Offres d'emploi
Trouvez des postes près de chez vous, sur site, hybrides ou à distance.- Emplois similaires à : Staff Product Security Engineer
Staff Product Security Engineer
Menlo VenturesSaint PaulRDQ226R605; This role can be based remotely anywhere in the United States.The Product Security Team's mission is to left-shift SDLC (Security Development Lifecycle) processes for all code written in D
Staff Product Security Engineer
AffirmAustinAffirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.Affirm values information se
Staff Product Security Engineer
AffirmChicagoAffirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.Affirm values information se
Staff Product Security Engineer
AffirmSaint LouisAffirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.Affirm values information se
Staff Product Security Engineer
AffirmMiamiAffirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.Affirm values information se
Staff Product Security Engineer
AffirmBoiseAffirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.Affirm values information se
Staff Product Security Engineer
AffirmSan FranciscoAffirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest.Affirm values information se
Staff Security Engineer, Proactive Security
DoorDash USANew YorkStaff Security Engineer, Proactive SecurityUnited States - Remote About the TeamAt DoorDash we’re building the industry’s most scalable and reliable delivery network to support our three-sided marketp
Staff Cloud Security Engineer
VantorLongmontVantor is forging the new frontier of spatial intelligence, helping decision makers and operators navigate what’s happening now and shape what’s coming next. Vantor is a place for problem solvers, ch
Staff Security Software Engineer
Databricks Inc.Salt Lake CityRDQ226R609 - This role can be based anywhere in the United States. At Databricks, we are obsessed with enabling data teams to solve the world's toughest problems, from security threat detection to can
Technical Lead Member Engineering Staff - Systems Security Engineer
L3Harris TechnologiesCamdenL3Harris is dedicated to recruiting and developing high-performing talent who are passionate about what they do. Our employees are unified in a shared dedication to our customers’ mission and quest fo
Staff/Senior Security Engineer - DeFi Signing & Treasury
Ethena LabsSalt Lake CityEthena Labs is seeking a Staff/Senior Security Engineer to lead their signing and treasury security program. This high-impact role involves owning the design of the signing regime and ensuring secure
Member of Technical Staff, Security Engineering
AnchorageSaint PaulAt Anchorage Digital, we are building the world’s most advanced digital asset platform for institutions to participate in crypto.Anchorage Digital is a crypto platform that enables institutions to par
Product Security Engineer
Hampton NorthNew YorkThis range is provided by Hampton North. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.Base pay range $180,000.00/yr - $220,000.00/yrAdditional c
Staff Security Engineer: Threat Modeling & Remote Cloud
DoorDash USANew YorkDoorDash USA is seeking a Staff Security Engineer to lead threat modeling and operationalize security services. In this remote role located in the United States, you will define and implement security
Systems Engineer – Microsoft 365 Security & Compliance / Endpoint Security Engineer (GCC)
LeidosWaldorfDescription Leidos is seeking an experienced M365 Security and Compliance Administrator to join our Information Technology team. This role requires a seasoned professional who can strategically manag
Systems Engineer – Microsoft 365 Security & Compliance / Endpoint Security Engineer (GCC)
LeidosFairfaxDescription Leidos is seeking an experienced M365 Security and Compliance Administrator to join our Information Technology team. This role requires a seasoned professional who can strategically manag
Systems Engineer – Microsoft 365 Security & Compliance / Endpoint Security Engineer (GCC)
LeidosMount VernonDescription Leidos is seeking an experienced M365 Security and Compliance Administrator to join our Information Technology team. This role requires a seasoned professional who can strategically manag
Community Support Staff (Security)
Residential Management Group (RMG)LondonWe are seeking dedicated Community Support Staff to join our team at Grand Union (HA0). The CSS department is responsible for ensuring the development remains a safe, pleasant, and clean environment f
Systems Engineer – Microsoft 365 Security & Compliance / Endpoint Security Engineer (GCC)
LeidosBladensburgDescription Leidos is seeking an experienced M365 Security and Compliance Administrator to join our Information Technology team. This role requires a seasoned professional who can strategically manag
