1

Product Security Engineer Jobs (NOW HIRING)

Staff Product Security Engineer

Bellevue, WA · On-site

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

The Staff Product Security Engineer Opportunity The Security team's mission is to strengthen Okta's position as the leading Identity-as-a-service solutions provider by identifying and resolving risks ...

Senior Product Security Engineer

Framingham, MA · On-site

$117K - $161K/yr

  • Medical

  • Retirement

We are seeking for a Security Engineer to support the security initiatives for our consumer electronics products. You will play a central role in product security, and have the ability to improve the ...

Senior Product Security Engineer

Framingham, MA

$117K - $161K/yr

  • Medical

  • Retirement

We are seeking for a Security Engineer tosupport the security initiatives for our consumer electronics products. You will play a central role in product security, and have the ability to improve the ...

Product Security Engineer

Boston, MA · On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Job Summary We are seeking a Product Security Engineer with strong networking expertise to secure our fleet of autonomous vessels and supporting infrastructure. This role owns vulnerability ...

Senior Product Security Engineer

Mettawa, IL

$118K - $174K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

As a Senior Product Security Engineer, you will serve as a technical leader and trusted advisor responsible for maturing product security capabilities, improving secure development practices, and ...

New

Senior Product Security Engineer

Mettawa, IL · On-site

$118K - $174K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

  • PTO

As a Senior Product Security Engineer, you will serve as a technical leader and trusted advisor responsible for maturing product security capabilities, improving secure development practices, and ...

Product Security Engineer

New York, NY · On-site

$248K - $282K/yr

We're hiring a hands-on (Senior) Product Security Engineer to design, build, and harden the secure architecture at the core of the product, working as a technical partner to our Core engineering lead.

Product Security Engineer

Boston, MA · On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Job Summary We are seeking a Product Security Engineer with strong networking expertise to secure our fleet of autonomous vessels and supporting infrastructure. This role owns vulnerability ...

About The Role We're looking for a hands-on staff security engineer to play a key role in building Rippling's Product Security program. Rippling's product's scope provides a unique set of security ...

Hologic, Inc. is dedicated to enabling healthier lives everywhere, every day, and is seeking a Product Security Engineer to join their DevSecOps Engineering Center of Excellence. The role involves ...

OR · On-site

$114K - $156K/yr

The Senior Product Security Engineer is a highly skilled practitioner who drives hands-on security work across the Harness platform. You will own technical security initiatives end-to-end, partner ...

Showing results 41-60

Product Security Engineer information

See salary details

$53K

$144.1K

$205K

How much do product security engineer jobs pay per year?

As of Aug 14, 2026, the average yearly pay for product security engineer in the United States is $144,072.00, according to ZipRecruiter salary data. Most workers in this role earn between $88,000.00 and $205,000.00 per year, depending on experience, location, and employer.

What are the typical day-to-day responsibilities of a product security engineer?

As a Product Security Engineer, your daily responsibilities often include assessing software designs for vulnerabilities, conducting code reviews, analyzing security risks, and supporting product teams in implementing secure coding best practices. You may also develop automated security testing solutions, coordinate with developers to resolve discovered issues, and stay updated on the latest security trends impacting your industry. Additionally, you’ll frequently collaborate with cross-functional teams such as developers, DevOps, and quality assurance to drive a culture of security from the earliest stages of product development. Expect a blend of hands-on technical work and consultative guidance that ensures products remain secure at every phase of development.

What is a product security engineer?

A Product Security Engineer is responsible for ensuring the security of a company's software, hardware, or products throughout their development and lifecycle. They identify vulnerabilities, conduct security assessments, and collaborate with development teams to implement best practices. Their role includes threat modeling, code reviews, penetration testing, and incident response. By integrating security into the product development process, they help protect against cyber threats and ensure compliance with industry standards.

What are the key skills and qualifications needed to thrive in the product security engineer position, and why are they important?

To thrive as a Product Security Engineer, you need strong knowledge of application security principles, software development, threat modeling, and vulnerability management, often supported by a degree in computer science or a related field. Familiarity with tools like static/dynamic code analysis tools, penetration testing frameworks, and certifications such as CISSP, CEH, or OSCP is common. Excellent problem-solving abilities, attention to detail, and strong communication skills help navigate complex projects and collaborate across teams. These abilities ensure the security and reliability of products throughout the development lifecycle, protecting both users and organizations from evolving threats.

More about Product Security Engineer jobs

What cities are hiring for Product Security Engineer jobs?

Cities with the most Product Security Engineer job openings:

What are the most commonly searched types of Product Security Engineer jobs?

The most popular types of Product Security Engineer jobs are:

What states have the most Product Security Engineer jobs?

States with the most job openings for Product Security Engineer jobs include:

Infographic showing various Product Security Engineer job openings in the United States as of August 2026, with employment types broken down into 80% Full Time, 16% Part Time, 3% Contract, and 1% Nights. Highlights an 91% Physical, 2% Hybrid, and 7% Remote job distribution, with an average salary of $144,072 per year, or $69.3 per hour.

Staff Product Security Engineer

Okta

Bellevue, WA • On-site

Full-time

Medical, Dental, Vision, Retirement, PTO

Re-posted 9 days ago


Okta rating

9.8

Company rating: 9.8 out of 10

Based on 5 frontline employees who took The Breakroom Quiz

3rd of 244 rated software companies


Job description

Secure Every Identity, from AI to HumanIdentity is the key to unlocking the potential of AI. Okta secures AI by building the trusted, neutral infrastructure that enables organizations to safely embrace this new era. This work requires a relentless drive to solve complex challenges with real-world stakes. We are looking for builders and owners who operate with speed and urgency and execute with excellence.
This is an opportunity to do career-defining work. We're all in on this mission. If you are too, let's talk.
The Security Team
Okta is The World's Identity Company. We free everyone to safely use any technology-anywhere, on any device or app. Our Workforce and Customer Identity Clouds enable secure yet flexible access, authentication, and automation that transform how people move through the digital world, putting Identity at the heart of business security and growth.
At Okta, we celebrate a variety of perspectives and experiences. We are not looking for someone who checks every box-we're looking for lifelong learners and people who can improve us with their unique experiences.
Join our team! We're building a world where Identity belongs to you.
The Staff Product Security Engineer Opportunity
The Security team's mission is to strengthen Okta's position as the leading Identity-as-a-service solutions provider by identifying and resolving risks to employees, products, and, most importantly, our customers.
The Staff AI Product Security Engineer joins a team with a clear mission: to shape the future of application security by researching and building systems that prove how AI can fundamentally augment, automate, and scale defense. This is a hybrid research, offensive and software engineering role centered on leveraging AI to uncover vulnerabilities, automate root cause analysis, automate exploitation, and generate secure code patches at cloud scale.
This role is built for engineers who want to push the limits of what AI can do for security, from benchmarking SOTA frontier models and fine-tuning open-weight models to building production-grade security tooling across Product Security. While a main focus will be on creating intelligent, automated security capabilities that keep Okta continuously ahead of emerging threats, performing full security reviews of Okta's products, as well as agentic architectures and internal AI pipelines, to uncover, exploit and fix vulnerabilities is also part of the work.
The ideal candidate thinks creatively but also like an attacker, builds like an engineer, and publishes their findings. We actively support external research disclosure through white papers, blog posts, and conference presentations.
What You Will Do
  • Lead technical capability research evaluating frontier LLMs and customized open-weight models for advanced code analysis, autonomous attack and logical security reasoning.
  • Engineer production-grade, AI-assisted security tools that automate vulnerability discovery, triaging, and risk validation across codebases.
  • Architect context-aware code-repair engines that automatically recommend verified security fixes to software development teams.
  • Build automated Proof-of-Concept (PoC) exploit generators in sandboxed runtimes to safely perform root cause analysis on identified vulnerabilities.
  • Modify and fine-tune open-source models to carry out domain-specific defensive and offensive code analysis tasks.
  • Embed AI models, unified APIs, and model-agnostic execution frameworks across Product Security tools to multiply team capabilities.
  • Assess and secure internal AI platforms, agentic execution runtimes, and AI coding agent container environments.
  • Perform manual code review and AI-assisted deep dives of Okta's products and system implementations across multiple languages.
  • Develop threat models for agentic architectures, orchestration layers, and LLM-integrated services.
  • Deliver technical reference blueprints and publish external research demonstrating how AI models transform modern security engineering.
  • Run the AI security vendor and tooling evaluation program: design and operate a benchmarking harness against AI security tools.
  • Conduct offensive security research focused on agentic AI systems: prompt injection, agent privilege escalation, tool-binding abuse, and agentic supply chain attacks against internal developer platforms.
  • Translate research findings into actionable guidance for engineering teams building AI-powered features and platforms.

What You Bring
  • 8+ years of experience in information security, with meaningful depth in application security, offensive research, or AI/ML security.
  • Experience building security tooling and automation (scripts, scanners, detection logic, or evaluation harnesses) that other engineers actually use.
  • Strong offensive mindset: the ability to model what an adversary does to break systems and how this translates to an agentic system, identify where the model's reasoning or the orchestration layer breaks down, and construct scenarios that make the risk concrete.
  • Demonstrated hands-on experience assessing LLM-integrated systems and agentic AI architectures, not just familiarity with the concepts, but evidence of having found real vulnerabilities in them.
  • Proficiency in at least two programming languages (Python and one of: Go, Java, TypeScript, C/C++).
  • Advanced experience in threat modeling, manual code review, and penetration testing, applied to complex distributed systems.
  • Knowledge of authentication and authorization protocols (OIDC, OAuth 2.0, SAML) and their implementation risks.
  • Strong communication skills: the ability to write clearly for technical and non-technical audiences, document research findings with precision, and present at external venues.
  • Experience producing external security research, publications, conference talks, blog posts, or open-source tooling.

Desired Skills and Abilities
  • Experience in vulnerability research and vulnerability discovery through source code auditing, as well as penetration testing skills.
  • Familiarity with agentic framework internals (tool-use protocols, MCP, function-calling patterns, agent orchestration architectures).
  • Experience with SAST, DAST, SCA, and fuzzing tooling applied to AI/ML pipelines or CI/CD systems.
  • Strong cryptographic knowledge and experience in identifying cryptographic implementation flaws.
  • Ability to develop proof-of-concept exploits that demonstrate vulnerabilities to engineering and product leadership. Plus, if able to exploit AI/Agentic-specific vulnerabilities
  • Experience contributing to security standards, SDL processes, or vulnerability research programs.

#LI-SM1
#LI-Hybrid
#LI-Remote
P25264_3461996
The annual base salary range for this position for candidates located in the San Francisco Bay area is between:
$180,000-$247,000 USD
Below is the annual base salary range for candidates located in California (excluding San Francisco Bay Area), Colorado, Illinois, New York and Washington. Your actual base salary will depend on factors such as your skills, qualifications, experience, and work location. In addition, Okta offers equity (where applicable), bonus, and benefits, including health, dental and vision insurance, 401(k), flexible spending account, and paid leave (including PTO and parental leave) in accordance with our applicable plans and policies. To learn more about our Total Rewards program please visit: https://rewards.okta.com/us.
The annual base salary range for this position for candidates located in California (excluding San Francisco Bay Area), Colorado, Illinois, New York, and Washington is between:
$161,000-$221,000 USD
The Okta Experience
  • Supporting Your Well-Being
  • Driving Social Impact
  • Developing Talent and Fostering Connection + Community

We are intentional about connection. Our global community, spanning over 20 offices worldwide, is united by a drive to innovate. Your journey begins with an immersive, in-person onboarding experience designed to accelerate your impact and connect you to our mission and team from day one.
Okta is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, marital status, age, physical or mental disability, or status as a protected veteran. We also consider for employment qualified applicants with arrest and convictions records, consistent with applicable laws.
If reasonable accommodation is needed to complete any part of the job application, interview process, or onboarding please use this Form to request an accommodation.
Notice for New York City Applicants & Employees: Okta may use Automated Employment Decision Tools (AEDT), as defined by New York City Local Law 144, that use artificial intelligence, machine learning, or other automated processes to assist in our recruitment and hiring process. In accordance with NYC Local Law 144, if you are an applicant or employee residing in New York City, please click here to view our full NYC AEDT Notice.

What Okta employees say

Pay

Hours and flexibility

Workplace

Get the full story on Breakroom