About the job
About the Role
We invite you to join our committed Security team as a Principal Product Security Engineer. In this pivotal role, you will collaborate with our Engineering teams to ensure the rapid delivery of secure software. You will guide teams in adopting a proactive approach to security and contribute to the evolution of innovative security principles and the safeguarding of emerging technologies.
Your contributions will encompass enhancing internal tools, conducting architecture reviews, formulating strategies, identifying risks via threat modeling, and mentoring engineers on effective remediation techniques.
Who You Are:
You are an adept security professional capable of collaborating seamlessly with engineering teams to elevate security measures across cloud-based products. You possess a blend of deep technical knowledge and the ability to influence, educate, and implement scalable security enhancements.
- Demonstrated experience in security roles supporting cloud-based services, with substantial knowledge of application and product security, OWASP Top 10, CWE/SANS Top 25, and compliance frameworks such as NIST, PCI DSS, and ISO 27001.
- A secure-by-design mindset, crafting pragmatic security solutions tailored to domain necessities while inspiring developers to adopt secure practices.
- Exceptional communication skills, enabling you to engage diverse audiences, bridge knowledge gaps, and elevate overall security awareness.
- Security assurance expertise, including solution design evaluations, compliance assessments, ad-hoc source code reviews, and security maturity evaluations.
- Hands-on and technically proficient, comfortable reading or writing code, introducing security concepts (e.g., canary deployments, feature/launch flags), and assisting colleagues with security inquiries.
- A commitment to continuous improvement, proactively spotting patterns, trends, automation opportunities, frameworks, and tools to enhance code and data security, all while thriving in a fast-paced, collaborative environment with a customer-centric approach.
