Skip to content

Product Security Engineer

Implements security solutions and automation for cloud, containers, and applications on GCP. Troubleshoots production issues, executes vulnerability remediation, and builds security infrastructure using Python/Java and Terraform. Requires 5+ years security/engineering experience.

168k – 200kMountain View, CAMcLean, VASecurity EngineeringOnsite5+ YOE

About the role

What You'll Do

  • Implement complex security solutions, including Cloud and SaaS security, and service account protections, and Application Security.
  • Build production-ready security automation using Python or Java to scale security operations and reduce manual toil
  • Execute security projects from requirements through deployment with minimal guidance, delivering high-quality results on time
  • Troubleshoot complex security issues in production environments, conducting deep technical analysis and implementing fixes quickly
  • Implement GKE security controls
  • Build and maintain cloud security infrastructure using Terraform
  • Configure GCP security services such as VPC Service Controls, Private Service Connect, Cloud Armor policies, IAM roles, and Secret Manager
  • Execute API security assessments by conducting security reviews, identifying vulnerabilities, and implementing remediation
  • Execute vulnerability remediation workflows for application, container, Cloud, and SaaS vulnerabilities within defined SLAs
  • Build security dashboards and reporting to track vulnerability MTTR, security control effectiveness, and false positive rates

Basic Qualifications

  • 5+ years in security and/or software engineering, with focus on implementation and execution
  • 5+ years of hands-on programming in Python or Java with demonstrated ability to build production-quality security tooling and automation
  • 3+ years of hands-on GCP experience including GKE, Cloud Run, IAM, Secret Manager, and security services
  • Container / mesh networks (GKE, Docker, Kubernetes security, image scanning, Binary Authorization, SBOM)
  • Infrastructure-as-code proficiency (Terraform preferred) for deploying and maintaining security infrastructure
  • Troubleshooting expertise with ability to debug complex issues in production cloud environments

Preferred Qualifications

  • GCP Professional Cloud Architect or Professional Cloud Security Engineer certification
  • OSCP or comparable hands-on offensive-security certifications (e.g., OSEP, GXPN, PNPT) demonstrating strong adversarial reasoning and exploit-focused problem-solving capability.
  • Experience with offensive-security methodologies (e.g., understanding attack chains, exploitation fundamentals, or red-team tooling) applied to defensive engineering contexts
  • Interest in applied security research—such as vulnerability discovery, protocol analysis, or emerging-threat investigation

Compensation

Mountain View, CA Pay Range $168,472—$200,000 USD

Skills

PythonJavaGCPGKETerraformKubernetesDockerIAMSecret ManagerCloud ArmorVpc Service ControlsPrivate Service Connect

Incident Response Security Engineer

Handles security incidents, develops detection and response processes, maintains logging platforms, and automates risk mitigation for cloud services. Requires experience in incident response, threat modeling, cloud security, and programming in Golang/Python.

169k – 225kUnited StatesSecurity EngineeringRemoteGoAWS

Software Engineer, Trust & Safety

Suno is seeking a Software Engineer, Trust & Safety to protect its platform and users from abuse, fraud, and harmful content. This role involves building data pipelines, anomaly detection systems, and internal tools to ensure user safety and platform integrity.

170k – 240kSan Francisco, CASecurity EngineeringOn-site3+ YOESQLPython

Vulnerability Automation Engineer

Designs and builds autonomous vulnerability automation pipelines using AI tools to discover assets, scan vulnerabilities, harden configurations, and auto-remediate in cloud-native environments. Requires 5+ years in security engineering, DevSecOps, IaC, and cloud security tools.

170k – 190kUnited StatesSecurity EngineeringRemote5+ YOEGoWiz

Software Engineer, Security Infrastructure

Builds and automates security controls, tooling, and compliance for AWS, Kubernetes, and CI/CD in cloud-native environments. Requires 4+ years in security engineering with hands-on IaC, scripting, and frameworks like SOC 2/FedRAMP.

170k – 220kMarina del Rey, CA +2Security EngineeringHybrid4+ YOEGoAWS

Risk Automation Engineer

The Risk Automation Engineer will design, build, and operate secure, agentic automation pipelines to manage risk and vendor lifecycles. This role focuses on eliminating manual GRC processes through AI-driven workflows and real-time risk posture visibility.

165k – 185kUnited StatesSecurity EngineeringRemote5+ YOEGoAWS