Product Security Engineer (Cloud Security)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Product Security Engineer (Cloud Security): Strengthening the security of the platform by focusing on threat modeling and cloud security posture with an accent on automation and developer partnership. Focus on leading threat modeling engagements, triaging CNAPP findings, and integrating AI to reduce toil and accelerate security workflows.
Location: Must be based in the United States
Salary: $116,000 – $187,000 (depending on geographic zone)
Company
A feature management platform that enables developers to innovate faster by providing a safety valve to instantly rewind features when things go wrong.
What you will do
- Lead threat modeling engagements for high-risk features and services.
- Manage end-to-end triage of CNAPP findings, identifying systemic fixes over one-off cleanups.
- Contribute to SDLC tooling, including SAST/SCA workflows and bug bounty triage.
- Partner with product engineering teams as a trusted security reviewer.
- Implement AI tooling to accelerate triage, summarize findings, and reduce operational toil.
- Improve the overall security floor through documentation and small tooling enhancements.
Requirements
- 2 to 4 years of full-time experience in a security-focused role (AppSec, ProdSec, or Cloud Security).
- Ability to read and critique pull requests in a modern tech stack.
- Experience leading threat modeling exercises using structured approaches like STRIDE or attack trees.
- Working knowledge of cloud security posture and exposure to CNAPP.
- Strong fundamentals in OWASP Top 10, authentication/authorization patterns, and secrets management.
- Must be based in the United States.
Nice to have
- Experience with developer tools, SaaS platforms, or feature management.
- Bug bounty triage experience (e.g., HackerOne, Bugcrowd).
- Familiarity with Go, Python, or TypeScript.
- Contributions to internal security tooling or open-source security projects.
Culture & Benefits
- Culture of high trust, transparency, and collaboration.
- Competitive salary based on geographic zones.
- Equity compensation via Restricted Stock Units (RSUs).
- Comprehensive health, vision, dental, and mental health insurance.
- Environment that encourages utilizing AI as a core part of the engineering toolkit.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →