2

Remote Product Security Engineer Jobs in Washington

Senior Network Security Engineer

Suitland, MD ยท Remote

$63 - $82.50/hr

We are seeking a Senior Network Security Engineer for an operations-first role supporting ... and production support. * VPN / remote access: support for remote-access VPN, site-to-site VPN ...

Remote (Quantico, VA and other areas within DMV) Duration: Long Term Contract Required skills/Level of Experience: * Active TS w/ SCI eligibility * 10+ years in cybersecurity engineering or security ...

Hybrid Columbia MD 3 times a week OR Remote (as applicable to role) Work Authorization Requirements ... The Security Engineer works closely with the ISSO and other security stakeholders to ensure ...

Remote status is subject to change at the customer's direction. This position requires a Public ... Microsoft Excel and other MS Office Products * Able to deliver and present vulnerability analysis ...

Network Security Engineer

Annapolis, MD ยท Remote

$107K - $146K/yr

... network security products. 8. Working with the engineering team to successfully implement ... Two (2) days remote at a suitable off-site location selected by the Resource. (1) We reserve the ...

This position is based in Washington, DC and may require a combination of on-site and remote support depending on program needs. Position Description: Ardent is seeking a Web Developer Security ...

next page

Showing results 1-20

Remote Product Security Engineer information

What is a remote product security engineer?

Remote Product Security Engineers are professionals responsible for ensuring the security of a company's software products while working from a remote location. They identify and mitigate security risks, conduct vulnerability assessments, and collaborate with development teams to implement security best practices throughout the product lifecycle. Their goal is to protect applications and user data from potential threats, often using a combination of automated tools and manual analysis. Working remotely, they utilize communication and collaboration tools to stay connected with team members and stakeholders.

What are the key skills and qualifications needed to thrive as a remote product security engineer, and why are they important?

To thrive as a Remote Product Security Engineer, you need a strong background in cybersecurity, software development, and risk assessment, usually supported by a relevant degree or equivalent experience. Familiarity with security tools such as static and dynamic analysis scanners, vulnerability management systems, and certifications like CISSP or OSCP is often required. Excellent problem-solving, communication, and collaboration skills set top candidates apart, especially in remote and cross-functional team environments. These skills and qualities are crucial to proactively identify, address, and communicate security risks, ensuring that products remain secure throughout their lifecycle.

How does a remote product security engineer typically collaborate with development teams to ensure secure software delivery?

As a Remote Product Security Engineer, you'll frequently work alongside development teams through virtual meetings, code reviews, and secure design consultations. Your role involves proactively identifying security risks, advising on best practices, and helping to integrate security tools into the CI/CD pipeline. Effective communication and documentation skills are essential, as you'll often translate technical security requirements into actionable steps for developers. While remote, you'll leverage collaboration platforms and asynchronous communication to stay closely aligned with cross-functional teams and ensure security is embedded throughout the product lifecycle.
What are the most commonly searched types of Product Security Engineer jobs in Washington? The most popular types of Product Security Engineer jobs in Washington are:
What are popular job titles related to Remote Product Security Engineer jobs in Washington? For Remote Product Security Engineer jobs in Washington, the most frequently searched job titles are:
What job categories do people searching Remote Product Security Engineer jobs in Washington look for? The top searched job categories for Remote Product Security Engineer jobs in Washington are:
What cities in Washington are hiring for Remote Product Security Engineer jobs? Cities in Washington with the most Remote Product Security Engineer job openings:

Staff Product Security Engineer

Greenlight Financial Technology

Fort Washington, MD โ€ข Remote

Full-time

Re-posted 15 days ago


Job description

Greenlight is a family technology company on a mission to help families raise financially smart kids and navigate life together. Its suite of products — including the Greenlight app, debit card, Safe Family GPS trackers, and Family Hub — brings together financial tools, safety features, and everyday family management in one connected experience. Designed for busy families who want convenience without compromise, Greenlight continues to innovate alongside the evolving needs of modern life. Today, more than 6.5 million family members trust Greenlight to stay in sync.

At Greenlight, we're here to make the day-to-day easier and futures brighter, so families can spend less time managing life, and more time living it. That's why we get out of bed every morning.


We are seeking an experienced and motivated Staff Product Security Engineer to join our growing Security team. This individual will be responsible for the end-to-end security of our consumer products, digital platform and an emerging hardware device line. The Staff Product Security Engineer will drive security review, threat modeling programs, lead penetration testing, manage PSIRT operations, champion secure AI adoption and establish security guardrails for AI powered products and AI assisted development workflows within a highly regulated financial services environment.
 
This role reports to the Senior Manager of Product Security.
Your day-to-day:
  • Lead security architecture/design review and threat modeling sessions with product and engineering teams using STRIDE, PASTA and attack tree methodologies. 
  • Translate threats into actionable, risk-rated engineering remediations prioritized by severity.
  • Conduct hands-on penetration testing and security assessments across our full product stack producing actionable reports for engineering and leadership.
  • Red-Team our AI powered products and development tools to test for prompt injection, data exfiltration,  MCP server exploitation, and tool misuse. Probe AI guardrails to ensure they hold. Experience with product security tools such as Burp Suite, Metasploit, Kali Linux, Postman, etc.
  • Drive PSIRT Operations by triaging incoming vulnerability reports, leading technical investigations, coordinating remediation with engineering, scoring severity (CVSS), managing coordinated disclosure with external researchers and on-call incidents. This includes managing zero day findings, driving remediation, collaborating with engineering to patch or mitigate with compensating controls.
  • Shape the posture of our AI assisted development environment defining and enforcing enterprise policies for claude and cursor. 
  • Partner across the organization, sitting in design review with architects, advising product managers and engineering teams on security and compliance implications of new features, briefing executives on emerging AI threats, mentoring junior security engineers and collaborating with the AI team on securing ML pipelines.
  • Champion Security Culture by running developer training on secure coding with AI assistants, evangelizing security by design for products and ensuring every engineer understands that product security is an enabler and not a gate.
What you’ll bring to the team:
  • 10+ years of product security experience spanning application security, cloud security, and secure SDLC.  you will have full SDLC experience from design through development, deployment and incident response.
  • Expert level Threat Modeling using STRIDE, PASTA or equivalent across web, mobile, cloud, embedded and AI systems.
  • Hands-on penetration testing skills across applications, API, cloud infrastructure, and hardware/firmware. You think like an attacker and you can provide it through published research, CVE discoveries, bug bounty results or red-team engagements.
  • PSIRT operational experience from vulnerability intake and triage.  You are fluent in CVE, CVSS, FIRST PSIRT frameworks.
  • Deep hands down AI security expertise and expert level understanding of OWASP Top 10 for LLM, API, Web, Mobile and have practical experience with MITRE.
  • Strong hands-on experience in security tools SAST, DAST, SCA, and securing AI development tools specifically Claude and Cursor. 
  • You understand MCP security risks and know how to architect enterprise guardrails that enable safe AI-assisted development. You have defined policies for AI generated code, secrets scanning, and DLP for outbound AI traffic. 
  • Strong programming ability and capability to review code, build security tools, automate workflows and be credible with the engineering teams you partner with.
  • Deep technical knowledge of CI/CD pipeline and relevant tools for web and mobile applications.
  • Strong knowledge of programing language & frameworks (i.e. Node.js, Java/Kotlin, React, Redux, Swift, SwiftUI), cloud technologies and infrastructure (i.e. AWS, GCP, Kubernetes, Ambassador, Helm), and databases (i.e. MySQL, DynamoDB, Redis)
  • Ability to influence without authority, mentor without managing , and communicate complex risks in a language that resonates with engineers, product managers, legal and compliance and executives alike. 
Preferred experience:
  • Hardware and embedded security experience with knowledge of secure boot, firmware integrity, hardware root of trust, and IoT threat modeling experience.
  • Experience in the Financial industry, knowledge of PCI DSS, COPPA or demonstrated ability to learn regulated domains quickly.
Work perks at Greenlight:
  • Medical, dental, vision, and HSA match 
  • Paid life insurance, AD&D, and disability benefits 
  • Traditional 401k with company match
  • Unlimited PTO 
  • Paid company holidays and pop-up bonus holidays 
  • Professional development stipends
  • Mental health resources  
  • 1:1 financial planners
  • Fertility healthcare
  • 100% paid parental and caregiving leave, plus cleaning service and meals during your leave
  • Flexible WFH, both remote and in-office opportunities
  • Fully stocked kitchen, catered lunches, and occasional in-office happy hours
  • Employee resource groups
Our stance on salaries:
Greenlight provides a competitive compensation package with a market-based approach to pay and will vary depending on your location, experience and skill set. The total compensation package for this position will also include a discretionary performance bonus, equity rewards, medical benefits, 401K match, and more. Greenlight conducts continuous compensation evaluations across departments and geographies to ensure we are keeping our pay current and competitive.
 
The estimated base pay range for this position in (NY, CA, WA): $165,000-200,000
The estimated base pay range for this position in (CO): $165,000-185,000

Who we are:
It takes a talented team to aim for a mission like ours. We're looking for people who ask "is it bold enough?" People who bring their real selves to the table and push the people around them to do the same. We win by never hesitating to jump in, offer a hand, or share the credit, because we know we're stronger together than apart. And through all of it, the mission stays the thing we measure ourselves against: are we doing right by the families counting on us? If that sounds like your kind of team, we'd love for you to apply. 
 
Greenlight is an equal opportunity employer and will not discriminate against any employee or applicant based on age, race, color, national origin, gender, gender identity or expression, sexual orientation, religion, physical or mental disability, medical condition (including pregnancy, childbirth, or a medical condition related to pregnancy or childbirth), genetic information, marital status, veteran status, or any other characteristic protected by federal, state or local law.
 
Greenlight is committed to an inclusive work environment and interview experience. If you require reasonable accommodations to participate in our hiring process, please reach out to your recruiter directly or email accomodations@greenlight.me. 
 

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.