Source Job

$140,000–$260,000/yr
Canada EMEA US Unlimited PTO

  • Serve as the dedicated security architect and strategic partner for Core DevOps functional leadership.
  • Lead security architecture and design work for strategic Core DevOps initiatives.
  • Identify, assess, and drive reduction of systemic security risks in the Product Security Risk Register.

CI/CD DevOps Security Authentication

20 jobs similar to Staff Product Security Architect

Jobs ranked by similarity.

Canada Israel Netherlands UK US Unlimited PTO

  • Lead the end-to-end software supply chain security architecture for GitLab’s CI/CD platform.
  • Drive cross-team technical strategy and decisions across our Software Supply Chain Security (SSCS) stage teams.
  • Teach, mentor, and coach Staff Engineers and individual contributors.

GitLab is an open-core software company that develops the most comprehensive AI-powered DevSecOps Platform, used by more than 100,000 organizations. Our mission is to enable everyone to contribute to and co-create the software that powers our world.

US

  • Work alongside DevOps and engineering teams to ensure our platforms, repositories and CI/CD pipelines are secure by default while remaining easy to build, test, and deploy against
  • Identify security risks through tools, audits, and monitoring, and drive them to resolution — whether that means changing a policy, updating infrastructure, or improving a pipeline
  • Take ownership of the security posture across multiple AWS accounts and continuously improve it over time

Versaterm is a global public safety solutions company helping agencies transform how they serve their communities. Since 1977, they’ve been building an ecosystem of intuitive tools designed for public safety agencies, forensic labs, court systems, schools and other institutions.

US

  • Support the design and engineering of a DevOps Platform to enable a shared system of systems.
  • Develop GitLab CI/CD Pipelines and Automate configurations within Kubernetes.
  • Maintain and Harden Base Images Within Cloud Environments, supporting risk assessment.

Sev1Tech is a leading provider of IT modernization, engineering, and program management solutions. They deliver exceptional program and IT support services that empower critical missions for both Federal and Commercial clients. At Sev1Tech, our mission is clear: Build better companies, enable better government, protect our nation, and build better humans across the country.

$181,125–$258,750/yr
US Unlimited PTO

  • Drive security of systems at scale and influence security strategy.
  • Integrate security into our SDLC with a shift-left approach.
  • Build a culture where security empowers developers through best practices.

Boulevard provides a client experience platform for appointment-based, self-care businesses, empowering customers to enhance client experiences. They are a team that values diverse backgrounds and believes in equal opportunity, fostering an inclusive culture where employees can excel.

$186,000–$271,500/yr
US

  • Deploy and operationalize Cycode ASPM platform.
  • Build IDE-to-cloud security pipelines.
  • Design and deploy pre-approved security patterns.

Life360's mission is to keep people close to the ones they love. They are a remote-first company with more than 750 employees.

Europe

  • Design, build, and maintain cloud and server infrastructure.
  • Develop, optimize, and operate CI/CD and GitOps pipelines (GitLab CI, Jenkins, Argo CD).
  • Implement and manage container platforms using Docker and Kubernetes.

Deutsche Telekom IT Solutions is a subsidiary of the Deutsche Telekom Group and was Hungary’s most attractive employer in 2025. They provide IT and telecommunications services with 5300+ employees, serving hundreds of large customers, corporations in Germany and other European countries. The company has four sites in Budapest, Debrecen, Pécs and Szeged.

Europe US

  • Own and operate n8n’s vulnerability intake and triage process, including the [email protected] inbox
  • Define and maintain security policies, standards, and public-facing disclosure documentation
  • Embed security into the software development lifecycle through threat modeling, design reviews, and pragmatic guardrails

n8n is the open workflow orchestration platform built for the new era of AI. They give technical teams the freedom of code with the speed of no-code, so they can automate faster, smarter, and without limits. Since their founding in 2019, they’ve grown into a diverse team of over 160.

Global Unlimited PTO

  • Lead cross-team infrastructure security initiatives from design through delivery, owning technical outcomes and stakeholder communication
  • Design and implement security solutions for cloud infrastructure, container platforms, and orchestration systems
  • Partner with SRE, Infrastructure, and Engineering teams to integrate security into platform services and deployment pipelines

GitLab is an open-core software company that develops the most comprehensive AI-powered DevSecOps Platform, used by more than 100,000 organizations. Their mission is to enable everyone to contribute to and co-create the software that powers our world.

South America

  • Hands-on DevSecOps engineer securing ThriveCart's e-commerce platform infrastructure.
  • Implement security automation, maintain monitoring systems, and enable engineering teams with security tooling.
  • Ensure high availability, providing security tooling/dashboards and aiding developers with findings.

ThriveCart is the leading no-code sales platform for digital course creators, coaches, entrepreneurs, and online businesses looking to boost revenue, drive conversions, and scale audiences. ThriveCart powers over 65,000 businesses and 12 million enrolled students, generating over $2 billion in annual sales.

US

  • Design, build, and maintain secure, scalable cloud infrastructure.
  • Own CI/CD pipelines and deployment workflows across services and environments.
  • Improve reliability, availability, and performance through monitoring, alerting, and incident response practices.

Jobgether is a company that uses an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. They identify the top-fitting candidates and share this short list directly with the hiring company.

  • Design innovative solutions to enhance security tool integration.
  • Provide technical leadership and mentorship to junior engineers.
  • Collaborate with stakeholders to align technical solutions with business goals.

Autodesk creates software for innovators to turn their ideas into reality, transforming how things are made and what can be made. They value flexibility in how people work and strive for a diverse and inclusive culture.

US

  • Shape the design and engineering of a robust DevOps Platform.
  • Leverage automation and DevSecOps principles to enhance application and infrastructure performance.
  • Deliver high-quality software solutions that meet user needs and adhere to security and compliance standards.

Jobgether uses an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Their system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company.

US

  • Owning the AWS infrastructure end-to-end in a highly hands-on capacity.
  • Managing CI/CD pipelines and implementing secure secrets management through AWS Secrets Manager.
  • Developing automation scripts in Python and Bash to eliminate manual processes.

Truelogic is a leading provider of nearshore staff augmentation services headquartered in New York. Their team of 600+ highly skilled tech professionals, based in Latin America, drives digital disruption by partnering with U.S. companies on their most impactful projects.

$110,000–$140,000/yr
US Unlimited PTO

  • Serve as a security point of contact for external customers deploying into regulated cloud environments.
  • Implement and operate security controls required for FedRAMP Moderate/High, aligned to NIST SP 800-53.
  • Implement security and compliance gates in CI/CD pipelines to prevent non-compliant infrastructure or code from reaching production.

Knox runs the largest Federal managed cloud, building and operating secure cloud and AI environments that support the U.S. government’s most critical missions. Their work is high-impact and purpose-driven, expecting speed, rigor, and trust.

$149,500–$169,202/yr
US

  • Design, build, and maintain security tools, scripts, and automations.
  • Partner with Engineering teams to manage and drive remediation of security vulnerabilities.
  • Evaluate and prioritize security risks based on industry standards and business context.

Weedmaps is a global leader in the cannabis industry. They are dedicated to transparency, education, and community, serving cannabis to consumers and businesses in the U.S. and worldwide.

Global

  • Integrate security activities across all SDLC phases: requirements, design, implementation, testing, deployment, and maintenance.
  • Run threat modeling sessions (e.g. STRIDE) for new and existing systems; identify threats, attack paths, misconfigurations, and insecure design patterns.
  • Perform security-focused code reviews to identify vulnerabilities and risky implementations; provide clear, actionable guidance on secure coding patterns and best practices.

Infiterra's B2B SaaS platform helps IT Distributors and Managed Service Providers (MSPs) automate and grow their subscription business. With 100+ customers in 75 countries, they're recognized for innovation and global impact. Infiterra fosters a collaborative and growth-oriented culture, allowing you to be part of a dynamic, forward-thinking team.

$160,000–$185,000/yr
US

  • Build practical controls to improve the effectiveness and robustness of our engineering team
  • Foster a DevSecOps culture through education, automation, and tooling
  • Secure our SDLC process through automation

Human Interest aims to provide all workers access to retirement benefits because over half of working Americans aren't saving enough. They're a high-growth fintech company that is backed by investors and is changing the retirement industry.

US

  • Design, build, and maintain CI/CD pipelines using technical resources.
  • Implement DevSecOps best practices to enable continuous delivery.
  • Automate infrastructure provisioning and configuration using IaC tools.

LMI is a digital solutions provider dedicated to accelerating government impact with innovation and speed. With a focus on agility and collaboration, LMI serves the defense, space, healthcare, and energy sectors—helping agencies navigate complexity and outpace change.

$140,000–$175,000/yr
US 3w PTO

  • Drive and enable proactive identification, analysis, and remediation of security vulnerabilities.
  • Respond to manage pen testing and bug bounty programs.
  • Work in partnership with Software Architecture, Risk/Compliance, the SRE team, and other partners, to integrate security capabilities into the SDLC.

Subsplash builds The Ultimate Engagement Platform™ for churches, Christian ministries, non-profits, and businesses around the world. They are a family-owned and operated company of 290+ mission-driven people.

$115,747–$208,344/yr
US

  • Focus on engineering solutions and improving the software development lifecycle.
  • Provide technical leadership and mentorship to engineering teams.
  • Lead the delivery of enterprise-scale, self-service cloud platforms.

Experian is a global data and technology company, powering opportunities for people and businesses around the world. A FTSE 100 Index company listed on the London Stock Exchange, they have a team of 23,300 people across 32 countries and are headquartered in Dublin, Ireland.