Назад
Company hidden
3 дня назад

Product Security Engineer IV (AI)

140 000 - 151 000$
Формат работы
remote (только USA)/hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Product Security Engineer IV (AI): Supporting product teams by conducting threat modeling, vulnerability assessments, code reviews, and secure design reviews for cloud-native products with an accent on AWS security, application security, and AI-enabled development. Focus on integrating security controls into CI/CD pipelines, prioritizing remediation, operating security tooling, and responding to security incidents.

Location: Remote within the United States; candidates near hirify.global offices may work fully remote or hybrid, with in-office work on Tuesdays and Wednesdays. Travel to hirify.global offices in New York or Reston, Virginia, is required 2–3 times per year. United States work authorization is required.

Salary: $140,000–$151,000 per year

Company

hirify.global is a self-sustaining nonprofit focused on expanding educational and career opportunities through technology and mission-driven work.

What you will do

  • Partner with product teams during planning, grooming, architecture, and design discussions to address security objectives.
  • Develop threat models and risk registers, conduct vulnerability assessments, and prioritize remediation using exploitability frameworks.
  • Review application code and security design documentation, identify security issues, and support vulnerability remediation.
  • Apply security policies, audit requirements, and GRC standards including SOC 2, ISO 27002, PCI, and PII controls.
  • Operate security tooling across cloud environments and integrate security controls into CI/CD pipelines.
  • Support security metrics, incident response, on-call operations, security training, and the Product Security Partners program.

Requirements

  • 4+ years of experience in product security, application security, cloud security, or software engineering with security responsibilities.
  • Deep knowledge of application security, OWASP Top 10 vulnerability classes, secure coding, and security testing.
  • Experience securing AWS services and cloud applications, including secure architectures, software supply chains, and microservice architectures.
  • Familiarity with cloud environments, CI/CD pipelines, audit and compliance frameworks, and security control integration.
  • Experience reading and reviewing code; JavaScript, TypeScript, or Python skills are beneficial.
  • Must be authorized to work in the United States and able to travel to New York or Reston offices 2–3 times per year.

Nice to have

  • Experience with JavaScript, TypeScript, or Python development.
  • Experience working with AI-powered product features or AI coding tools.

Culture & Benefits

  • Collaborative, inclusive, and agile security organization with opportunities to learn from colleagues across varied backgrounds.
  • Support for professional development through learning events, industry research, and hackathons.
  • Mission-driven work protecting platforms used by students and educators worldwide.
  • Compensation is adjusted by location and determined by experience, qualifications, impact, and market data.

Hiring process

  • Application and resume review, followed by a recruiter phone or video screen.
  • Hiring manager interview, performance exercise such as live coding, and panel interview.
  • Leadership conversation and reference checks.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →