1

Product Security Code Review Engineer Jobs in Texas

Principal Security Engineer

Austin, TX ยท Remote

$160K - $240K/yr

Threat Modeling & Review: Perform system-level threat modeling for new product features, protocols ... Infrastructure as Code (IaC): Enforce security configurations into version-controlled repositories ...

Principal Security Engineer

Austin, TX ยท Remote

$160K - $240K/yr

Threat Modeling & Review: Perform system-level threat modeling for new product features, protocols ... Infrastructure as Code (IaC): Enforce security configurations into version-controlled repositories ...

The Residential HVAC team is adding a Product Security Engineering position to focus on embedded systems, services, applications and the associated product development processes used in residential ...

Senior Offensive Security Engineer (AppSec)

Austin, TX ยท On-site

$113K - $155K/yr

... Conduct code reviews focused on security, resilience, and exploitability. โ€ข Lead incident ... Required : โ€ข 7+ years of experience in cybersecurity, application security, product security, or ...

Ability to perform secure code review on infrastructure scripts and code. Identify vulnerabilities ... Software development experience/expertise to compliment product security and application security ...

$140K - $240K/yr

We\'re hiring a Principal Security Engineer to lead product security across the platform. Your job ... Design and review security-sensitive components such as auth systems, authorization models, and ...

... engineering leaders to embed security requirements into product roadmaps, design reviews, and ... code analysis, anomaly detection, or security automation; safely integrates and operates AI ...

Associate Principal, Application Security

Dallas, TX ยท On-site

$58.25 - $77.75/hr

Conduct IT/Security code review meetings to eliminate false positives and encourage collaboration ... Exhibit ability to understand and modify code in a diverse range of programming languages and ...

Product Security Lead

Dallas, TX ยท On-site

$100K - $110K/yr

... review logs and events to identify production floor risks * Create a strong product security focus ... Bachelor/ Master in engineering, product security or equal through experience. * Additional ...

Do you want first crack at new Apple Pay products? Come help them be more secure by breaking them ... You're skilled at security code reviews. AI/agentic fluency: You have hands-on experience using ...

Do you want first crack at new Apple Pay products? Come help them be more secure by breaking them ... You're skilled at security code reviews. AI/agentic fluency: You have hands-on experience using ...

Do you want first crack at new Apple Pay products? Come help them be more secure by breaking them ... You're skilled at security code reviews. AI/agentic fluency: You have hands-on experience using ...

Our differentiated approach, which includes combining engineering depth, litigation experience, and ... security protocols. Required Qualifications (Must-Haves) * 3-4+ years of direct experience ...

Product Security Architect III

Austin, TX ยท On-site

$64.50 - $83.25/hr

Lead threat modeling, security design reviews, and risk assessments for complex product initiatives, translating security requirements into actionable engineering guidance. * Provide technical ...

Showing results 21-40

Product Security Code Review Engineer information

What are the key skills and qualifications needed to thrive as a product security code review engineer?

To thrive as a Product Security Code Review Engineer, you need a deep understanding of secure coding practices, software development lifecycles, and vulnerability assessment, typically backed by a degree in computer science or a related field. Familiarity with static and dynamic analysis tools, code review platforms, and certifications like CISSP or OSCP is highly valuable. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for explaining security findings and collaborating with development teams. These skills and qualities are vital to identify, communicate, and mitigate security risks in code, ensuring the overall resilience of software products.

What are some typical challenges faced by product security code review engineers when coordinating with development teams?

Product Security Code Review Engineers often encounter challenges in balancing security priorities with project timelines and developer workflows. Effective communication is essential, as engineers must clearly explain vulnerabilities and remediation steps to developers who may have varying levels of security expertise. Additionally, they need to ensure that security recommendations are practical and align with the product's architecture, all while fostering a collaborative environment rather than creating bottlenecks. Building strong relationships with development teams and understanding their processes helps streamline secure code adoption and continuous improvement.

