Senior Security Engineer - Product Security

TaxSlayer

North Augusta (GA)

On-site

USD 140,000 - 180,000

Full time

7 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Remote options
Hybrid work
PTO
Health insurance
401(k) match
Bonuses
Education assistance
On-site fitness facility
Life insurance
Disability coverage
Wellness program

Job summary

TaxSlayer in Augusta, GA is seeking a Senior Security Engineer – Product Security to partner with software teams, embed security across the SDLC, and manage the bug bounty program. This role focuses on identifying risks, conducting assessments, and supporting governance and compliance initiatives.

The position offers hybrid work in Augusta with on-site days and remote days, with a potential fully remote option for residents of GA/SC/NC/FL/TN.

Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field.
  • Minimum of 5 years of experience in application security, product security, security engineering, or related field.
  • Experience partnering with software development teams to integrate security into the SDLC.
  • Experience identifying vulnerabilities in web apps, APIs, and cloud environments.
  • Strong knowledge of SDLC practices and threat modeling methodologies (STRIDE/PASTA).
  • Knowledge of OWASP Top 10, CWE/SANS Top 25, and security tooling (SAST/DAST).
  • Preferred OSCP/OSWE/GWAPT/CSSLP or similar certifications; bug bounty experience helpful.

Responsibilities

  • Serve as primary security point of contact for assigned development teams, participating in sprint planning and design reviews.
  • Review features, designs, APIs, and third-party integrations to identify risks and mitigate security issues.
  • Partner with engineering to embed security controls early in the SDLC and promote secure coding practices.
  • Conduct secure code reviews, threat modeling, architecture risk assessments, and security testing.
  • Perform hands-on penetration testing and coordinate third-party testing as needed.
  • Manage SAST/DAST and CI/CD security tooling and remediation tracking.
  • Own bug bounty program administration, triage, validation, and remediation coordination.
  • Support governance, risk, and compliance activities including PCI DSS, SOC 2, IRS security requirements.

Skills

Security engineering
Threat modeling
Secure code review
Penetration testing
CI/CD security
Bug bounty
Risk & compliance
Communication

Education

Bachelors in Cybersecurity or CS

Tools

SAST tooling
DAST tooling
CI/CD security tools
OWASP Top 10

Job description

Current job opportunities are posted here as they become available.

Subscribe to our RSS feeds to receive instant updates as new positions become available.

Senior Security Engineer - Product Security

Senior Security Engineer- Product Security

Augusta, Ga

Work Location & Schedule

This is a hybrid position based in our Augusta, GA office. Team members are expected to work on-site two days per week in our Augusta office and remotely three days per week. This schedule supports collaboration while offering flexibility and work life balance.

For the right candidate, this position may also be considered as a fully remote opportunity for individuals residing in Georgia, South Carolina, North Carolina, Florida, or Tennessee only.

Who we are:

At TaxSlayer, we're more than just a tax software development company; we’re empowering individuals and small businesses to plan for and file their tax returns online with confidence and ease. As a leading innovator in tax prep software, TaxSlayer, LLC, has been revolutionizing the way people file their taxes since 1965. Our user friendly platform offers an intuitive interface that guides customers through the tax-filing process step by step, ensuring accuracy and maximum refunds.

TaxSlayer is headquartered in Augusta, GA with a satellite office in Charlotte, NC. TaxSlayer proudly employs nearly 200 individuals year round, plus 300 additional in season support agents. Our employees are among the brightest, most talented group of innovators who work collaboratively to improve our products and exceed customer expectations season after season.

About the Role

The Senior Security Engineer – Product Security serves as the primary security partner to software development teams, helping ensure security is embedded throughout the software development lifecycle. This role is responsible for identifying and mitigating application security risks, conducting security assessments, managing TaxSlayer's bug bounty program, and supporting compliance and risk management initiatives. Working closely with engineering, product, and Information Security teams, this position helps protect sensitive taxpayer and financial data while fostering secure development practices across the organization.

Core Responsibilities

  • Serve as the primary security point of contact for assigned Development teams, participating in sprint planning, architecture discussions, and design reviews.
  • Review product features, system designs, APIs, authentication mechanisms, and third party integrations to identify and mitigate security risks.
  • Partner with engineering teams to integrate security controls early in the software development lifecycle and promote secure coding practices.
  • Conduct secure code reviews, threat modeling activities, architecture risk assessments, and security testing for applications and product releases.
  • Perform hands on penetration testing and coordinate third party testing efforts when appropriate.
  • Manage and optimize SAST, DAST, and CI/CD security tooling and processes.
  • Track identified vulnerabilities through remediation and collaborate with engineering teams to address findings.
  • Own day to day administration of the company's bug bounty program, including researcher engagement, submission triage, validation, and remediation coordination.
  • Monitor and report bug bounty program performance metrics and recommend process improvements.
  • Support governance, risk, and compliance initiatives, including audits and assessments related to PCI DSS, SOC 2, IRS security requirements, and other applicable regulations.
  • Contribute to enterprise risk management activities and maintain product level security risk documentation.
  • Assist with security incident response activities, including investigation, root cause analysis, and remediation tracking.
  • Mentor engineering teams on secure coding practices, threat modeling, and product security best practices.
  • Other duties as assigned.

