1

Product Security Code Review Engineer Jobs in Kentucky

Integrate security across the SSDLC, including code reviews, testing, and deployment. In this role ... Cross-Functional Collaboration Partner closely with product, engineering, cybersecurity, and risk ...

... coding, application security, cloud security, DevSecOps, or governance-heavy enterprise ... product teams, agile delivery teams, engineering leaders, or architecture review groups. · Prior ...

Senior DevSecOps Engineer

Louisville, KY · On-site

$104K - $143K/yr

Embed security into the SDLC (secure coding, code reviews, automated testing, dependency scanning ... Partner with DevOps, engineering, and product teams to build secure solutions from the ground up

Cloud Security Engineer

Louisville, KY · On-site

$53.50 - $71.50/hr

We are seeking an experienced Cloud Security Engineer to design, implement, and manage multi-cloud ... The role focuses on Infrastructure-as-Code (IaC) delivery through Terraform, integrated into Azure ...

Vibe Coding Tutor

Lexington, KY · Remote

$18 - $40/hr

... code review exercises, and progressive project complexity to support students from non-programmers building first applications through developers integrating AI into existing workflows. * Effective ...

Vibe Coding Tutor

Louisville, KY · Remote

$18 - $40/hr

... code review exercises, and progressive project complexity to support students from non-programmers building first applications through developers integrating AI into existing workflows. * Effective ...

$43.75 - $59.75/hr

Testing, code review, good communication skills Bonus Points * AWS Professional Certificates ... and security * Troubleshoot and resolve issues in dev, testing, and production environments

next page

Showing results 1-20

Product Security Code Review Engineer information

What are the key skills and qualifications needed to thrive as a Product Security Code Review Engineer, and why are they important?

To thrive as a Product Security Code Review Engineer, you need a deep understanding of secure coding practices, software development lifecycles, and vulnerability assessment, typically backed by a degree in computer science or a related field. Familiarity with static and dynamic analysis tools, code review platforms, and certifications like CISSP or OSCP is highly valuable. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for explaining security findings and collaborating with development teams. These skills and qualities are vital to identify, communicate, and mitigate security risks in code, ensuring the overall resilience of software products.

What are some typical challenges faced by Product Security Code Review Engineers when coordinating with development teams?

Product Security Code Review Engineers often encounter challenges in balancing security priorities with project timelines and developer workflows. Effective communication is essential, as engineers must clearly explain vulnerabilities and remediation steps to developers who may have varying levels of security expertise. Additionally, they need to ensure that security recommendations are practical and align with the product's architecture, all while fostering a collaborative environment rather than creating bottlenecks. Building strong relationships with development teams and understanding their processes helps streamline secure code adoption and continuous improvement.

What is the difference between Product Security Code Review Engineer vs Software Security Engineer?

AspectProduct Security Code Review EngineerSoftware Security Engineer
Primary FocusReviewing and analyzing source code for security vulnerabilities in productsDesigning and implementing security measures across software systems
Skills & CertificationsSecure coding, code review, security standards (e.g., OWASP), certifications like CSSLPSecurity architecture, threat modeling, secure coding, certifications like CISSP
Work EnvironmentCollaborates with development teams during product developmentWorks on system-wide security strategies and architecture
Industry UsageCommon in product-based companies, especially in tech and cybersecurityFound in organizations focusing on overall security infrastructure

While both roles focus on security, the Product Security Code Review Engineer primarily reviews source code for vulnerabilities in specific products, whereas the Software Security Engineer develops and implements security strategies across software systems. The roles often overlap but differ in scope and focus.

What is a Product Security Code Review Engineer?

A Product Security Code Review Engineer is a cybersecurity professional responsible for analyzing and reviewing application source code to identify and mitigate security vulnerabilities. They work closely with development teams to ensure secure coding practices, review code for compliance with security standards, and recommend fixes for potential security issues. Their goal is to prevent security breaches by catching vulnerabilities early in the software development lifecycle.
What are popular job titles related to Product Security Code Review Engineer jobs in Kentucky? For Product Security Code Review Engineer jobs in Kentucky, the most frequently searched job titles are:
What job categories do people searching Product Security Code Review Engineer jobs in Kentucky look for? The top searched job categories for Product Security Code Review Engineer jobs in Kentucky are:
What cities in Kentucky are hiring for Product Security Code Review Engineer jobs? Cities in Kentucky with the most Product Security Code Review Engineer job openings:

AI Security Engineer Manager

Deloitte

Louisville, KY • On-site

Other

This job post has expired 1 day ago. Applications are no longer accepted.


