1

Product Security Code Review Engineer Jobs in Anaheim, CA

We are currently seeking a Product Review Engineer I for our Headquarters Building in Ontario, CA ... Maintain compliance with company policies, procedures, code of conduct, confidentiality ...

PRODUCT REVIEW ENGINEER I

Ontario, CA · On-site

$71K - $82K/yr

We are currently seeking a Product Review Engineer I for our Headquarters Building in Ontario, CA ... Maintain compliance with company policies, procedures, code of conduct, confidentiality ...

Product Security Manager

Torrance, CA · On-site

$120K - $222K/yr

Establish and maintain secure coding standards, security review gates, and developer security training programs. * Serve as the primary security liaison for product engineering teams, translating ...

Application Security Engineer

Torrance, CA

$61.25 - $82/hr

... reviewing code with colleagues, each with different priorities, backgrounds, and abilities in ... XSS, CSRF, clickjacking) and their mitigation strategies Knowledge of system security ...

Robotics Product Security Engineer

Irvine, CA · On-site

$62.25 - $83.25/hr

... Robotics Product Security Engineer to enhance the security architecture of autonomous robotic ... security reviews across robotic platforms, deployment mechanisms, and operational workflows • ...

Robotics Product Security Engineer

Irvine, CA · On-site

$63 - $84.25/hr

About the Job The Robotics Product Security Engineer will secure Field AI's autonomous robotic ... Conduct threat modeling and security reviews across robotic platforms, deployment mechanisms, and ...

About the Job The Robotics Product Security Engineer will secure Field AI's autonomous robotic ... Conduct threat modeling and security reviews across robotic platforms, deployment mechanisms, and ...

About the Job The Robotics Product Security Engineer will secure Field AI's autonomous robotic ... Conduct threat modeling and security reviews across robotic platforms, deployment mechanisms, and ...

next page

Showing results 1-20

Product Security Code Review Engineer information

See Anaheim, CA salary details

$55.5K

$150.8K

$214.6K

How much do product security code review engineer jobs pay per year?

As of Aug 31, 2026, the average yearly pay for product security code review engineer in Anaheim, CA is $150,830.00, according to ZipRecruiter salary data. Most workers in this role earn between $92,100.00 and $214,600.00 per year, depending on experience, location, and employer.

What is a product security code review engineer?

A Product Security Code Review Engineer is a cybersecurity professional responsible for analyzing and reviewing application source code to identify and mitigate security vulnerabilities. They work closely with development teams to ensure secure coding practices, review code for compliance with security standards, and recommend fixes for potential security issues. Their goal is to prevent security breaches by catching vulnerabilities early in the software development lifecycle.

What are the key skills and qualifications needed to thrive as a product security code review engineer?

To thrive as a Product Security Code Review Engineer, you need a deep understanding of secure coding practices, software development lifecycles, and vulnerability assessment, typically backed by a degree in computer science or a related field. Familiarity with static and dynamic analysis tools, code review platforms, and certifications like CISSP or OSCP is highly valuable. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for explaining security findings and collaborating with development teams. These skills and qualities are vital to identify, communicate, and mitigate security risks in code, ensuring the overall resilience of software products.

What are some typical challenges faced by product security code review engineers when coordinating with development teams?

Product Security Code Review Engineers often encounter challenges in balancing security priorities with project timelines and developer workflows. Effective communication is essential, as engineers must clearly explain vulnerabilities and remediation steps to developers who may have varying levels of security expertise. Additionally, they need to ensure that security recommendations are practical and align with the product's architecture, all while fostering a collaborative environment rather than creating bottlenecks. Building strong relationships with development teams and understanding their processes helps streamline secure code adoption and continuous improvement.

What is the difference between Product Security Code Review Engineer vs Software Security Engineer?

AspectProduct Security Code Review EngineerSoftware Security Engineer
Primary FocusReviewing and analyzing source code for security vulnerabilities in productsDesigning and implementing security measures across software systems
Skills & CertificationsSecure coding, code review, security standards (e.g., OWASP), certifications like CSSLPSecurity architecture, threat modeling, secure coding, certifications like CISSP
Work EnvironmentCollaborates with development teams during product developmentWorks on system-wide security strategies and architecture
Industry UsageCommon in product-based companies, especially in tech and cybersecurityFound in organizations focusing on overall security infrastructure

While both roles focus on security, the Product Security Code Review Engineer primarily reviews source code for vulnerabilities in specific products, whereas the Software Security Engineer develops and implements security strategies across software systems. The roles often overlap but differ in scope and focus.

What are popular job titles related to Product Security Code Review Engineer jobs in Anaheim, CA?

For Product Security Code Review Engineer jobs in Anaheim, CA, the most frequently searched job titles are:

What job categories do people searching Product Security Code Review Engineer jobs in Anaheim, CA look for?

The top searched job categories for Product Security Code Review Engineer jobs in Anaheim, CA are:

What cities near Anaheim, CA are hiring for Product Security Code Review Engineer jobs?

Cities near Anaheim, CA with the most Product Security Code Review Engineer job openings:

Staff Product Security Engineer

SOHO Square Solutions

Irvine, CA • On-site

Other

Posted 4 days ago


Job description

Remote position only California based candidates.

Key Responsibilities:

  • Own Product Security Lifecycle – Security requirements, threat modeling, risk assessments, security testing, and security documentation.
  • Perform Threat Modeling – Analyze trust boundaries, data flows, attack surfaces, and abuse/misuse cases.
  • Security Architecture – Design security controls for devices, applications, APIs, and cloud environments.
  • Secure SDLC / DevSecOps – Implement SAST, SCA, secrets scanning, container/IaC scanning, and security gates.
  • AI Security & Development – Build/develop GenAI, Agentic AI skills, agents, and services and integrate them into product development.
  • Application/API Security – Hands-on with OAuth2/OIDC, authorization, IDOR, SSRF, session security, and API vulnerabilities.
  • Secure Code Review – Manually review production code and triage/tune SAST findings.
  • SBOM & Vulnerability Management – Manage SBOMs, VEX, dependency risks, vulnerabilities, and remediation SLAs.
  • Medical Device Compliance – Support FDA cybersecurity submissions, risk assessments, SBOMs, and audit documentation.

Required Qualifications:

  • 5+ years of cybersecurity/product security engineering experience.
  • Strong Product Security / Secure SDLC experience, including threat modeling, risk assessment, security requirements, and security design reviews.
  • Hands-on security experience across embedded/medical devices + cloud + application/API security.
  • Experience with AI/GenAI/Agentic AI, including building or developing AI agents, skills, or services.
  • Strong secure code review skills and ability to triage/tune SAST/SCA findings.
  • Deep web/API security knowledge — OAuth2/OIDC, authorization/IDOR, SSRF, session management, API security, etc.
  • SBOM & vulnerability management experience, preferably SPDX/CycloneDX and VEX/CSAF/OpenVEX.
  • Experience with DevSecOps/security tools such as SAST, SCA, secrets scanning, container and IaC scanning.
  • Experience in regulated product development, ideally medical devices/FDA.
  • Knowledge of FDA cybersecurity requirements, ISO 14971 and IEC 62304 is highly valuable.