Product Security Engineer (SaaS)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Product Security Engineer (SaaS): Strengthening security across ’s products, platform, and engineering workflows with an accent on proactive risk reduction and secure-by-default development. Focus on conducting threat modeling, managing vulnerability disclosure processes, and building scalable security guardrails for a developer-first environment.
Location: Remote (Global)
Company
is a globally distributed, open-source-first company building developer tools that scale to millions.
What you will do
- Identify and close gaps across application security, secure design, and vulnerability management.
- Conduct threat modeling, secure design reviews, and code reviews to provide practical remediation paths.
- Partner with engineering teams to shape a modern security program that balances pragmatism with technical judgment.
- Improve security posture through tooling, automation, and developer-friendly guardrails.
- Support security incident response by triaging, investigating, and coordinating remediation efforts.
- Manage and mature bug bounty and vulnerability disclosure processes.
Requirements
- Strong experience in product security, application security, or security engineering.
- Comfortable working with cloud-native, developer tools, SaaS, or infrastructure products.
- Clear communication skills, especially in a written, asynchronous environment.
- Deep understanding of application security fundamentals including auth, session management, APIs, and secrets handling.
- Experience with vulnerability triage, bug bounty programs, or security incident response.
- Interest in Postgres, Kubernetes, or building security guardrails.
Culture & Benefits
- Fully remote work environment with a global team.
- Equity ownership (ESOP) for every team member.
- Comprehensive health insurance coverage for employees and dependents.
- Annual education allowance for professional development.
- Tech allowance to set up your ideal work environment.
- Annual company-wide off-site gatherings.
Hiring process
- Application review.
- Introductory video call.
- Up to four interviews with team leads, future teammates, cross-functional partners, and leadership.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →