Work closely with development teams, conduct code reviews, perform AI Red Teaming assessments, to ... Perform threat modeling for AI-related products, such as chatbots, MCPs implementations, and ...
Work closely with development teams, conduct code reviews, perform AI Red Teaming assessments, to ... Perform threat modeling for AI-related products, such as chatbots, MCPs implementations, and ...
Product Security Engineer, Staff
San Diego, CA · On-site
$149K - $224K/yr
... Engineering General Summary: Job function includes participation in product security incident ... industry - Secure code review, analysis and vulnerability assessment - Security testing, e.g ...
Product Security Engineer, Staff
San Diego, CA · On-site
$149K - $224K/yr
... Engineering General Summary: Job function includes participation in product security incident ... industry - Secure code review, analysis and vulnerability assessment - Security testing, e.g ...
Security Engineer
San Francisco, CA · On-site
Lead threat modeling, security architecture reviews, and secure code review initiatives. * Build ... Help shape security strategy across product security, infrastructure security, information security ...
Security Engineer
San Francisco, CA · On-site
Lead threat modeling, security architecture reviews, and secure code review initiatives. * Build ... Help shape security strategy across product security, infrastructure security, information security ...
Senior Product Security Engineer
San Francisco, CA · On-site
$188K - $282K/yr
You'll own the security of critical product areas, conduct deep vulnerability research and code review, and partner closely with engineering teams to raise the security bar in the areas you work in ...
Senior Product Security Engineer
San Francisco, CA · On-site
$188K - $282K/yr
You'll own the security of critical product areas, conduct deep vulnerability research and code review, and partner closely with engineering teams to raise the security bar in the areas you work in ...
Product Security Engineer, Senior Staff
San Diego, CA · On-site +1
$180K - $270K/yr
... Engineering General Summary: Job function includes participation in product security incident ... industry - Secure code review, analysis and vulnerability assessment - Security testing, e.g ...
Product Security Engineer, Senior Staff
San Diego, CA · On-site +1
$180K - $270K/yr
... Engineering General Summary: Job function includes participation in product security incident ... industry - Secure code review, analysis and vulnerability assessment - Security testing, e.g ...
Staff Product Security Engineer
San Francisco, CA · On-site
$220K - $330K/yr
Own and review security-critical code across key parts of the product, including authentication and ... Mentor engineers and raise the security bar across teams through code reviews, design reviews, and ...
Staff Product Security Engineer
San Francisco, CA · On-site
$220K - $330K/yr
Own and review security-critical code across key parts of the product, including authentication and ... Mentor engineers and raise the security bar across teams through code reviews, design reviews, and ...
Senior Product Security Engineer (Applications)
San Francisco, CA · Hybrid
$134K - $185K/yr
Senior Product Security Engineer As a Senior Product Security Engineer, you will help secure both ... Conduct secure code reviews for critical modules in Python and C/C++, supporting secure coding ...
Senior Product Security Engineer (Applications)
San Francisco, CA · Hybrid
$134K - $185K/yr
Senior Product Security Engineer As a Senior Product Security Engineer, you will help secure both ... Conduct secure code reviews for critical modules in Python and C/C++, supporting secure coding ...
Senior Product Security Engineer
San Francisco, CA · On-site
$134K - $185K/yr
... Product Security Engineer to ensure their AI infrastructure is built securely. This role involves ... code reviews, and system design reviews for Crusoe's fleet of SaaS offerings. Qualifications
Senior Product Security Engineer
San Francisco, CA · On-site
$134K - $185K/yr
... Product Security Engineer to ensure their AI infrastructure is built securely. This role involves ... code reviews, and system design reviews for Crusoe's fleet of SaaS offerings. Qualifications
Senior Security Engineer
San Francisco, CA · On-site
$134K - $185K/yr
... product engineering teams to integrate security throughout the software development lifecycle, from ... code reviews and architecture assessments for new features, with special focus on AI model ...
Senior Security Engineer
San Francisco, CA · On-site
$134K - $185K/yr
... product engineering teams to integrate security throughout the software development lifecycle, from ... code reviews and architecture assessments for new features, with special focus on AI model ...
Product Security Engineer
San Francisco, CA · On-site +1
$187K - $260K/yr
Join Airtable as a Product Security Engineer and play a pivotal role in shaping the security of our ... You are proficient in writing and reviewing code and treat security as an engineering problem to be ...
Product Security Engineer
San Francisco, CA · On-site +1
$187K - $260K/yr
Join Airtable as a Product Security Engineer and play a pivotal role in shaping the security of our ... You are proficient in writing and reviewing code and treat security as an engineering problem to be ...
Review product designs for security defects, perform threat modeling and recommend remediations ... Lead the definition and development of custom Security as Code solutions. * Provide training ...
Review product designs for security defects, perform threat modeling and recommend remediations ... Lead the definition and development of custom Security as Code solutions. * Provide training ...
Conduct security assessments, code reviews, and penetration tests on web applications, APIs, and mobile apps to identify vulnerabilities and flaws. * Collaborate with development teams to embed ...
Conduct security assessments, code reviews, and penetration tests on web applications, APIs, and mobile apps to identify vulnerabilities and flaws. * Collaborate with development teams to embed ...
They are seeking a Product Security Lead to drive security integration into their platform ... code review, threat modeling, detection engineering, and security tooling. • Excellent written ...
They are seeking a Product Security Lead to drive security integration into their platform ... code review, threat modeling, detection engineering, and security tooling. • Excellent written ...
... reviews, code reviews, vulnerability management, pen testing, and incident response. Support ... engineering, product, and security stakeholders. Excellent problem-solving skills and a ...
... reviews, code reviews, vulnerability management, pen testing, and incident response. Support ... engineering, product, and security stakeholders. Excellent problem-solving skills and a ...
They are seeking a Staff Security Engineer to collaborate with the Developer Experience engineering ... You will sometimes write production Python/Go code, security peer review code, build proofs of ...
They are seeking a Staff Security Engineer to collaborate with the Developer Experience engineering ... You will sometimes write production Python/Go code, security peer review code, build proofs of ...
Maintain a hands-on role in design reviews, code reviews, vulnerability management, pen testing ... engineering, product, and security stakeholders. Excellent problem-solving skills and a ...
Maintain a hands-on role in design reviews, code reviews, vulnerability management, pen testing ... engineering, product, and security stakeholders. Excellent problem-solving skills and a ...
The Product Security Engineer (Embedded) is responsible for supporting the security of BD ... Participate in technical design reviews and code inspections, providing feedback to project team ...
The Product Security Engineer (Embedded) is responsible for supporting the security of BD ... Participate in technical design reviews and code inspections, providing feedback to project team ...
Maintain a hands-on role in design reviews, code reviews, vulnerability management, pen testing ... engineering, product, and security stakeholders. Excellent problem-solving skills and a ...
Maintain a hands-on role in design reviews, code reviews, vulnerability management, pen testing ... engineering, product, and security stakeholders. Excellent problem-solving skills and a ...
Sr. Product Security Engineer
Woodland Hills, CA · On-site
$121K - $166K/yr
Title: Sr. Product Security Engineer Location: Remote Ekman Associates is a management consulting ... Code Analysis: Review code for security bugs in the context of AI-driven systems; GRC: Provide ...
Sr. Product Security Engineer
Woodland Hills, CA · On-site
$121K - $166K/yr
Title: Sr. Product Security Engineer Location: Remote Ekman Associates is a management consulting ... Code Analysis: Review code for security bugs in the context of AI-driven systems; GRC: Provide ...
Security Engineer - Product
San Francisco, CA · On-site
$190K - $260K/yr
We're hiring a Product Security Lead to drive how we build security into the platform. The work ... code review, threat modeling, detection engineering, and security tooling. * Excellent written ...
Security Engineer - Product
San Francisco, CA · On-site
$190K - $260K/yr
We're hiring a Product Security Lead to drive how we build security into the platform. The work ... code review, threat modeling, detection engineering, and security tooling. * Excellent written ...
Product Security Code Review Engineer information
What are the key skills and qualifications needed to thrive as a Product Security Code Review Engineer, and why are they important?
What are some typical challenges faced by Product Security Code Review Engineers when coordinating with development teams?
What is the difference between Product Security Code Review Engineer vs Software Security Engineer?
| Aspect | Product Security Code Review Engineer | Software Security Engineer |
|---|---|---|
| Primary Focus | Reviewing and analyzing source code for security vulnerabilities in products | Designing and implementing security measures across software systems |
| Skills & Certifications | Secure coding, code review, security standards (e.g., OWASP), certifications like CSSLP | Security architecture, threat modeling, secure coding, certifications like CISSP |
| Work Environment | Collaborates with development teams during product development | Works on system-wide security strategies and architecture |
| Industry Usage | Common in product-based companies, especially in tech and cybersecurity | Found in organizations focusing on overall security infrastructure |
While both roles focus on security, the Product Security Code Review Engineer primarily reviews source code for vulnerabilities in specific products, whereas the Software Security Engineer develops and implements security strategies across software systems. The roles often overlap but differ in scope and focus.
What is a Product Security Code Review Engineer?
Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Re-posted 3 days ago
Job description
Join Fortinet, a cybersecurity pioneer with over two decades of excellence, as we continue to shape the future of cybersecurity and redefine the intersection of networking and security. At Fortinet, our mission is to safeguard people, devices, and data everywhere.
Fortinet is seeking an experienced and innovative Principal AI Security Engineer to join our Corporate Information Security team. As an AI Security Engineer, you will play a crucial role in ensuring the security, safety, and privacy of our AI-driven applications while collaborating with cross-functional teams and providing technical expertise.