Systems Engineer – Microsoft 365 Security & Compliance / Endpoint Security Engineer (GCC)
LeidosAnnandaleDescription Leidos is seeking an experienced M365 Security and Compliance Administrator to join our Information Technology team. This role requires a seasoned professional who can strategically manag
Systems Engineer – Microsoft 365 Security & Compliance / Endpoint Security Engineer (GCC)
LeidosFort WashingtonDescription Leidos is seeking an experienced M365 Security and Compliance Administrator to join our Information Technology team. This role requires a seasoned professional who can strategically manag
Systems Engineer – Microsoft 365 Security & Compliance / Endpoint Security Engineer (GCC)
LeidosGlenn DaleDescription Leidos is seeking an experienced M365 Security and Compliance Administrator to join our Information Technology team. This role requires a seasoned professional who can strategically manag
Systems Engineer – Microsoft 365 Security & Compliance / Endpoint Security Engineer (GCC)
LeidosAccokeekDescription Leidos is seeking an experienced M365 Security and Compliance Administrator to join our Information Technology team. This role requires a seasoned professional who can strategically manag
IT Security Engineer
LeidosChevy ChaseDescription Are you ready to join Leidos all-star team? Through training, teamwork, and exposure to challenging technical work, let Leidos show how to accelerate your career path.Leidos has an exciti
Staff Product Security Engineer
- Saint Paul, Illinois, United States
- Saint Paul, Illinois, United States
À propos
The Product Security Team's mission is to left-shift SDLC (Security Development Lifecycle) processes for all code written in Databricks (for Customer Use or Supporting Customer internally) to reduce the likelihood of introducing new vulnerabilities in production and minimize the count and effect of externally identified vulnerabilities on Databricks Services.
You will be an individual contributor on the product security team at Databricks, managing SDLC functions for features and products within Databricks. This would include, but is not limited to, security design reviews, threat models, manual code reviews, exploit writing and exploit chain creation. You will also support IR and VRP programs when there is a vulnerability report or a product security incident. You will work with a global team, spread across various locations in the US and EMEA.
The impact you will have
Full SDLC Support for new product features being developed in ENG and non-ENG teams. This would include Threat Modeling, Design Review, Manual Code Review, Exploit writing, etc.
Work with other security teams to provide support for Incident Response and Vulnerability Response as and when needed.
Work with the results of SAST tools to help evaluate and identify false positives and file defects for real issues.
Work on DAST tools and related automation for auto-assessment and defect filing.
Maintain the automation framework and add new features as needed to support different security compliances that Databricks may want to get into – FedRamp, PCI, HIPPA, etc.
Prioritize security from a risk management perspective, rather than an absolute textbook version.
Help develop and implement security processes to improve the overall productivity of the product security organization and the SDLC process in general
What we look for
3-10 years Experience with the Threat Modeling process and ability to find design problems based on a block diagram of data flow.
Solid understanding on at least two of the following domains - Web Security, Cloud Security, Systems Security and Applied Cryptography.
Proficient with one or more of Programming languages (Python/Java/Scala/JavaScript) and ability to read code to identify security defects.
Strong skills on scripting and automation on exploits
Fuzzing skills are good to have.
Exploit writing skills is a positive and greatly required.
Pay Range Transparency Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected base salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipated utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above.
Zone 1 Pay Range: $178,200 — $249,450 USD
Zone 2 Pay Range: $160,300 — $224,425 USD
Zone 3 Pay Range: $151,400 — $212,000 USD
Zone 4 Pay Range: $142,500 — $199,500 USD
Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region, please visit our benefits portal.
Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio‑economic status, veteran status, and other protected characteristics.
Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
#J-18808-Ljbffr
Compétences linguistiques
- English
Cette offre provient d’une plateforme partenaire de TieTalent. Cliquez sur « Postuler maintenant » pour soumettre votre candidature directement sur leur site.