Назад
обновлено 22 дня назад

Product Security Engineer (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
France/UK/Spain +5 еще
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Product Security Engineer (Cybersecurity): Leading product security across Proton’s privacy-focused applications with an accent on secure architecture, developer enablement, and company-wide security strategy. Focus on building the security function, designing automated policies and workflows, leading bug bounty operations, and embedding security into product roadmaps.

Location: Geneva, Paris, or Barcelona; office-first hybrid setup with three core days in the office and remote work available up to 30% of the time.

Company

Proton develops open-source privacy and security products including Proton Mail, VPN, Calendar, Drive, and Pass for more than 100 million user accounts.

What you will do

  • Define the vision and roadmap for product security across the organization.
  • Build and grow the product security team and function.
  • Act as the primary product security partner for strategy, design, development, and delivery.
  • Embed secure architecture and risk-aware practices into product development.
  • Create developer-friendly security policies, playbooks, tools, and automated workflows.
  • Lead the bug bounty program and shape product roadmaps around security priorities.

Requirements

  • 5+ years of experience in application security, preferably in SaaS or privacy-focused environments.
  • Experience leading security projects from concept through production and executing remediation plans.
  • Hands-on experience with code reviews, penetration testing, or security tooling.
  • Ability to translate complex technical details into clear, actionable guidance for different audiences.
  • Ability to understand large, complex systems and collaborate through constructive challenge.
  • Experience with Linux-based infrastructure and open-source technologies is relevant to the environment.

Nice to have

  • Experience with B2B product security features.
  • Knowledge of infrastructure security, including hardware, networking, operating systems, and file systems.
  • Experience with cryptographic protocols or privacy-centric organizations.
  • Experience using open-source code at scale.

Culture & Benefits

  • Work in a flat, flexible organization focused on privacy, open source, and community impact.
  • Flexible working hours coordinated with team meetings.
  • Devices, software, office meals, and location-based transport support are provided.
  • Stock options, health insurance, retirement savings options, vacation and leave policies, and wellness programs.
  • Training, conferences, events, and ongoing learning opportunities.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →