Назад
Company hidden
1 день назад

Product Security Engineer (AI)

145 300 - 244 850$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Product Security Engineer (AI) (application security/cybersecurity): Building secure, resilient software products and embedding security throughout the software development lifecycle with an accent on threat modeling, secure architecture, vulnerability management, and AI-enabled security workflows. Focus on modernizing security tooling, scaling risk-based remediation, securing Kubernetes and containerized applications, and establishing standardized secure deployment paths.

Location: Remote within the continental United States

Salary: $145,300–$244,850 base salary annually for US-based employees

Company

hirify.global develops identity and security products, with this role supporting product security across its software portfolio.

What you will do

  • Partner with Engineering throughout the software development lifecycle to identify risks, implement secure deployment practices, and embed secure-by-design principles.
  • Support threat modeling, secure coding standards, application security policies, security testing, and DevSecOps controls.
  • Coordinate application and penetration testing, validate findings, prioritize remediation, and perform root cause analysis.
  • Collaborate with Security Operations on application monitoring and detection capabilities.
  • Oversee remediation of security researcher disclosures through the bug bounty program.
  • Build security training, technical documentation, scalable tooling, and security champion programs.

Requirements

  • 4–5 years of experience in product security, application security, software engineering, or a related field.
  • Experience with SAST, SCA, DAST, container security scanners, CI/CD security controls, and DevSecOps practices.
  • Familiarity with Python, Go, Java, JavaScript/TypeScript, or Ruby.
  • Expertise in threat modeling, secure architecture design, and vulnerability management.
  • Experience using AI-powered tools and knowledge of AI security risks, secure AI-enabled applications, and AI security frameworks.
  • Ability to influence engineering organizations, communicate technical risks as business impact, and drive initiatives across multiple teams.

Nice to have

  • Knowledge of OWASP AI Security and Privacy Guide, NIST AI Risk Management Framework, Cybersecurity AI, or the OpenSSF AI/ML Security Framework.

Culture & Benefits

  • Collaborative cybersecurity organization working closely with Engineering and other security teams.
  • Medical, dental, vision, disability, life, and supplemental insurance options.
  • 401(k) plan with company matching, HSA, and flexible spending accounts.
  • Flexible vacation policy, paid holidays, sick leave, and paid parental leave.
  • Potential eligibility for corporate bonus or role-specific commission and equity participation.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →