Job Opportunities
Find jobs near you, whether onsite, hybrid, or remote.- Similar Jobs to: Staff Product Security Engineer
Staff Product Security Engineer
Menlo VenturesSaint PaulRDQ226R605; This role can be based remotely anywhere in the United States.The Product Security Team's mission is to left-shift SDLC (Security Development Lifecycle) processes for all code written in D
Staff Product Security Engineer
AffirmDetroitAffirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.Affirm values information se
Staff Product Security Engineer
AffirmBostonAffirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.Affirm values information se
Staff Product Security Engineer
AffirmBoulderAffirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.Affirm values information se
Staff Product Security Engineer
AffirmSaint LouisAffirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.Affirm values information se
Staff Product Security Engineer
AffirmSan FranciscoAffirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.Affirm values information se
Staff Product Security Engineer
AffirmSan JoseAffirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.Affirm values information se
Staff Product Security Engineer
AffirmMinneapolisAffirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.Affirm values information se
Staff Security Software Engineer
Databricks Inc.Salt Lake CityRDQ226R609 - This role can be based anywhere in the United States. At Databricks, we are obsessed with enabling data teams to solve the world's toughest problems, from security threat detection to can
Staff/Senior Security Engineer - DeFi
Ethena LabsNew YorkEthena Labs is actively building and deploying a suite of groundbreaking digital dollar products aiming to upgrade money into the internet era.Our flagship product, USDe, is a synthetic dollar backed
Staff/Senior Security Engineer - DeFi Signing & Treasury
Ethena LabsSalt Lake CityEthena Labs is seeking a Staff/Senior Security Engineer to lead their signing and treasury security program. This high-impact role involves owning the design of the signing regime and ensuring secure
Staff IAM Security Engineer — AI Governance & Zero-Trust
jobr.proSalt Lake CityGitLab is seeking a Staff Security Engineer with extensive IAM experience to lead the Corporate Security Identity Team. This role involves designing innovative identity access solutions and mentoring
Security Engineer - Application Security
600 Mobility Tech Solutions LLCNew YorkSecurity Engineer – Application SecurityFragomen is seeking a Security Engineer – Application Security to join our talented Cyber Security team in our Technology Innovation Lab in Pittsburgh. We are l
Community Support Staff (Security)
Residential Management Group (RMG)LondonWe are seeking dedicated Community Support Staff to join our team at Grand Union (HA0). The CSS department is responsible for ensuring the development remains a safe, pleasant, and clean environment f
Web3 Security GTM Engineer | Security Sales Engineer
Quillaudits ➡️ Web3 Security ????????️United StatesSecurity Gtm EngineerQuillAudits, founded in 2018, is a leading Web3 security company that has secured 1500+ protocols across 25+ chains. We work with protocols, ecosystems, DeFi teams, RWA projects,
Remote Product Security Engineer (Web3/DeFi)
Framework VenturesNew YorkFramework Ventures is hiring a Product Security Engineer focused on security reviews and tool development in the DeFi space. In this remote role, you'll work with leading web3 professionals on complex
Systems Engineer – Microsoft 365 Security & Compliance / Endpoint Security Engineer (GCC)
LeidosAlexandriaDescription Leidos is seeking an experienced M365 Security and Compliance Administrator to join our Information Technology team. This role requires a seasoned professional who can strategically manag
Systems Engineer – Microsoft 365 Security & Compliance / Endpoint Security Engineer (GCC)
LeidosUnited StatesDescription Leidos is seeking an experienced M365 Security and Compliance Administrator to join our Information Technology team. This role requires a seasoned professional who can strategically manag
Systems Engineer – Microsoft 365 Security & Compliance / Endpoint Security Engineer (GCC)
LeidosUpper MarlboroDescription Leidos is seeking an experienced M365 Security and Compliance Administrator to join our Information Technology team. This role requires a seasoned professional who can strategically manag
Systems Engineer – Microsoft 365 Security & Compliance / Endpoint Security Engineer (GCC)
LeidosClintonDescription Leidos is seeking an experienced M365 Security and Compliance Administrator to join our Information Technology team. This role requires a seasoned professional who can strategically manag
Systems Engineer – Microsoft 365 Security & Compliance / Endpoint Security Engineer (GCC)
LeidosTemple HillsDescription Leidos is seeking an experienced M365 Security and Compliance Administrator to join our Information Technology team. This role requires a seasoned professional who can strategically manag
Systems Engineer – Microsoft 365 Security & Compliance / Endpoint Security Engineer (GCC)
LeidosRiverdaleDescription Leidos is seeking an experienced M365 Security and Compliance Administrator to join our Information Technology team. This role requires a seasoned professional who can strategically manag
IT Security Engineer
LeidosWashingtonDescription Are you ready to join Leidos all-star team? Through training, teamwork, and exposure to challenging technical work, let Leidos show how to accelerate your career path.Leidos has an exciti
IT Security Engineer
LeidosSilver SpringDescription Are you ready to join Leidos all-star team? Through training, teamwork, and exposure to challenging technical work, let Leidos show how to accelerate your career path.Leidos has an exciti
IT Security Engineer
LGT Capital Partners AGPfäffikonIT Security EngineerJob DescriptionAs a Security Engineer, you ensure that technical solutions across our environment are designed, implemented, andoperatedin line with our security requirements. Your
Staff Product Security Engineer
- Saint Paul, Illinois, United States
- Saint Paul, Illinois, United States
About
The Product Security Team's mission is to left-shift SDLC (Security Development Lifecycle) processes for all code written in Databricks (for Customer Use or Supporting Customer internally) to reduce the likelihood of introducing new vulnerabilities in production and minimize the count and effect of externally identified vulnerabilities on Databricks Services.
You will be an individual contributor on the product security team at Databricks, managing SDLC functions for features and products within Databricks. This would include, but is not limited to, security design reviews, threat models, manual code reviews, exploit writing and exploit chain creation. You will also support IR and VRP programs when there is a vulnerability report or a product security incident. You will work with a global team, spread across various locations in the US and EMEA.
The impact you will have
Full SDLC Support for new product features being developed in ENG and non-ENG teams. This would include Threat Modeling, Design Review, Manual Code Review, Exploit writing, etc.
Work with other security teams to provide support for Incident Response and Vulnerability Response as and when needed.
Work with the results of SAST tools to help evaluate and identify false positives and file defects for real issues.
Work on DAST tools and related automation for auto-assessment and defect filing.
Maintain the automation framework and add new features as needed to support different security compliances that Databricks may want to get into – FedRamp, PCI, HIPPA, etc.
Prioritize security from a risk management perspective, rather than an absolute textbook version.
Help develop and implement security processes to improve the overall productivity of the product security organization and the SDLC process in general
What we look for
3-10 years Experience with the Threat Modeling process and ability to find design problems based on a block diagram of data flow.
Solid understanding on at least two of the following domains - Web Security, Cloud Security, Systems Security and Applied Cryptography.
Proficient with one or more of Programming languages (Python/Java/Scala/JavaScript) and ability to read code to identify security defects.
Strong skills on scripting and automation on exploits
Fuzzing skills are good to have.
Exploit writing skills is a positive and greatly required.
Pay Range Transparency Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected base salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipated utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above.
Zone 1 Pay Range: $178,200 — $249,450 USD
Zone 2 Pay Range: $160,300 — $224,425 USD
Zone 3 Pay Range: $151,400 — $212,000 USD
Zone 4 Pay Range: $142,500 — $199,500 USD
Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region, please visit our benefits portal.
Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio‑economic status, veteran status, and other protected characteristics.
Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
#J-18808-Ljbffr
Languages
- English
This job comes from a TieTalent partner platform. Click "Apply Now" to submit your application directly on their site.