1

Product Security Code Review Engineer Jobs (NOW HIRING)

Work closely with development teams, conduct code reviews, perform AI Red Teaming assessments, to ... Perform threat modeling for AI-related products, such as chatbots, MCPs implementations, and ...

Mobility Application Security

Rancho Cordova, CA · On-site

$62.75 - $83.75/hr

... Code Review, Threat Assessment etc.) • Security Testing standards and checklist , 12+ Years of ... products • Experience with enterprise SSO and familiarity with OAuth, SAML, etc. is preferred.

The Senior Product Security Engineer is a highly skilled practitioner who drives hands-on security ... Lead manual and automated code review efforts to discover vulnerabilities, weaknesses, and anti ...

Senior Product Security Engineer

Santa Clara, CA · On-site

$134K - $184K/yr

As a Senior Product Security Engineer , you will play a pivotal role in ensuring the security and ... Development Support: Assist in product development efforts, including Security Code Reviews, to ...

Senior Product Security Engineer

Boston, MA · On-site

$124K - $170K/yr

We are seeking a Senior Product Security Engineer to join our Platform team. In this role, you will ... Identify security risks through architecture reviews, threat modeling, code review, and hands-on ...

... Engineering General Summary: Job function includes participation in product security incident ... industry - Secure code review, analysis and vulnerability assessment - Security testing, e.g ...

Senior Product Security Engineer

$117K - $160K/yr

... and review security-critical code across key parts of the product, including authentication and ... for the engineers • Drive mitigation during security-related incidents, working cross ...

Senior Application Security Engineer

Broomfield, CO · On-site

$59.25 - $79/hr

Programming Languages (Ruby, Go, Rust, JavaScript), Cloud Armor WAF, Static Application Security ... code reviews of new features and bug fixes Complete security assessments of new products, services ...

Security Engineer

San Francisco, CA · On-site

$150K - $250K/yr

... code review, and red teaming. * Identify vulnerabilities and work with engineering to drive resolution. * Monitor Corridor's production and IT systems, investigate anomalies, and respond to incidents.

The Security Engineer, Core Command will collaborate with the engineering team to perform threat ... You will sometimes write production Python/Go code, security peer review code, build proofs of ...

Own and review security-critical code across key parts of the product, including authentication and ... Mentor engineers and raise the security bar across teams through code reviews, design reviews, and ...

next page

Showing results 1-20

Product Security Code Review Engineer information

See salary details

$53K

$144.1K

$205K

How much do product security code review engineer jobs pay per year?

As of Jun 27, 2026, the average yearly pay for product security code review engineer in the United States is $144,072.00, according to ZipRecruiter salary data. Most workers in this role earn between $88,000.00 and $205,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Product Security Code Review Engineer, and why are they important?

To thrive as a Product Security Code Review Engineer, you need a deep understanding of secure coding practices, software development lifecycles, and vulnerability assessment, typically backed by a degree in computer science or a related field. Familiarity with static and dynamic analysis tools, code review platforms, and certifications like CISSP or OSCP is highly valuable. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for explaining security findings and collaborating with development teams. These skills and qualities are vital to identify, communicate, and mitigate security risks in code, ensuring the overall resilience of software products.

What are some typical challenges faced by Product Security Code Review Engineers when coordinating with development teams?

Product Security Code Review Engineers often encounter challenges in balancing security priorities with project timelines and developer workflows. Effective communication is essential, as engineers must clearly explain vulnerabilities and remediation steps to developers who may have varying levels of security expertise. Additionally, they need to ensure that security recommendations are practical and align with the product's architecture, all while fostering a collaborative environment rather than creating bottlenecks. Building strong relationships with development teams and understanding their processes helps streamline secure code adoption and continuous improvement.

What is the difference between Product Security Code Review Engineer vs Software Security Engineer?

AspectProduct Security Code Review EngineerSoftware Security Engineer
Primary FocusReviewing and analyzing source code for security vulnerabilities in productsDesigning and implementing security measures across software systems
Skills & CertificationsSecure coding, code review, security standards (e.g., OWASP), certifications like CSSLPSecurity architecture, threat modeling, secure coding, certifications like CISSP
Work EnvironmentCollaborates with development teams during product developmentWorks on system-wide security strategies and architecture
Industry UsageCommon in product-based companies, especially in tech and cybersecurityFound in organizations focusing on overall security infrastructure

While both roles focus on security, the Product Security Code Review Engineer primarily reviews source code for vulnerabilities in specific products, whereas the Software Security Engineer develops and implements security strategies across software systems. The roles often overlap but differ in scope and focus.