What is the difference between Product Security Code Review Engineer vs Software Security Engineer?

AspectProduct Security Code Review EngineerSoftware Security Engineer
Primary FocusReviewing and analyzing source code for security vulnerabilities in productsDesigning and implementing security measures across software systems
Skills & CertificationsSecure coding, code review, security standards (e.g., OWASP), certifications like CSSLPSecurity architecture, threat modeling, secure coding, certifications like CISSP
Work EnvironmentCollaborates with development teams during product developmentWorks on system-wide security strategies and architecture
Industry UsageCommon in product-based companies, especially in tech and cybersecurityFound in organizations focusing on overall security infrastructure

While both roles focus on security, the Product Security Code Review Engineer primarily reviews source code for vulnerabilities in specific products, whereas the Software Security Engineer develops and implements security strategies across software systems. The roles often overlap but differ in scope and focus.

What is a product security code review engineer?

A Product Security Code Review Engineer is a cybersecurity professional responsible for analyzing and reviewing application source code to identify and mitigate security vulnerabilities. They work closely with development teams to ensure secure coding practices, review code for compliance with security standards, and recommend fixes for potential security issues. Their goal is to prevent security breaches by catching vulnerabilities early in the software development lifecycle.
What are popular job titles related to Product Security Code Review Engineer jobs in Texas? For Product Security Code Review Engineer jobs in Texas, the most frequently searched job titles are:
What job categories do people searching Product Security Code Review Engineer jobs in Texas look for? The top searched job categories for Product Security Code Review Engineer jobs in Texas are:
What cities in Texas are hiring for Product Security Code Review Engineer jobs? Cities in Texas with the most Product Security Code Review Engineer job openings:

Principal Security Engineer

MLabs

Austin, TX โ€ข Remote

$160K - $240K/yr

Other

Medical, PTO

Posted 7 days ago


Job description

Location:ย Remote - US or EU

Remoteย | Full-time

Compensation: $160K - $240K

Our client operates a core banking platform designed specifically for digital assets, enabling fintechs and systemically important financial institutions to build, operate, and scale onchain infrastructure. The platform secures over 100B in assets and powers critical operations-including key management, transaction processing, treasury, and compliance-for over 400 global institutions.

Our client is seeking a Principal Security Engineer to lead product security across the entire ecosystem. In this role, security is built directly into the system's architecture rather than applied as a secondary control. The ideal candidate will take ownership of hardening key management, signing workflows, authentication systems, policy enforcement, and multi-chain integrations.

Beyond core product security and vulnerability management, this position plays a pivotal role in shaping the long-term architectural vision of a platform trusted by tier-one financial institutions. As an organization committed to technical excellence, our client also encourages contribution to the broader security community through research, publications, and industry events.

Key Responsibilities

  • Architectural Leadership: Lead product security architecture, ensuring security principles are embedded into core platform design and development cycles.
  • Core Infrastructure Security: Analyze and secure key management systems, transaction pipelines, and signing workflows across modern distributed networks.
  • Threat Modeling & Review: Perform system-level threat modeling for new product features, protocols, and multi-chain integrations.
  • Cryptographic & Auth Security: Design and evaluate security-sensitive components, including authentication protocols, authorization frameworks, and applied cryptographic workflows.
  • Defense-in-Depth: Define, implement, and maintain multi-layered security controls across the application, infrastructure, and protocol layers.
  • Supply Chain & Environment Security: Own and expand end-to-end software supply-chain security, spanning dependency scanning in CI pipelines to local developer environments.
  • Infrastructure as Code (IaC): Enforce security configurations into version-controlled repositories to prevent configuration drift and enhance auditability.
  • Risk Research & Mitigation: Investigate emerging security risks related to blockchain protocols, institutional custody models, and novel cryptographic techniques.
  • Compliance & Audits: Support ongoing SOC 2, ISO 27001, and ISO 22301 compliance frameworks alongside expanding control surfaces.
  • Technical Enablement & Incident Response: Provide day-to-day guidance to engineering teams to make secure patterns accessible, while supporting incident response and root-cause analysis when necessary.
  • External Representation: Participate in security architecture reviews with tier-one banking partners, external auditors, and enterprise clients.
  • Industry Thought Leadership: Contribute to technical research, whitepapers, and conference presentations to advance the digital asset security field.

