Product Security Engineer

atLaunchDarklyRemoteUS flagUnited StatesFull-timeCybersecurity / Security EngineerJuniorMid-level$116k – $159.5k/year

Posted 11 hours ago

This is a fully remote position, open to applicants in United States.

📋 Description

• Lead engagements in threat modeling for features and services where the risk justifies it.

• Assist in the evolution of the threat-modeling practice from ad-hoc requests to a structured, repeatable process with defined engagement criteria.

• Take ownership of the daily triage of CNAPP findings: investigate, prioritize, direct to service owners, and ensure closure.

• Recognize patterns in findings that suggest the need for systemic improvements.

• Contribute to SDLC tools, SAST/SCA workflows, and bug bounty triage efforts.

• Collaborate with product engineering teams as a trusted security advisor.

• Leverage AI to expedite triage, summarize findings, draft threat models, scan code, and minimize repetitive tasks.

• Develop sustainable patterns for safe and effective AI implementation.

• Enhance security through documentation, office hours, and minor tooling enhancements.

• Report directly to the Director of Security and work alongside software engineers, product managers, and security engineers.


⛳️ Requirements

• 2 to 4 years of professional experience in a security-centric role; experience in AppSec, ProdSec, or cloud security is preferred.

• Proficient in reviewing and critiquing pull requests within a modern tech stack.

• Experience in participating in or leading threat modeling sessions.

• Familiarity with at least one structured approach to threat modeling: STRIDE, attack trees, or a similar methodology.

• Practical knowledge of cloud security posture management.

• Solid understanding of the OWASP Top 10, authentication and authorization methodologies, secrets management, and common cloud misconfigurations.

• Hands-on experience utilizing AI tools in security or engineering tasks, with concrete examples.

• Experience with developer tools, SaaS platforms, or feature management systems.

• Familiarity with bug bounty triage processes, particularly using HackerOne or Bugcrowd.

• Knowledge of programming languages such as Go, Python, or TypeScript.

• Contributions to internal security tools or open-source security initiatives.


🏝️ Benefits

• Restricted Stock Units (RSUs)

• Health insurance

• Vision insurance

• Dental insurance

• Mental health benefits

People also viewed

CrowdStrike9 hours ago

Regional Sales Director, Cloud Security

AU flagAustralia, +1 more countryFull-timeCybersecurity / Security Engineer
ApplyView job
Triumph Enterprises, Inc.9 hours ago

Configuration Management and Documentation Specialist – Federal Cybersecurity

US flagDistrict of Columbia, +1 more stateFull-timeCybersecurity / Security Engineer
ApplyView job
Staffbase11 hours ago

Principal Information Security Manager

DE flagGermany OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Comcast11 hours ago

DevSecOps Engineer, Security Compliance

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
AECOM11 hours ago

Transit Safety Security Specialist

US flagNew Mexico OnlyFull-timeCybersecurity / Security Engineer$100k – $150k/year
ApplyView job
AECOM11 hours ago

Transit Safety Security Specialist V

US flagNew Mexico OnlyFull-timeCybersecurity / Security Engineer$110k – $160k/year
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers