1

Product Security Code Review Engineer Jobs in Michigan

Software Product Security Engineer Location: Dearborn, MI (4 days onsite, 1 remote) Duration ... Consult on secure architecture, API security, IAM, logging, and secure coding practices across ...

Product Security Architect

Troy, MI ยท On-site

$61.50 - $79.50/hr

Work and collaborate with customer, product, engineering, and operations teams to ensure high ... Salary ranges are determined through interviews and a review of the education, experience ...

next page

Showing results 1-20

Product Security Code Review Engineer information

What is a product security code review engineer?

A Product Security Code Review Engineer is a cybersecurity professional responsible for analyzing and reviewing application source code to identify and mitigate security vulnerabilities. They work closely with development teams to ensure secure coding practices, review code for compliance with security standards, and recommend fixes for potential security issues. Their goal is to prevent security breaches by catching vulnerabilities early in the software development lifecycle.

What are the key skills and qualifications needed to thrive as a product security code review engineer?

To thrive as a Product Security Code Review Engineer, you need a deep understanding of secure coding practices, software development lifecycles, and vulnerability assessment, typically backed by a degree in computer science or a related field. Familiarity with static and dynamic analysis tools, code review platforms, and certifications like CISSP or OSCP is highly valuable. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for explaining security findings and collaborating with development teams. These skills and qualities are vital to identify, communicate, and mitigate security risks in code, ensuring the overall resilience of software products.

What are some typical challenges faced by product security code review engineers when coordinating with development teams?

Product Security Code Review Engineers often encounter challenges in balancing security priorities with project timelines and developer workflows. Effective communication is essential, as engineers must clearly explain vulnerabilities and remediation steps to developers who may have varying levels of security expertise. Additionally, they need to ensure that security recommendations are practical and align with the product's architecture, all while fostering a collaborative environment rather than creating bottlenecks. Building strong relationships with development teams and understanding their processes helps streamline secure code adoption and continuous improvement.

What is the difference between Product Security Code Review Engineer vs Software Security Engineer?

AspectProduct Security Code Review EngineerSoftware Security Engineer
Primary FocusReviewing and analyzing source code for security vulnerabilities in productsDesigning and implementing security measures across software systems
Skills & CertificationsSecure coding, code review, security standards (e.g., OWASP), certifications like CSSLPSecurity architecture, threat modeling, secure coding, certifications like CISSP
Work EnvironmentCollaborates with development teams during product developmentWorks on system-wide security strategies and architecture
Industry UsageCommon in product-based companies, especially in tech and cybersecurityFound in organizations focusing on overall security infrastructure

While both roles focus on security, the Product Security Code Review Engineer primarily reviews source code for vulnerabilities in specific products, whereas the Software Security Engineer develops and implements security strategies across software systems. The roles often overlap but differ in scope and focus.

What job categories do people searching Product Security Code Review Engineer jobs in Michigan look for?

The top searched job categories for Product Security Code Review Engineer jobs in Michigan are:

What cities in Michigan are hiring for Product Security Code Review Engineer jobs?

Cities in Michigan with the most Product Security Code Review Engineer job openings:

Product Security Engineer

Dearborn, MI โ€ข On-site

Other

Posted 7 days ago


Job description

Software Product Security Engineer

Location: Dearborn, MI (4 days onsite, 1 remote)

Duration: Ongoing long term

Visa: No H-1bs, OPT is fine

W2 Role No C2C

Additional Information:

Overall, we are looking for someone who can understand the developer's perspective while also bringing a strong cybersecurity and risk-management mindset. The ideal candidate is someone who can sit in the middle, understand the technical details, work through the grey areas, and help the development/business teams arrive at the right security decision

Software Product Security Engineer


Position Description:

  • Guide development teams to triage and remediate findings from SAST, DAST, SCA, and bug bounty/vulnerability reports.
  • Serve as a trusted liaison between engineering and security stakeholders, translating risk into practical, prioritized action.
  • Consult on secure architecture, API security, IAM, logging, and secure coding practices across cloud platforms (Azure, Google Cloud Platform, AWS). Integrate and automate security testing within CI/CD pipelines alongside platform and DevOps teams.
  • Help teams manage technical debt, upgrade paths, and software supply chain/SBOM risks. Communicate complex technical risk clearly to both engineers and business stakeholders without creating panic or friction.
  • This position will leverage broad experience and a jack of all trades in IT maybe an ideal candidate. The team handles compliance activities for cybersecurity so experience there is a plus.


Skills Required:

  • Scripting, User Stories, Troubleshooting (Problem Solving), Data/Analytics dashboards, Software Development Lifecycle, Software Development, Web Development, TCP/IP, Data Integrity, Microsoft Office, Web Applications, Web Technologies, Cyber Security, Data Modeling, Developer, SharePoint, Web Design & Development

Skills Preferred:

  • Tooling, Disaster Recovery, Risk Management, Spring Security, Solution Architecture, Software Development Lifecycle, AIPGEE, Coding, JavaScript, KANBAN, Linux, Network Protocols & Standards, Penetration Testing, J2EE, Salesforce, Spring Boot, Change control , Cloud Computing, Dynatrace, Apache Tomcat, Application Development, Cloud Infrastructure, Computer Security, Google Cloud Platform, ISO 27001, Pega, Problem Solving, React, Application Architect, Burp Suite, Configuration Management, JQuery, Network Security, Java, Analytical skills, Application Design, Business Risk Mgt, IAM, Information Security, JSON, Python, Risk Assessment

Experience Preferred:

  • Certifications are highly valued (CISSP, CISA, CISM, etc.)

Education Required:

  • Bachelor's Degree