job description

  • Build Product Security across Chainalysis' SaaS offerings, partnering with product and platform engineering teams on design, code, and remediation
  • Drive security code reviews for new product launches, including custom penetration tests
  • Provide security review and guardrails for internal AI platforms and coding agents
  • Create threat models, secure design reviews, and static/dynamic code analysis across the SDLC
  • Build security automation into CI/CD pipelines
  • Participate in a shared on-call rotation for high-severity production security incidents

Requirements

  • 5+ years of application security engineering experience
  • Strong production coding ability in at least one of Java, TypeScript/JavaScript, Python, or Go
  • Ability to perform deep code review, write proof-of-concept exploits, and contribute fixes directly into product repositories
  • Experience building security automation into CI/CD pipelines
  • Hands-on penetration testing of production SaaS applications, including custom tests for new product launches
  • Experience identifying and remediating OWASP Top 10 web application vulnerabilities
  • Experience securing internal AI/LLM platforms and coding agents, including model gateways, prompt/response controls, and agent permissioning
  • Experience in Web3, blockchain, or digital assets is nice to have
  • Experience building AI workflows, agents, and guardrailing is nice to have
  • Knowledge of AWS, GCP, Kubernetes, EKS/GKE, Terraform, Wiz, SonarCloud, Burp, Cloudflare, GitHub, GitHub Actions, Artifactory, Java, JavaScript, Python, and Go

Core Competencies

Demonstrates extensive experience in application security engineering, focusing on security code reviews, threat modeling, and automation within CI/CD pipelines. Proficient in securing SaaS applications and internal AI platforms while identifying and remediating vulnerabilities.

Highest-signal resume keywords

  • Application Security Engineering
  • Security Code Review
  • CI/CD Pipeline Automation
  • Penetration Testing
  • OWASP Top 10 Vulnerability Remediation

ATS Optimization Keywords

Hard Skills

  • Java
  • TypeScript
  • JavaScript
  • Python
  • Go
  • Threat Modeling
  • Static Code Analysis
  • Dynamic Code Analysis
  • Proof-of-Concept Exploits
  • Vulnerability Remediation

Industry Keywords

  • SaaS
  • Web3
  • Blockchain
  • Digital Assets
  • AI Workflows
  • Coding Agents

Tools & Technologies

  • AWS
  • GCP
  • Kubernetes
  • Terraform
  • Wiz
  • SonarCloud
  • Burp
  • Cloudflare
  • GitHub
  • GitHub Actions
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer, Application Security
Security Engineer, Application Security

Jobtailor • California (MO)

On-site
USD 120,000 - 180,000
Senior Staff Product Security Engineer – AI
Senior Staff Product Security Engineer – AI

Jobtailor • Illinois

On-site
USD 140,000 - 220,000
Senior Application Security Engineer
Senior Application Security Engineer

Jobtailor • Colorado

On-site
USD 120,000 - 180,000
Lead Engineer – AI Security
Lead Engineer – AI Security

Jobtailor • Brooklyn Park (MN)

On-site
USD 120,000 - 150,000
Senior Product Security Engineer
Senior Product Security Engineer

Chainalysis • New York (NY)

On-site
USD 140,000 - 180,000
Senior Manager – Product Cybersecurity
Senior Manager – Product Cybersecurity

Jobtailor • Chicago (IL)

On-site
USD 150,000 - 230,000
Senior Product Security
Senior Product Security

Jobtailor • California (MO)

On-site
USD 150,000 - 210,000
Senior Product Security Engineer
Senior Product Security Engineer

P2P • Massachusetts

On-site
USD 150,000 - 210,000
Product Security Engineer - Team Lead
Product Security Engineer - Team Lead

Meta • Bellevue (WA)

On-site
USD 180,000 - 260,000
Senior Product Security Engineer
Senior Product Security Engineer

chainalysis-careers • United States

On-site
USD 140,000 - 190,000