How your Success is measured

  • Reduction in application and product security vulnerabilities identified in production environments.
  • Timely completion of security reviews, threat models, and vulnerability remediation activities.
  • Effective integration of security controls within the software development lifecycle.
  • Successful management and continuous improvement of the bug bounty program, including response and remediation timelines.
  • Positive audit and compliance assessment outcomes related to product security controls.
  • Increased adoption of secure coding practices and security standards across development teams.
  • Clear communication of technical risks and effective collaboration with engineering and business stakeholders.

Education & Experience

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field, or equivalent combination of education and experience.
  • Minimum of 5 years of experience in application security, product security, security engineering, or a related field.
  • Experience partnering closely with software development teams to integrate security into the development lifecycle.
  • Experience identifying and validating vulnerabilities in web applications, APIs, and cloud based environments.
  • Strong knowledge of secure software development lifecycle (SDLC) practices.
  • Experience with threat modeling methodologies such as STRIDE, PASTA, or similar frameworks.
  • Knowledge of common vulnerability frameworks including OWASP Top 10 and CWE/SANS Top 25.
  • Experience with SAST, DAST, penetration testing, code review, and CI/CD security tools.
  • Strong understanding of web application, API, and cloud security principles.
  • Ability to assess and communicate technical security risks to technical and non-technical audiences.
  • Strong problem solving, collaboration, and relationship building skills.
  • Ability to balance security requirements with business objectives and product delivery schedules.
  • Preferred certifications include OSCP, OSWE, GWAPT, CSSLP, or comparable credentials.
  • Experience with bug bounty or vulnerability disclosure programs is strongly preferred.
  • Familiarity with regulatory frameworks including PCI DSS, SOC 2, FTC Safeguards Rule, IRS security requirements, CCPA, and related standards is preferred.

Physical & Work Environment Requirements

  • This is a hybrid or remote role.
  • Work is performed in a standard office environment with minimal physical demands.
  • Must be able to work at a computer for extended periods.
  • Occasional travel may be required for meetings, training, or business needs.
Ready to Join Us?
What We Offer

At TaxSlayer, we know that our greatest strength lies in the talented individuals who drive our innovation and success. That’s why we’re proud to offer a competitive, comprehensive, and flexible benefits package designed to support your well being, growth, and work life balance.

Flexible Work Options

Enjoy remote and hybrid work opportunities, depending on the role and team needs.

Generous Time Off

Full Time employees receive a robust PTO bank, plus paid holidays to recharge and refresh.

Health & Wellness Coverage

  • Medical, Dental, and Vision insurance through Aetna and SunLife
  • Coverage options include: Employee Only, Employee + Spouse/Domestic Partner, Employee + Children, or Family
  • Access to a Wellness Program and on site fitness facility
  • 401(k) with a 150% match on up to 3% of your contribution
  • Performance based bonuses and regular salary reviews
  • Company paid life insurance, short term and long term disability
  • Optional critical illness and accident insurance
  • Education assistance to support your professional development
  • Company paid parking, company store, and unlimited free coffee

Please note: As a federal contractor, we are responsible to ensure our employees meet any obligations set forth by the U.S. government. We will inform you of any applicable requirements as they arise.

Legal Disclaimers TaxSlayer is an equal opportunity employer and complies with all applicable laws regarding discrimination. Employment is based on qualifications, merit, and business need. This job description is not intended to be all inclusive and may be subject to change to meet business needs.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer - Product Security
Senior Security Engineer - Product Security

TaxSlayer • North Carolina

Hybrid
USD 120,000 - 150,000
Flexible work options
Wellness program
401(k) with match
Senior Security Engineer - Product Security
Senior Security Engineer - Product Security

TaxSlayer • Tennessee

Hybrid
USD 120,000 - 170,000
Flexible Work Options
Remote and Hybrid opportunities
PTO and holidays
+1
Senior Security Engineer - Product Security
Senior Security Engineer - Product Security

TaxSlayer • Charlotte (NC)

Hybrid
USD 140,000 - 190,000
Flexible Work Options
Remote and Hybrid Work
PTO and holidays
+6
Senior Security Engineer
Senior Security Engineer

RHODES FINANCIAL SERVICES LLC • Augusta (GA)

Hybrid
USD 120,000 - 170,000
401(k) with 150% match on up to 3%
Health, dental, vision insurance
Flexible work options
+1
Senior Security Engineer - Product Security
Senior Security Engineer - Product Security

TaxSlayer • Virginia (MN)

Hybrid
USD 110,000 - 150,000
Flexible Work Options
401k match
Health Insurance
+3
Senior Security Engineer - Product Security
Senior Security Engineer - Product Security

TaxSlayer • Augusta (GA)

On-site
USD 120,000 - 160,000
Flexible Work Options
Generous Time Off
Health & Wellness Coverage
+2
Senior Security Engineer - Product Security
Senior Security Engineer - Product Security

TaxSlayer • Town of Florida (NY)

On-site
USD 140,000 - 180,000
Flexible Work Options
Generous Time Off
Health & Wellness Coverage
+6
Senior Security Engineer - Product Security
Senior Security Engineer - Product Security

TaxSlayer • Georgia

Hybrid
USD 120,000 - 180,000
Flexible Work Options
Generous Time Off
Health & Wellness Coverage
+3
Software Developer
Software Developer

TaxSlayer, LLC • Augusta (GA)

Hybrid
USD 85,000 - 115,000
Remote and hybrid work options
Competitive benefits package
Education assistance
+2
Software Developer
Software Developer

TaxSlayer • Lexington (SC)

Hybrid
USD 100,000 - 130,000
Health insurance
Wellness program
401(k) with match
+4