Deloitte rating

8.1

Company rating: 8.1 out of 10

Based on 91 frontline employees who took The Breakroom Quiz

56th of 150 rated financial services


Job description

As a Manager in AI Security Engineering, you will play a critical role in securing the development and deployment of AI/ML and Generative AI solutions. You will operate hands-on across high-visibility initiatives, embedding security, trust, and resilience into AI systems while enabling rapid, responsible innovation.

Recruiting for this role ends on 7/23/2026.

Work you'll do

You will bring strong engineering depth and applied AI knowledge, combined with expertise in cybersecurity principles, to design and deliver secure, scalable solutions. This role requires a collaborative, execution-focused leader who can influence teams, mentor engineers, and ensure AI systems meet enterprise security, risk, and compliance expectations.

Key Responsibilities

Secure, Outcome-Driven Delivery
Design and deliver AI-enabled solutions that are secure by design, balancing business value with risk mitigation. Solve complex problems while ensuring protection of data, models, and systems.

Hands-On AI Security Engineering
Actively contribute to architecture, design, and development of AI/ML and GenAI systems with embedded security controls. Integrate security across the SSDLC, including code reviews, testing, and deployment. In this role you will be responsible for managing AI defensive technologies and the operations of those technologies which will evolve over time.

AI Risk Identification and Mitigation
Identify and address AI-specific vulnerabilities, including prompt injection, data leakage, model manipulation, and misuse. Implement practical safeguards to ensure system integrity and trustworthiness.

Technical Leadership and Advocacy
Serve as a trusted technical voice for secure AI engineering. Ensure solutions are feasible, secure, and aligned with business and customer objectives.

Engineering Excellence with Security Focus
Maintain high standards for code quality, scalability, and security. Contribute to secure coding practices, reusable patterns, and continuous improvement across engineering teams.

Iterative and Responsible Innovation
Support rapid experimentation while applying appropriate security guardrails. Enable teams to innovate safely through controlled, risk-aware development practices.

Cross-Functional Collaboration
Partner closely with product, engineering, cybersecurity, and risk teams to embed AI security into solutions. Balance usability, performance, and security in decision-making.

Standards and Best Practices
Apply and help evolve standards for AI security, including data protection, access control, model validation, and monitoring within DevSecOps and MLOps pipelines.

Communication and Influence
Clearly articulate technical risks, trade-offs, and solutions to both technical and non-technical stakeholders. Contribute to alignment and informed decision-making.

Impact

This role directly contributes to reducing enterprise risk and strengthening trust in AI systems. Your work will enable secure adoption of AI capabilities while protecting critical assets and maintaining compliance.

The successful candidate would possess these skills

  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to mentor and provide clear guidance to others

The team

Deloitte Technology US (DT - US) helps power Deloitte's success, which serves many of the world's largest, most respected organizations. We develop and deploy cutting-edge internal and go-to-market solutions that help Deloitte operate effectively and lead in the market. Our reputation is built on a tradition of delivering with excellence.

The ~3,000 professionals in DT - US deliver services including:

  • Cyber Security
  • Technology Support
  • Technology & Infrastructure
  • Applications
  • Relationship Management
  • Strategy & Communications
  • Project Management
  • Financials

Cyber Security

Cyber Security vigilantly protects Deloitte and client data. The team leads a strategic cyber risk program that adapts to a rapidly changing threat landscape, changes in business strategies, risks, and vulnerabilities. Using situational awareness, threat intelligence, and building a security culture across the organization, the team helps to protect the Deloitte brand.

Areas of focus include:

  • Risk & Compliance
  • Identity & Access Management
  • Data Protection
  • Cyber Design
  • Incident Response
  • Security Architecture
  • Business Partnership

Qualifications

Required:

  • Bachelor's degree or equivalent in Computer Science, Computer Engineering, Business Administration
  • Minimum 6 years of relevant experience in software engineering, cybersecurity, and/or including AI/ML, with hands-on delivery experience
  • Minimum 1 year of people and/or process management experience

Preferred:

  • Strong understanding of AI/GenAI technologies and associated security risks (e.g., prompt injection, data exposure, adversarial threats)
  • Experience building and securing applications using Python, JavaScript, or similar, along with ML frameworks (e.g., PyTorch, TensorFlow)
  • Familiarity with secure development practices (DevSecOps) and integrating security into CI/CD and MLOps pipelines
  • Experience with cloud platforms (AWS, Azure, GCP) and cloud-native security principles
  • Knowledge of data protection, identity/access management, and secure architecture patterns
  • Ability to work across teams, mentor engineers, and contribute to a strong engineering culture
  • Strong communication skills with the ability to translate technical concepts into business-relevant insights

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $118,700 to $243,700.  

