2

Remote Product Security Engineer Jobs in Boston, MA

Sr. Product Security Engineer II

Burlington, MA ยท Remote

$124K - $170K/yr

The Senior Product Security Engineer, based in Burlington Massachusetts, is a critical, high-level ... Establish technical standards for account management, privilege management, remote access/service ...

Sr. Product Security Engineer II

Burlington, MA ยท Remote

$124K - $170K/yr

The Senior Product Security Engineer, based in Burlington Massachusetts, is a critical, high-level ... Establish technical standards for account management, privilege management, remote access/service ...

... Product Security Engineer . The role can be remote-based or located onsite in Danvers, MA or Raritan, NJ. This role will require up to 10% travel. Are you passionate about security and interested in ...

... Product Security Engineer to be located in Danvers, MA. Remote work options may be considered on a case-by-case basis and if approved by the Company. This role will require up to 10%-20% travel. Are ...

Senior Cybersecurity Engineer

Boston, MA ยท Remote

$165K - $185K/yr

This is a remote role, with East Coast hours preferred. About You You are a pragmatic technical ... Improve Indico's technical security posture across AWS, Kubernetes, CI/CD, product security ...

Associate Security Engineer (Remote)

Boston, MA ยท On-site +1

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

You'll contribute across product security, vulnerability management, data protection, AI security ... Partner with Engineering and IT * Support security reviews, architecture discussions, threat ...

New

Senior Security Engineer

Boston, MA ยท On-site +1

$124K - $170K/yr

Senior Security Engineer Remote, United States About this position: We're looking for a Senior ... You'll partner closely with teams across Engineering, Infrastructure, Product, IT, Legal, People ...

Information Security Engineer

Andover, MA ยท On-site +1

$150K - $180K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Information Security Engineer Location ... Hybrid role based in Andover, MA with flexibility for remote work. Fast-paced, collaborative ...

Senior AI Security Engineer

Boston, MA ยท On-site +1

$124K - $170K/yr

The Senior AI Security Engineer, under the direction of the Director, Security Engineering and ... production environments * Hands-on familiarity with the Model Context Protocol (MCP) - including ...

Cloud Security Engineer

Boston, MA ยท Remote

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

This role is remote with the expectation that candidates are based near one of the following Voya ... This role will partner closely with Cloud,DevSecOps, Application Security, and Platform Engineering ...

Security Engineer - Corporate Security

Boston, MA ยท On-site +1

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

... security performance, digital supply chains, cyber insurance, and data analysis. * We invented the ... Singapore, and remote We are looking for a skilled and passionate Cybersecurity Engineer to ...

next page

Showing results 1-20

Remote Product Security Engineer information

See Boston, MA salary details

$57.6K

$156.5K

$222.7K

How much do remote product security engineer jobs pay per year?

As of Aug 13, 2026, the average yearly pay for remote product security engineer in Boston, MA is $156,520.00, according to ZipRecruiter salary data. Most workers in this role earn between $95,600.00 and $222,700.00 per year, depending on experience, location, and employer.

What is a remote product security engineer?

Remote Product Security Engineers are professionals responsible for ensuring the security of a company's software products while working from a remote location. They identify and mitigate security risks, conduct vulnerability assessments, and collaborate with development teams to implement security best practices throughout the product lifecycle. Their goal is to protect applications and user data from potential threats, often using a combination of automated tools and manual analysis. Working remotely, they utilize communication and collaboration tools to stay connected with team members and stakeholders.

What are the key skills and qualifications needed to thrive as a remote product security engineer, and why are they important?

To thrive as a Remote Product Security Engineer, you need a strong background in cybersecurity, software development, and risk assessment, usually supported by a relevant degree or equivalent experience. Familiarity with security tools such as static and dynamic analysis scanners, vulnerability management systems, and certifications like CISSP or OSCP is often required. Excellent problem-solving, communication, and collaboration skills set top candidates apart, especially in remote and cross-functional team environments. These skills and qualities are crucial to proactively identify, address, and communicate security risks, ensuring that products remain secure throughout their lifecycle.