Requirements

  • Experience: 10+ years in security engineering, product security, or security architecture roles.
  • Domain Expertise: Demonstrated track record of securing financial infrastructure, institutional blockchain platforms, or both.
  • Cryptographic Systems: Deep understanding of cryptographic protocols, wallet architectures, and key management frameworks. Direct experience with Multi-Party Computation (MPC), threshold signatures, or HSM-backed solutions is strongly preferred.
  • Threat Modeling: Extensive experience performing comprehensive system-level threat models and architecture reviews.
  • Infrastructure & Networks: Solid foundational knowledge of distributed systems, networking protocols, and cloud computing platforms (primarily AWS).
  • Supply Chain & IaC: Hands-on experience implementing software supply-chain defenses and managing security configurations via code to prevent drift.
  • Compliance & Frameworks: Familiarity with maintaining live audit cycles for frameworks such as SOC 2, ISO 27001, ISO 22301, and the NIST Cybersecurity Framework.
  • Development Skills: Professional familiarity with modern backend languages such as Rust or TypeScript.
  • Communication: Exceptional ability to communicate complex security concepts effectively to both internal engineering teams and external enterprise stakeholders.

Benefits

  • Competitive executive-level compensation package.
  • Flexible, remote-first work environment.
  • Comprehensive health, wellness, and benefits coverage tailored to regional standards.
  • Generous paid time off (PTO) and personal Leave policy.
  • Professional development budget for security research, certifications, and industry conferences.
  • Exposure to cutting-edge cryptographic engineering alongside leading global financial institutions.

Interview Process

The selection process for this position consists of the following structured phases:

  1. Initial Screening Call (30 mins): Introductory discussion with the Co-CEO to align on background, expectations, and role scope.
  2. Cognitive & Skills Assessment (45 mins): A series of brief, timed assessments via TestGorilla evaluating:
  • Critical Thinking
  • Verbal Reasoning
  • Attention to Detail (Textual)
  • Numerical Reasoning
  • Problem Solving
  • (Note: Practice questions are provided prior to each timed 10-minute section).
  1. Take-Home Technical Exercise: A practical assignment designed to assess technical problem-solving and architectural design capabilities.
  2. Group Technical Interview (120 mins): A multi-part panel review covering:
  • Threat modeling exercise
  • Infrastructure security review
  • Cultural alignment assessment
  1. Final Leadership Interview: A concluding conversation prior to the formal offer stage.



Due to the high volume of applications we anticipate, we regret that we are unable to provide individual feedback to all candidates. If you do not hear back from us within 4 weeks of your application, please assume that you have not been successful on this occasion. We genuinely appreciate your interest and wish you the best in your job search.

Commitment to Equality and Accessibility:

At MLabs, we are committed to offer equal opportunities to all candidates. We ensure no discrimination, accessible job adverts, and providing information in accessible formats. Our goal is to foster a diverse, inclusive workplace with equal opportunities for all. If you need any reasonable adjustments during any part of the hiring process or you would like to see the job-advert in an accessible format please let us know at the earliest opportunity by emailing human-resources@mlabs.city.

MLabs Ltd collects and processes the personal information you provide such as your contact details, work history, resume, and other relevant data for recruitment purposes only. This information is managed securely in accordance with MLabs Ltd's Privacy Policy and Information Security Policy, and in compliance with applicable data protection laws. Your data may be shared only with clients and trusted partners where necessary for recruitment purposes. You may request the deletion of your data or withdraw your consent at any time by contacting legal@mlabs.city.