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance. 

EA_ExpHire
RITM10427821

Qualifications:

As a Manager in AI Security Engineering, you will play a critical role in securing the development and deployment of AI/ML and Generative AI solutions. You will operate hands-on across high-visibility initiatives, embedding security, trust, and resilience into AI systems while enabling rapid, responsible innovation.

Recruiting for this role ends on 7/23/2026.

Work you'll do

You will bring strong engineering depth and applied AI knowledge, combined with expertise in cybersecurity principles, to design and deliver secure, scalable solutions. This role requires a collaborative, execution-focused leader who can influence teams, mentor engineers, and ensure AI systems meet enterprise security, risk, and compliance expectations.

Key Responsibilities

Secure, Outcome-Driven Delivery
Design and deliver AI-enabled solutions that are secure by design, balancing business value with risk mitigation. Solve complex problems while ensuring protection of data, models, and systems.

Hands-On AI Security Engineering
Actively contribute to architecture, design, and development of AI/ML and GenAI systems with embedded security controls. Integrate security across the SSDLC, including code reviews, testing, and deployment. In this role you will be responsible for managing AI defensive technologies and the operations of those technologies which will evolve over time.

AI Risk Identification and Mitigation
Identify and address AI-specific vulnerabilities, including prompt injection, data leakage, model manipulation, and misuse. Implement practical safeguards to ensure system integrity and trustworthiness.

Technical Leadership and Advocacy
Serve as a trusted technical voice for secure AI engineering. Ensure solutions are feasible, secure, and aligned with business and customer objectives.

Engineering Excellence with Security Focus
Maintain high standards for code quality, scalability, and security. Contribute to secure coding practices, reusable patterns, and continuous improvement across engineering teams.

Iterative and Responsible Innovation
Support rapid experimentation while applying appropriate security guardrails. Enable teams to innovate safely through controlled, risk-aware development practices.

Cross-Functional Collaboration
Partner closely with product, engineering, cybersecurity, and risk teams to embed AI security into solutions. Balance usability, performance, and security in decision-making.

Standards and Best Practices
Apply and help evolve standards for AI security, including data protection, access control, model validation, and monitoring within DevSecOps and MLOps pipelines.

Communication and Influence
Clearly articulate technical risks, trade-offs, and solutions to both technical and non-technical stakeholders. Contribute to alignment and informed decision-making.

Impact

This role directly contributes to reducing enterprise risk and strengthening trust in AI systems. Your work will enable secure adoption of AI capabilities while protecting critical assets and maintaining compliance.

The successful candidate would possess these skills

  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to mentor and provide clear guidance to others

The team

Deloitte Technology US (DT - US) helps power Deloitte's success, which serves many of the world's largest, most respected organizations. We develop and deploy cutting-edge internal and go-to-market solutions that help Deloitte operate effectively and lead in the market. Our reputation is built on a tradition of delivering with excellence.

The ~3,000 professionals in DT - US deliver services including:

  • Cyber Security
  • Technology Support
  • Technology & Infrastructure
  • Applications
  • Relationship Management
  • Strategy & Communications
  • Project Management
  • Financials

Cyber Security

Cyber Security vigilantly protects Deloitte and client data. The team leads a strategic cyber risk program that adapts to a rapidly changing threat landscape, changes in business strategies, risks, and vulnerabilities. Using situational awareness, threat intelligence, and building a security culture across the organization, the team helps to protect the Deloitte brand.

Areas of focus include:

  • Risk & Compliance
  • Identity & Access Management
  • Data Protection
  • Cyber Design
  • Incident Response
  • Security Architecture
  • Business Partnership

Qualifications

Required:

  • Bachelor's degree or equivalent in Computer Science, Computer Engineering, Business Administration
  • Minimum 6 years of relevant experience in software engineering, cybersecurity, and/or including AI/ML, with hands-on delivery experience
  • Minimum 1 year of people and/or process management experience

Preferred:

  • Strong understanding of AI/GenAI technologies and associated security risks (e.g., prompt injection, data exposure, adversarial threats)
  • Experience building and securing applications using Python, JavaScript, or similar, along with ML frameworks (e.g., PyTorch, TensorFlow)
  • Familiarity with secure development practices (DevSecOps) and integrating security into CI/CD and MLOps pipelines
  • Experience with cloud platforms (AWS, Azure, GCP) and cloud-native security principles
  • Knowledge of data protection, identity/access management, and secure architecture patterns
  • Ability to work across teams, mentor engineers, and contribute to a strong engineering culture
  • Strong communication skills with the ability to translate technical concepts into business-relevant insights

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. A...


What Deloitte employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom