Source Job

20 jobs similar to Staff Product Security Engineer

Jobs ranked by similarity.

$134,000–$184,000/yr
Canada

  • Lead secure design reviews, threat modeling, and risk assessments for AI-driven products and APIs.
  • Embed security practices throughout the software and AI development lifecycle.
  • Architect and enforce security controls for AI/ML systems and cloud-native infrastructure.

AlphaSense provides AI-driven market intelligence and search platform trusted by over 6,000 enterprise customers. Founded in 2011, the company has more than 2,000 employees globally with offices in multiple countries.

$88,800–$125,800/yr
Canada 3w PTO 12w maternity 12w paternity

  • Proactively identify and drive security improvements across the product and platform.
  • Partner with engineering teams to threat model new features and review designs early in development.
  • Build and improve security tooling, libraries, and workflows to make secure development the default path.

Fellow is an AI meeting assistant that helps teams record, transcribe, summarise, and act on their meetings. We are a Series A company backed by major venture firms, with a remote-first culture and a growing team.

$180,000–$180,000/yr
US Unlimited PTO

  • Get involved early in new products and features, using threat modeling and security design reviews to find problems before they reach production.
  • Dig into application architecture, APIs, authentication, authorization, data flows, cloud services, and third-party integrations to understand how systems could be attacked.
  • Own and improve security tooling across the development lifecycle, including SAST, DAST, dependency scanning, and secret scanning.

YipitData is a leading market research and analytics firm for the disruptive economy, raising $475M from The Carlyle Group at a valuation over $1B. They operate globally with offices in the US, APAC, and India, and have been recognized by Inc. as a Best Workplace for three consecutive years, emphasizing transparency, ownership, and continuous mastery.

UK 5w PTO

  • Conduct threat modelling sessions using STRIDE with product and engineering teams, focusing on clinical safety, abuse, and business-logic threats.
  • Own and evolve the Secure by Design process, including self-evaluation screening, secure design review, and automated tooling against technical artefacts.
  • Perform automated application and API penetration testing against web, mobile backends, cloud-native services, and AI features, and lead third-party penetration engagements.

Numan is a digital health platform founded in 2018 that integrates diagnostics, medication, supplements, digital programmes, and doctor consultations to empower people to take control of their health. They are a 300+ person team distributed globally, guided by values of patient focus, learning, quality, collaboration, and care.

$250,000–$275,000/yr
US

  • Lead and scale the product security program, defining strategy, roadmap, and metrics in alignment with company objectives.
  • Build and mentor a high-performing product security team, fostering technical excellence and sustainable execution.
  • Partner with engineering and product leaders to embed security throughout the software development lifecycle, leveraging AI and automation.

Tines provides an intelligent workflow platform that applies AI, automation, and integration to drive business results. Founded in 2018 with co-headquarters in Dublin and Boston, the company serves a diverse range of customers and fosters a culture of Simplicity, Speed, and Soundness.

$180,000–$210,000/yr
US Canada Unlimited PTO 12w maternity 12w paternity

  • Threat model new product features and integrations, hardening systems with effective controls.
  • Operate and evolve the application security toolchain, keeping it high-signal for developers.
  • Own day-to-day security operations across the detection stack, triaging and resolving incidents.

Gauntlet builds the financial systems of the future, operating across the entire onchain finance stack to offer vault products for institutional clients. They serve over $1.5B in client TVL and combine traditional finance with crypto-native expertise.

$130,100–$187,000/yr
US

  • Lead threat modeling and security architecture reviews with engineering teams by translating security risks into concrete development actions.
  • Architect, build, and maintain security tooling and integrations that make secure development the default in our CI/CD pipelines.
  • Design and deploy automated security testing to identify vulnerabilities early in the development process.

Abnormal Security protects the humans behind the world's most critical organizations from AI-powered cybercrime. More than 4,500 enterprises trust its behavioral AI platform.

Global

  • Act as the primary security partner for the Walrus team, providing architectural guidance and embedding security practices throughout the development lifecycle.
  • Lead security assessments for new features and contribute to ecosystem-wide security initiatives, identifying systemic risks and actionable remediation plans.
  • Drive a security-by-design culture, leveraging AI and automation to focus on high-impact, complex security research and mentor engineers.

Mysten Labs builds foundational infrastructure to accelerate the adoption of decentralized protocols based on blockchain technologies. They are a well-funded, remote-first team with over $300M in Series B funding from top venture firms, fostering a culture of innovation and growth.

$170,000–$230,000/yr
US

  • Build secure-by-default infrastructure and automation to eliminate entire vulnerability classes across money-moving systems.
  • Own application security, threat modeling, and vulnerability disclosure from design review to production.
  • Partner with engineering to set security standards, make risk-based decisions, and ship fast without compromising safety.

Flex is building the AI-native private bank for business owners, re-architecting the entire financial system for entrepreneurs. Since launching in 2023, Flex has scaled to nine-figure annualized revenue, raised $100M+ in equity and $300M+ in debt, and operates with a high-bar, low-ego culture focused on speed and execution.

Global Unlimited PTO

  • Help shape technical direction of security tooling and AppSec practices. - Lead secure design across major engineering projects, from threat modeling through architecture. - Perform advanced offensive security work, chaining vulnerabilities and proving business impact.