How does a remote product security engineer typically collaborate with development teams to ensure secure software delivery?

As a Remote Product Security Engineer, you'll frequently work alongside development teams through virtual meetings, code reviews, and secure design consultations. Your role involves proactively identifying security risks, advising on best practices, and helping to integrate security tools into the CI/CD pipeline. Effective communication and documentation skills are essential, as you'll often translate technical security requirements into actionable steps for developers. While remote, you'll leverage collaboration platforms and asynchronous communication to stay closely aligned with cross-functional teams and ensure security is embedded throughout the product lifecycle.
What are popular job titles related to Remote Product Security Engineer jobs in Boston, MA? For Remote Product Security Engineer jobs in Boston, MA, the most frequently searched job titles are:
What job categories do people searching Remote Product Security Engineer jobs in Boston, MA look for? The top searched job categories for Remote Product Security Engineer jobs in Boston, MA are:
What cities near Boston, MA are hiring for Remote Product Security Engineer jobs? Cities near Boston, MA with the most Remote Product Security Engineer job openings:

Sr. Product Security Engineer II

Glaukos

Burlington, MA โ€ข Remote

$124K - $170K/yr

Full-time

Re-posted 29 days ago


Job description

What You'll Do:ย 

The Senior Product Security Engineer, based in Burlington Massachusetts, is a critical, high-level engineering position responsible for designing, implementing, and validating cybersecurity controls across the full medical device product lifecycle. This role is hands-on and technical, working directly with firmware, software, and system engineering teams to ensure our Windows and Linux based devices are secure by default and maintainable in the field. The role provides technical leadership on architecture, hardening, secure development practices, and vulnerability remediation to meet FDA cybersecurity expectations and industry best practices.

Security Architecture and Secure-by-Design Engineering

  • Define and drive implementation of technical security requirements and risk mitigations for new products and features.
  • Create and maintain security architecture diagrams and models, including trust boundaries, data flows, and security control placement.
  • Lead threat modeling for device features and connectivity use cases (local, network, cloud, removable media, service interfaces).
  • Specify and review security control designs for authentication/authorization, secure communications, cryptographic key handling, secure logging, secure storage, and secure update mechanisms.
  • Embed secure development practices into the engineering lifecycle: threat modeling, secure design reviews, secure coding, peer review criteria, and security gates for releases.
  • Work with IEC 81001-5-1 standardย 

Platform Hardening (Windows and Linux Devices)

  • Partner with engineering teams to implement OS and application hardening measures, such as least privilege, service isolation, secure boot, host firewalling, and endpoint logging.
  • Establish technical standards for account management, privilege management, remote access/service modes, and secure debug/manufacturing workflows.

Firmware and Software Security Engineering

  • Work with firmware teams to improve security of embedded components, device interfaces, and update flows (signed firmware, integrity verification, rollback considerations).
  • Work with software teams to implement secure coding practices and standards.
  • Collaborate with QA to integrate automated security testing into regression and release pipelines.
  • Generate and maintain technical security artifacts used for FDA-aligned submissions and internal design controls.
  • Maintain records of vulnerability assessments, mitigations, and patch processes.ย 
  • Support audit and inspection readiness with thorough, traceable documentation.

Documentation and Evidence

  • Generate and maintain technical security artifacts used for FDA-aligned submissions and internal design controls.
  • Maintain records of vulnerability assessments, mitigations, and patch processes.ย 
  • Support audit and inspection readiness with thorough, traceable documentation.

Vulnerability & Incident Managementย 

  • Lead vulnerability assessment and mitigation activities for product software, firmware, OS components, and third-party libraries.
  • Coordinate cross-functional response to newly discovered vulnerabilities, including communication, remediation, and regulatory reporting.ย 
  • Track and monitor vulnerability disclosures from third-party libraries and components.ย 

Core Product Security Knowledgeย 

  • Secure system and software design principles (least privilege, defense in depth, threat modeling, zero trust).ย 
  • Risk management frameworks:ย NIST 800-53, NIST 800-30, ISO 27001, ISO 14971, andย IEC 81001-5-1.ย 
  • Cryptography fundamentals (key management, TLS, symmetric/asymmetric encryption, hashing).ย 
  • Authentication and authorization mechanisms, identity management, and secure session handling.ย Secure coding standards (e.g.,ย CERT C/C++,ย OWASP,ย MISRA,ย CWE/SANS Top 25).ย Supply chain security concepts andย SBOM management (SPDX, CycloneDX).ย 

DevOps & Infrastructure Knowledgeย 

  • CI/CD security practices, secrets management, container security (Docker, Podman), and artifact signing.ย 
  • Common security testing tools:ย SAST, DAST, SCA, fuzzers, and pen-testing frameworks.ย 
  • Familiarity with cloud infrastructure (AWS, or on-prem Linux environments).ย 
  • Incident response and vulnerability disclosure processes.ย 

Regulatory & Documentation Knowledgeย 

  • Familiarity with FDA cybersecurity premarket and postmarket expectations as they relate to technical controls and objective evidence.
  • Secure update/patch management strategies (aligned with FDA "updateability & patchability" expectations).ย 
  • Audit-ready documentation practices and traceability to design controls.ย 

Cross-Functional Leadershipย 

  • Act as the security subject matter expert across product teams.ย 
  • Provide training and mentoring to engineers on secure design and coding practices.ย 
  • Partner with compliance, regulatory, and quality teams to align product security strategy with organizational goals

How You'll Get There:ย 

  • 7-10 years total professional experience in software engineering, cybersecurity, or related technical fields.ย 
  • 3-5 years focused on product or embedded system security, ideally within regulated or safety-critical industries (medical device, aerospace, automotive, or defense).ย 
  • Demonstrated experience with:ย 
    • Designing or assessing security architectures for embedded or connected systems.ย 
    • Implementing secure development lifecycle (SDL) practices within engineering teams.ย 
    • Leading or participating in vulnerability management and coordinated disclosure processes.ย 
    • Collaborating cross-functionally (engineering, QA, regulatory, IT) toย 
    • IEC 81001-5-1 standardย 
  • Bachelor's degree inย Computer Science, Electrical/Computer Engineering, Cybersecurity, or a related field.ย 
  • Prior experience as aย product security leadย orย security point of contactย for a commercial medical or industrial product.ย 
  • Experience integratingย security testing automationย into CI/CD environments.ย 
  • Experience supportingย external audits, penetration tests, or third-party security assessments.ย 
  • Knowledge and experience with IEC 81001-5-1 standardย 

Preferredย 

  • Master's degree inย Cybersecurity, Software Engineering, or Systems Engineeringย (ideal for regulated product security leadership).ย 
    ย 
#GKOSUS

Generous. Innovative. Leadership-driven. Family-oriented. Socially responsible.ย 

Founded in 1998, Glaukos Corporation is an ophthalmic pharmaceutical and medical technology company focused on developing and commercializing novel therapies for the treatment of glaucoma, corneal disorders, and retinal diseases.

Our mission at Glaukos is to truly transform vision by pioneering novel, dropless therapies that can meaningfully advance the standard of care and improve the lives of patients suffering from chronic, sight-threatening eye diseases.ย 

Innovation is at the core of everything we do, and we are resolute in our commitment to challenge conventional thinking with new treatment alternatives that are supported by real science, robust clinical evidence, and an unrelenting focus on patients.ย 

Our constant pursuit of game-changing technologies that disrupt legacy treatment paradigms is encapsulated in the Glaukos mantra "We'll Go First," which articulates our willingness to take chances, our determination to forge new ground, and our commitment to continuous improvement in all that we do.ย ย ย 

Our company completed an initial public offering in June of 2015, and our shares are traded on the New York Stock Exchange under the ticker symbol "GKOS". Our global headquarters is in Aliso Viejo, California with additional locations in San Clemente, California, and Burlington, Massachusetts.

Glaukos Corporation is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex including sexual orientation and gender identity, national origin, disability, protected Veteran Status, or any other characteristic protected by applicable federal, state, or local law.ย 


All offers of employment are contingent upon the successful completion of a background check, including successfully passing a drug screen, based on the position and local regulations.