Key Responsibilities:
- Serve as an AI security subject matter expert who provides guidance to internal teams
- Work closely with development teams, conduct code reviews, perform AI Red Teaming assessments, to identify vulnerabilities in existing codes and new features, and participate in architectural reviews to ensure security is considered early in the development lifecycle.
- Perform threat modeling for AI-related products, such as chatbots, MCPs implementations, and autonomous agents.
- Integrate Security and AI-Specific checks into CI/CD workflows to automate security testing and ensure consistent application of best practices.
- Develop, implement, and communicate vulnerability mitigation strategies
- Develop strategies, evaluate solutions, design and implement tools, processes and controls to ensure that security, safety and privacy are designed in Fortinet AI applications.
- Develop and maintain security guardrails, input/output filters, and policy enforcement layers for LLM interactions
- Proactively research new attack vectors on AI applications that may affect Fortinet applications and infrastructure.
- Be part of a global distributed team to share knowledge, workload and assignments. Strong sense of teamwork is required. Coach peers in AI/ML security concepts and best practices.
Minimum Qualifications
- 7+ years of work experience as an Information security, product security, application security, AI/ML or data science related fields.
- Strong understanding on LLM Based Application architectures, technologies, frameworks, and foundational concepts like training, vector databases, memory, tool usage, MCP, Agentic AI, Guardrails etc.
- Solid understanding on current attacks on ML models, including adversarial examples, prompt injection, training data extraction, model extraction, and data poisoning.
- Solid understanding on LLM moderation, prompt engineering and guardrails.
- Strong understanding on OWASP TOP 10 and OWASP LLM Top 10 risks.
- Strong understanding of common API security risks
- Strong understanding on Cloud-Native application architecture, microservices, containerization technologies, secure deployment and implementation issues.
- Proven experience in manual application penetration testing
- Proven experience in security code review
- Strong foundation in computer and network security, authentication & authorization, security protocols and applied cryptography
- Solid understanding on CI/CD pipelines, build systems and DevSecOps principles.
- Experience defining security architecture patterns and standards in a large enterprise organization.
- Experience with cloud-based security solutions and familiarity with cloud service providers, particularly in relation to AI Security
- Experience working with threat modeling methodologies such as STRIDE, MAESTRO etc.
- Solid understanding of OAuth and JWT implementations.
- Ability to organize & communicate effectively, both written and verbal, with technical and non-technical people across functional teams
- A BS degree in Computer Science, Cyber Security, other tech-related degree, or equivalent experience.
Ways to Stand Out
- MS or PhD in, Artificial Intelligence or related field
- Experience in AI Red teaming or adversarial testing of AI/ML applications.
- Use of AI in vulnerability research or some other offensive domain
- Experience analyzing AI-generated code for security issues
- Demonstrated experience in MLops or Deep learning related infrastructure
- Understanding of data science, statistical analysis, and visualization
- Background of AI Trust principles and familiarity with application of ethical and safety perspectives to AI implementations.
- Strong understanding on EU AI Act, GDPR, ISO 42001 or NIST AI RMF like frameworks.
About Our Team:
Join our team, known for its collaborative ethos, working seamlessly with global customers, internal engineering teams and product development groups. Our team culture emphasizes continuous learning, innovation, and a strong commitment to customer satisfaction. We embrace Fortinet's core values of openness, teamwork and innovation, fostering an environment where team members support each other, share knowledge, and leverage AI to solve complex technical challenges. Our inclusive and dynamic team thrives on collaboration and is driven by the shared goal of maintaining Fortinet's high standards of excellence in cybersecurity solutions.
Why Join Us:
We encourage candidates from all backgrounds and identities to apply. We offer a supportive work environment and a competitive Total Rewards package to support you with your overall health and financial well-being. Embark on a challenging, enjoyable, and rewarding career journey with Fortinet. Join us in bringing solutions that make a meaningful and lasting impact to our 660,000+ customers around the globe.
Must be authorized to work in the U.S. without sponsorship
The US base salary range for this full-time position is $160,000-$220,000. Fortinet offers employees a variety of benefits, including medical, dental, vision, life and disability insurance, 401(k), 11 paid holidays, vacation time, and sick time, as well as a comprehensive leave program.
Wage ranges are based on various factors, including the labour market, job type, and job level. Exact salary offers will be determined by factors such as the candidate's subject knowledge, skill level, qualifications, experience, and geographic location.
All roles are eligible to participate in the Fortinet equity program. Bonus eligibility is reviewed at the time of hire and annually at the Company's discretion.
About Fortinet
Sourced by ZipRecruiter
Industry
Network security
Company size
10,000+ Employees
Headquarters location
Sunnyvale, CA, US
Year founded
2000