Senior Product Security Engineer (AI)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Product Security Engineer (AI): Leading application and mobile security assessments for large-scale products with an accent on threat modeling, secure design reviews, and integrating security into CI/CD pipelines. Focus on securing complex distributed systems and AI/LLM integrations, ensuring robust protection against emerging threats while maintaining development velocity.
Location: Must be based in the United States. Offers flexible hybrid work options with occasional in-person events.
Salary: $128,250 – $266,875/yr
Company
A global technology company providing iconic digital products and omnichannel advertising solutions to hundreds of millions of users.
What you will do
- Lead application and mobile security assessments across the full software development lifecycle.
- Drive threat modeling and risk assessments for high-impact systems and guide engineering teams on secure design.
- Partner with developers to embed security tooling into build and release pipelines.
- Develop internal security frameworks and automation to scale security practices.
- Lead remediation efforts for critical vulnerabilities and coordinate incident response.
- Mentor security engineers and advocate for secure development practices across the organization.
Requirements
- 5+ years of experience in application or product security securing large-scale web or mobile applications.
- Deep understanding of secure application architecture, authentication, and data protection.
- Proven hands-on experience with threat modeling, secure design reviews, and code assessments.
- Proficiency in at least one backend language (Go, Java, Python, C#) and one frontend/mobile language (JS/TS, Swift, Kotlin).
- Working knowledge of AI/LLM security fundamentals, including prompt injection and OWASP Top 10 for LLM.
- Must be authorized to work in the United States.
Nice to have
- Experience with cloud-native security (AWS/GCP/Azure) and identity management.
- Background in mobile application hardening and reverse engineering defenses.
- Contributions to open-source security tools or industry standards.
- Familiarity with AI/ML pipeline security, including RAG and agentic workflows.
- Relevant certifications such as GWEB, GWAPT, OSWE, or CSSLP.
Culture & Benefits
- Comprehensive benefits including healthcare, 401k, and education stipends.
- Flexible hybrid work environment with a focus on work-life balance.
- Supportive culture with 11 active employee resource groups.
- Opportunities for professional growth through mentorship and innovation.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →