Skip to content

Staff Software Engineer, Product Security

Leads security integration into AI platform, owns critical code reviews for authentication and access control, architects secure tools, and mentors engineers on security practices. Requires 8+ years in product/application security with proven vulnerability remediation track record.

238k – 312kSan Francisco, CASecurity EngineeringHybrid8+ YOE

About the role

What You’ll Do

  • Establish and evolve security posture across the engineering organization, setting standards that scale with the company
  • Partner with Product Engineering, Infrastructure, and Platform teams to incorporate secure design principles at every stage of development
  • Own and review security-critical code across key parts of the product, including authentication and access control
  • Architect secure-by-default libraries and tools that make the secure path the easiest choice for developers
  • Drive mitigation strategies during security-related incident responses, coordinating cross-functional efforts
  • Mentor engineers and raise the security bar across teams through code reviews, design reviews, and technical guidance

What You Have

  • 8+ years of experience in product security, application security, offensive security, and/or security-focused software engineering
  • Long track record of identifying and remediating software vulnerabilities, demonstrated through CVEs, bug bounty awards, published research, or prior work experience
  • Demonstrated ability to lead cross-functional security initiatives and influence engineering teams without direct authority
  • Experience mentoring engineers and raising the quality bar of software engineering teams on security practices
  • Strong programming skills with demonstrated experience writing high-quality, production software
  • Excellent communication and collaboration skills, particularly when translating security risks into business terms for non-security stakeholders
  • Track record of leading complex cross-functional projects and delivering measurable security improvements

Nice to Have

  • Experience building security programs or practices at hyper-growth startups
  • Background with cloud environments (Azure, GCP, AWS) and cloud-native security patterns
  • Experience with AI/ML systems and emerging security considerations for LLM-based applications

Compensation Range

$238,000 - $312,000 USD

Skills

Application SecurityOffensive SecurityVulnerability RemediationAuthenticationAccess ControlCloud SecurityAWSGCPAzureAi/Ml SecurityPenetration TestingIncident ResponseSecure CodingCode ReviewDesign Review

Staff Security Engineer

Leads technical security design reviews, defines standards for protecting healthcare data, architects automated defenses, and mentors engineering on security practices. Requires exceptional technical judgment in cloud security, AppSec, or data domains.

239k – 275kUnited StatesSecurity EngineeringRemoteAWSWiz

Staff Application Security Engineer

Lead technical vision and architecture for Brex's Application Security team. Drive AI/ML security strategy, offensive testing, and secure product lifecycle across engineering orgs. Requires 8+ years in appsec with AI security expertise.

240k – 300kSan Francisco, CASecurity EngineeringHybrid8+ YOEGoAWS

Member of Technical Staff, Trust & Safety Engineer

Trust & Safety Engineer building red teaming systems, content moderation infrastructure, and safety tooling for generative AI models. Requires 3+ years software engineering experience with Python/TypeScript and comfort across the stack from model evals to AWS/GCP infrastructure.

240k – 290kUnited StatesSecurity EngineeringRemote3+ YOES3AWS

Staff Software Engineer, Identity & Access Management

Designs and implements identity and access management systems for Snowflake's Data Cloud, focusing on AI security, authentication protocols, and scalable authorization. Requires 10+ years experience with large-scale distributed systems and strong skills in Java/C#/C++.

236k – 339kBellevue, WASecurity EngineeringOn-site10+ YOEC#C++

Staff, Security Engineer (App & Product Sec)

Leads security program as first dedicated hire, building roadmap for cloud, app security, and compliance (HIPAA, SOC 2, HITRUST). Improves AWS/GCP security, vulnerability management, IAM, and embeds security in SDLC for high-growth healthcare tech company. Requires 8+ years experience.

235k – 300kSan Francisco, CA +1Security EngineeringHybrid8+ YOEAWSGCP