What is a Product Security Code Review Engineer?

A Product Security Code Review Engineer is a cybersecurity professional responsible for analyzing and reviewing application source code to identify and mitigate security vulnerabilities. They work closely with development teams to ensure secure coding practices, review code for compliance with security standards, and recommend fixes for potential security issues. Their goal is to prevent security breaches by catching vulnerabilities early in the software development lifecycle.
More about Product Security Code Review Engineer jobs
What cities are hiring for Product Security Code Review Engineer jobs? Cities with the most Product Security Code Review Engineer job openings:
What states have the most Product Security Code Review Engineer jobs? States with the most job openings for Product Security Code Review Engineer jobs include:
What job categories do people searching Product Security Code Review Engineer jobs look for? The top searched job categories for Product Security Code Review Engineer jobs are:
QA Automation and Security Test Architect

QA Automation and Security Test Architect

Intelliswift

Pleasanton, CA • On-site

Other

Posted 28 days ago


Job description

Job ID: 21-14390
Top must haves are:
• 5+ years of experience as Automation Architect and doing web application security testing as per OWASP standards
• 5+ years of experience designing, developing and executing Automation Scripts using Selenium
• Ability to provide application security risk assessment of technologies stack used in cloud or web applications.
TECHNICAL KNOWLEDGE AND SKILLS:
• 5+ years of experience as an Automation Architect and doing web application security testing as per OWASP standards
• 5+ years of experience designing, developing and executing Automation Scripts using Selenium
• Knowledge and experience in other Automation tools (like QTP, Rational Robot, AutoIT)
• Understanding and working knowledge with Data Driven, Keyword Driven and Hybrid frameworks
• Knowledge of Defect Management Tool (Quality Center, JIRA)
• Exploit application security flaws and vulnerabilities with attack simulations on multiple projects working against specific client-focused scopes of work.
• Ability to provide application security risk assessment of technologies stack used in cloud or web applications.
• Ability to perform application vulnerability assessments or application penetration testing, utilizing tools commercial and open source tools.
• Perform, review and analyze security vulnerability data to identify applicability and false positives.
• Create risk based security code reviews (Static, Dynamic and Interactive).
• Conduct application security testing in line with OWASP (Open Web application Security Project)
• Mentor junior engineers to build their skills and contribution levels
• Write technical reports that include suggested resolution for identified problem areas and perform operational risk assessment.
• Perform Proof of Concept testing and do evaluation of new security technologies and tools.
• Assist and support Security Test Analysts as they perform vulnerability, network and network security assessments.
• Experience DevOps tools like DynaTrace, Chef, Splunk and Vagrant.
• Experience with scripting languages (e.g. python, PERL, SQL) a plus
• Ability to perform below tasks:
o Dynamic Application Security Testing (DAST)
o Static Application Security Testing (SAST)
o Interactive Application Security Testing (IAST)
o Web Application Penetration Testing
o Product Security Testing
o Cloud Application Security Testing
o Web Services Security Testing
o Security Code Review
o Network Security Assessment
• Application Security Testing Tools: VeraCode, Synopsys, Contrast IAST, Burp Suite, Tamper Data, Live http Headers, Client Fortify, VeraCode, OWASP Top 10, N-Stealth, Hailstorm, Paros, SANS Top 20, Acunetix, Nessus
• Fast learning, problem solving and analytical skills
• Excellent communication, presentation, and interpersonal skills
• Track record of good time management
• Efficient in effort estimation, planning and prioritization
• Ability to understand Business Requirements and transform them to functional units
• Knowledge of SDLC and implementation
• Knowledge of SoapUI
• Proficiency in Java language
• Proficiency in SQL


Intelliswift logo

About Intelliswift

Sourced by ZipRecruiter

Intelliswift is consumed with the love for the new. Once a leading staffing company, Intelliswift now possesses the expertise to build data-rich modern platforms, and to create sophisticated systems for data management and analytics for thinking and connected enterprises. We are a global leader in delivering Digital Product Engineering, Data Management & Analytics, Cloud, Digital Enterprise and MSP/VMS staffing solutions. Led by a team of highly passionate and techno-centric innovators, we consciously embed the spirit of loving and embracing everything new in what we do. We ardently believe that companies that Love the New are at an advantage of being ahead of the curve in this age of digital.

Industry

It services

Company size

1,001 - 5,000 Employees

Headquarters location

Newark, CA, US

Year founded

2001