Super.com is a fast-paced, high-growth tech company that maximizes lives for customers and employees. It offers a remote-first culture, invests in career progression, and provides generous benefits including unlimited PTO and parental leave.

$217,000–$288,000/yr
US Unlimited PTO 18w maternity 18w paternity

  • Champion a secure by default culture, building defense in depth into frameworks and processes.
  • Develop security requirements and work directly with teams to build them into new applications.
  • Run security risk assessments, hands-on penetration testing, and threat modeling.

Grow Therapy is a three-sided marketplace that empowers therapists and patients by providing technology and insurance support. The company has raised over $328M in funding, employs roughly 145 engineers, and values a mission-driven culture.

Global

  • Design and implement security controls across applications, cloud infrastructure, and development environments.
  • Conduct architecture reviews, threat modeling, and security assessments for new products.
  • Identify, prioritize, and remediate vulnerabilities across the technology stack.

SignalFire partners with top early-stage startups that are shaping the future of technology. They have a portfolio of over 200 innovative companies across AI, cybersecurity, healthtech, fintech, developer tools, and enterprise SaaS.

US

  • Own threat modeling and secure code reviews for new products and features.
  • Maintain and tune AppSec tooling, and run the bug bounty program.
  • Design and evolve the secure SDLC, and partner with engineering teams to implement secure-by-default patterns.

Ondo Finance is building institutional-grade financial infrastructure for tokenized real-world assets. The company operates at the intersection of traditional finance and on-chain systems, with a focus on security and innovation.

North America Unlimited PTO

  • Architect internal AI security strategy for ServiceNow's adoption of agentic tools, LLMs, and copilots.
  • Drive execution excellence by pushing architecture through to production-grade outcomes across security domains.
  • Lead AI threat modeling and partner with product AI security research to apply frontier research internally.

ServiceNow is the AI control tower for business reinvention, empowering 85% of the Fortune 500 with its AI platform. Founded on the idea of freeing people from busywork, it fosters an AI-native culture where technology and talent are unstoppable.

$115,000–$115,000/yr
US Unlimited PTO

  • Build agent-driven workflows for cloud security platforms like FedRAMP High Cloud-Native SIEM and Tier 1 Agentic SOC.
  • Develop autonomous AI tools including triage, investigation, and reporting agents using agentic AI frameworks.
  • Translate complex systems requirements into production-ready AI solutions following AWS Well-Architected and NIST security controls.

First Due provides transformative, end-to-end software solutions for fire and EMS agencies to improve safety and effectiveness. The company offers a comprehensive benefits package and promotes a fully remote, inclusive work environment.

New Zealand

  • Lead product security engineering across key verticals, engaging with engineering leadership and technical teams.
  • Build and automate security design reviews, threat modeling, vulnerability management, and AI-assisted tools.
  • Serve as a subject matter expert for mobile, API, and cloud security, mentoring engineers and collaborating cross-functionally.

Xplor Technologies powers the experiences at the heart of everyday life through modern vertical software, embedded payments, and AI-powered capabilities. With over 130,000 businesses in 72+ countries and processing over $47 billion annually, we foster a culture of innovation, collaboration, and empathy, guided by core values like 'Find a better way' and 'Win together'.

US

  • Lead the development and implementation of security strategies, policies, and procedures.
  • Architect secure systems and collaborate with engineering teams to integrate security throughout the software development lifecycle.
  • Conduct risk assessments, incident response, and mentor junior engineers to promote security awareness.

Gemini is a global crypto and Web3 platform founded in 2014, offering secure crypto products and services to individuals and institutions in over 70 countries. The company is publicly traded with a mission to bridge traditional finance with the emerging cryptoeconomy, fostering a diverse team that prioritizes trust and security.

$120,000–$145,000/yr
US

  • Design, build, and scale application security capabilities to support secure software development across the enterprise.
  • Develop security patterns and guardrails for AI-assisted development and agentic workflows.
  • Integrate security tools with developer platforms to improve vulnerability management and automate remediation.

NBCUniversal is a leading media and entertainment company creating world-class content for film, television, streaming, and theme parks. As a subsidiary of Comcast, it fosters an inclusive culture and community engagement across a diverse global workforce of thousands.

$139,000–$258,000/yr
US Canada Unlimited PTO

  • Design and implement layered AI guardrails and sandboxing to constrain AI behavior and secure enterprise workflows.
  • Partner with users to bake secure-by-default patterns into AI-assisted workflows and maintain an inventory of AI-to-service connections.
  • Continuously test guardrails through red-teaming and evaluate new AI tools to find secure ways to enable adoption.

Waabi, founded by AI visionary Raquel Urtasun, is the leader in Physical AI, developing autonomous transportation technology for commercial trucks and robotaxis. Backed by world leaders in AI and automotive, the company has offices in Toronto, San Francisco, Dallas, and Pittsburgh and is growing quickly with a diverse, innovative team.

Canada Unlimited PTO

  • Secure cloud infrastructure, applications, APIs, and AI-driven workflows.
  • Partner with engineering to embed security controls into production.
  • Lead vulnerability management and incident response activities.

Jobgether is an AI-powered job matching platform that connects candidates with hiring companies. The company is a high-growth startup with a remote-first culture, emphasizing transparency, autonomy, and technical craftsmanship.