обновлено 5 дней назад
Staff Product Security Engineer, PSIRT
74 000 - 101 000€
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Staff Product Security Engineer, PSIRT (Product Security): Defining and operating product security incident response, bug bounty, and responsible disclosure programs across identity products with an accent on vulnerability triage, risk assessment, remediation coordination, and stakeholder communication. Focus on leading security disclosures, validating fixes, improving governance and workflows, and mentoring engineers through complex product security investigations.
Location: Barcelona, Spain; the position is available to candidates in Spain and Ireland
Salary: €74,000–€101,000 annual base salary for candidates located in Spain, plus equity where applicable, bonus, healthcare coverage, paid time off, and parental leave.
Company
Identity and access security provider building Workforce and Customer Identity Cloud solutions, including infrastructure that helps organizations securely adopt AI and other technologies.
What you will do
- Define, formalize, improve, and implement the product security incident response program across products and business units.
- Operate the bug bounty program, including researcher engagement, vulnerability triage, validation, severity assessment, remediation coordination, and reward recommendations.
- Manage vulnerabilities from discovery through resolution, coordinating impact assessments, engineering remediation, fix validation, and stakeholder communication.
- Lead the security disclosure program and report on program health and activity status.
- Improve vulnerability workflows, governance, and communication with Engineering, IT, Product, Legal, and Security teams.
- Mentor junior engineers and partner with leadership on proactive threat detection and vulnerability management.
Requirements
- 6+ years of information security experience focused on product security, application security, vulnerability management, or security operations.
- Experience conducting comprehensive security code reviews and identifying vulnerabilities and code flaws.
- Experience with application security, product security concepts, risk management, and product-related incident response.
- Knowledge of incident and log management tools.
- Strong communication and collaboration skills, including technical writing, process documentation, and executive presentations.
- Ability to work from Spain or Ireland; the listed salary range applies to candidates located in Spain.
Culture & Benefits
- Work within a global community spanning more than 20 offices.
- Immersive, in-person onboarding designed to accelerate impact and build connections.
- Equity where applicable, bonus, comprehensive healthcare coverage, paid time off, and parental leave.
- Programs supporting well-being, social impact, talent development, connection, and community.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →