1

Staff Product Security Engineer Jobs (NOW HIRING)

Staff Product Security Engineer Rippling New York, New York, United States About the Role We're looking for a handsโ€‘on staff security engineer to play a key role in building Rippling's Product ...

Reddit is hiring a Staff Product Security Engineer to make the secure path the easiest path for engineers and AI agents. You'll lead the design and delivery of secure frameworks, paved paths, and ...

The Staff Product Security Engineer Opportunity The Security team's mission is to strengthen Okta's position as the leading Identity-as-a-service solutions provider by identifying and resolving risks ...

Remote, USA About the Role We're looking for a Staff Product Security Engineer to lead the design and implementation of secure, scalable, and trustworthy products spanning AI, data, and cloud-native ...

Staff Product Security Engineer

Boston, MA ยท On-site

$180 - $240/hr

DataRobot is seeking an experienced Staff Product Security Engineer to drive security innovation while ensuring our platform meets the rigorous demands of our Federal and Commercial customers. This ...

Primary Function of Position We are seeking a Staff Product Security engineer to join the software team within the Endoluminal business unit. The successful candidate in this role will serve as the ...

Primary Function of Position We are seeking a Staff Product Security engineer to join the software team within the Endoluminal business unit. The successful candidate in this role will serve as the ...

What you'll do As a Staff Product Security Engineer at Airwallex, you will be a trusted member of the Information Security team and work closely with Infrastructure, Product and Engineering teams ...

Remote, USA About the Role We're looking for a Staff Product Security Engineer to lead the design and implementation of secure, scalable, and trustworthy products spanning AI, data, and cloud-native ...

DataRobot is seeking an experienced Staff Product Security Engineer to drive security innovation while ensuring our platform meets the rigorous demands of our Federal and Commercial customers. This ...

$217 - $304/hr

Reddit is hiring a Staff Product Security Engineer to make the secure path the easiest path for engineers and AI agents. You'll lead the design and delivery of secure frameworks, paved paths, and ...

New

DataRobot is seeking an experienced Staff Product Security Engineer to drive security innovation while ensuring our platform meets the rigorous demands of our Federal and Commercial customers. This ...

DataRobot is seeking an experienced Staff Product Security Engineer to drive security innovation while ensuring our platform meets the rigorous demands of our Federal and Commercial customers. This ...

Reddit is hiring a Staff Product Security Engineer to make the secure path the easiest path for engineers and AI agents. You'll lead the design and delivery of secure frameworks, paved paths, and ...

next page

Showing results 1-20

Staff Product Security Engineer information

See salary details

$23K

$99.3K

$192.5K

How much do staff product security engineer jobs pay per year?

As of Sep 5, 2026, the average yearly pay for staff product security engineer in the United States is $99,330.00, according to ZipRecruiter salary data. Most workers in this role earn between $69,000.00 and $125,000.00 per year, depending on experience, location, and employer.

What does a staff product security engineer do?

A Staff Product Security Engineer is responsible for ensuring the security of software products throughout their development lifecycle. This role involves identifying and mitigating security vulnerabilities, designing secure architectures, and implementing best practices to protect against threats. Staff-level engineers often lead security initiatives, conduct risk assessments, and collaborate with development and operations teams to integrate security into every stage of product development. They may also mentor junior engineers and help shape the organization's security strategy.

How does a staff product security engineer typically collaborate with development and product teams to ensure secure software delivery?

A Staff Product Security Engineer works closely with development and product teams by providing security guidance throughout the software development lifecycle. They participate in design reviews, threat modeling sessions, and code reviews to identify and mitigate potential security risks early. These engineers also help establish best practices, deliver security training, and coordinate vulnerability remediation efforts. Collaboration is typically cross-functional, requiring strong communication skills to bridge gaps between security and engineering priorities while supporting a culture of shared responsibility for product security.

What are the key skills and qualifications needed to thrive as a staff product security engineer, and why are they important?

To thrive as a Staff Product Security Engineer, you need deep expertise in application security, secure software development, and threat modeling, typically supported by a degree in computer science or a related field. Hands-on experience with security tools like static and dynamic analysis, vulnerability scanning, and familiarity with cloud security platforms and certifications such as CISSP or OSCP are highly valuable. Strong problem-solving skills, effective communication, and the ability to lead cross-functional teams distinguish top performers in this role. These skills are crucial to proactively identify risks, implement robust security measures, and foster a culture of security throughout the product lifecycle.

What is the difference between Staff Product Security Engineer vs Security Engineer?

AspectStaff Product Security EngineerSecurity Engineer
CredentialsRelevant certifications (CISSP, CEH), security trainingSimilar certifications, entry to mid-level security training
Work EnvironmentFocus on product security, cross-functional teams, strategic security planningImplementing security measures, monitoring, incident response
Employer & Industry UsageTech companies, product-focused organizationsVaried industries, IT departments, security teams

The main difference is that a Staff Product Security Engineer typically leads security efforts related to specific products, requiring strategic planning and cross-team collaboration. A Security Engineer often handles broader security tasks like monitoring and incident response. Both roles require similar credentials but differ in scope and focus.

More about Staff Product Security Engineer jobs

What cities are hiring for Staff Product Security Engineer jobs?

Cities with the most Staff Product Security Engineer job openings:

What states have the most Staff Product Security Engineer jobs?

States with the most job openings for Staff Product Security Engineer jobs include:

What job categories do people searching Staff Product Security Engineer jobs look for?

The top searched job categories for Staff Product Security Engineer jobs are:

Infographic showing various Staff Product Security Engineer job openings in the United States as of August 2026, with employment types broken down into 2% As Needed, 76% Full Time, 16% Part Time, 1% Temporary, and 5% Contract. Highlights an 96% Physical, 1% Hybrid, and 3% Remote job distribution, with an average salary of $99,330 per year, or $47.8 per hour.

Staff Product Security Engineer

Greenlight Financial Technology

Atlanta, GA โ€ข On-site

$165 - $200/hr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 11 days ago


Key responsibilities

  • Lead security architecture/design review and threat modeling sessions with product and engineering teams.

  • Conduct hands-on penetration testing and security assessments across the full product stack, producing actionable reports.

  • Drive PSIRT operations by triaging vulnerability reports, leading investigations, coordinating remediation, and managing disclosures.


Job description

Greenlight is the leading family fintech company on a mission to help parents raise financially smart kids. We proudly serve more than 6 million parents and kids with our awardโ€‘winning banking app for families. With Greenlight, parents can automate allowance, manage chores, set flexible spend controls, and invest for their familyโ€™s future. Kids and teens learn to earn, save, spend wisely, and invest.

At Greenlight, we believe every child should have the opportunity to become financially healthy and happy. Itโ€™s no small task, and thatโ€™s why we leap out of bed every morning to come to work. Because creating a better, brighter future for the next generation depends on it.

We are seeking an experienced and motivated Staff Product Security Engineer to join our growing Security team. This individual will be responsible for the endโ€‘toโ€‘end security of our consumer products, digital platform and an emerging hardware device line. The Staff Product Security Engineer will drive security review, threat modeling programs, lead penetration testing, manage PSIRT operations, champion secure AI adoption and establish security guardrails for AI powered products and AI assisted development workflows within a highly regulated financial services environment.

This role reports to the Senior Manager of Product Security.

Your day-to-day
  • Lead security architecture/design review and threat modeling sessions with product and engineering teams using STRIDE, PASTA and attack tree methodologies.
  • Translate threats into actionable, riskโ€‘rated engineering remediations prioritized by severity.
  • Conduct handsโ€‘on penetration testing and security assessments across our full product stack producing actionable reports for engineering and leadership.
  • Redโ€‘Team our AI powered products and development tools to test for prompt injection, data exfiltration, MCP server exploitation, and tool misuse. Probe AI guardrails to ensure they hold. Experience with product security tools such as Burp Suite, Metasploit, Kali Linux, Postman, etc.
  • Drive PSIRT Operations by triaging incoming vulnerability reports, leading technical investigations, coordinating remediation with engineering, scoring severity (CVSS), managing coordinated disclosure with external researchers and onโ€‘call incidents. This includes managing zeroโ€‘day findings, driving remediation, collaborating with engineering to patch or mitigate with compensating controls.
  • Shape the posture of our AI assisted development environment defining and enforcing enterprise policies for Claude and Cursor.
  • Partner across the organization, sitting in design review with architects, advising product managers and engineering teams on security and compliance implications of new features, briefing executives on emerging AI threats, mentoring junior security engineers and collaborating with the AI team on securing ML pipelines.
  • Champion Security Culture by running developer training on secure coding with AI assistants, evangelizing security by design for products and ensuring every engineer understands that product security is an enabler and not a gate.
What youโ€™ll bring to the team
  • 10+ years of product security experience spanning application security, cloud security, and secure SDLC. You will have full SDLC experience from design through development, deployment and incident response.
  • Expert level Threat Modeling using STRIDE, PASTA or equivalent across web, mobile, cloud, embedded and AI systems.
  • Handsโ€‘on penetration testing skills across applications, API, cloud infrastructure, and hardware/firmware. You think like an attacker and you can provide it through published research, CVE discoveries, bug bounty results or redโ€‘team engagements.
  • PSIRT operational experience from vulnerability intake and triage. You are fluent in CVE, CVSS, FIRST PSIRT frameworks.
  • Deep handsโ€‘down AI security expertise and expert level understanding of OWASP Top 10 for LLM, API, Web, Mobile and have practical experience with MITRE.
  • Strong handsโ€‘on experience in security tools SAST, DAST, SCA, and securing AI development tools specifically Claude and Cursor.
  • You understand MCP security risks and know how to architect enterprise guardrails that enable safe AIโ€‘assisted development. You have defined policies for AI generated code, secrets scanning, and DLP for outbound AI traffic.
  • Strong programming ability and capability to review code, build security tools, automate workflows and be credible with the engineering teams you partner with.
  • Deep technical knowledge of CI/CD pipeline and relevant tools for web and mobile applications.
  • Strong knowledge of programming language & frameworks (i.e. Node.js, Java/Kotlin, React, Redux, Swift, SwiftUI), cloud technologies and infrastructure (i.e. AWS, GCP, Kubernetes, Ambassador, Helm), and databases (i.e. MySQL, DynamoDB, Redis).
  • Ability to influence without authority, mentor without managing , and communicate complex risks in a language that resonates with engineers, product managers, legal and compliance and executives alike.
Preferred experience
  • Hardware and embedded security experience with knowledge of secure boot, firmware integrity, hardware root of trust, and IoT threat modeling experience.
  • Experience in the Financial industry, knowledge of PCI DSS, COPPA or demonstrated ability to learn regulated domains quickly.
Work perks at Greenlight
  • Medical, dental, vision, and HSA match
  • Paid life insurance, AD&D, and disability benefits
  • Traditional 401k with company match
  • Unlimited PTO
  • Paid company holidays and popโ€‘up bonus holidays
  • Professional development stipends
  • Mental health resources
  • 1:1 financial planners
  • Fertility healthcare
  • 100% paid parental and caregiving leave, plus cleaning service and meals during your leave
  • Flexible WFH, both remote and inโ€‘office opportunities
  • Fully stocked kitchen, catered lunches, and occasional inโ€‘office happy hours
  • Employee resource groups
Our stance on salaries

Greenlight provides a competitive compensation package with a marketโ€‘based approach to pay and will vary depending on your location, experience and skill set. The total compensation package for this position will also include a discretionary performance bonus, equity rewards, medical benefits, 401K match, and more. Greenlight conducts continuous compensation evaluations across departments and geographies to ensure we are keeping our pay current and competitive.

The estimated base pay range for this position in (NY, CA, WA): $165,000-200,000

The estimated base pay range for this position in (CO): $165,000-185,000

Who we are

It takes a special team to aim for a neverโ€‘beenโ€‘doneโ€‘before mission like ours. Weโ€™re looking for people who love working together because they know it makes us stronger, people who look to others and ask, โ€œHow can I help?โ€ and then โ€œHow can we make this even better?โ€ If youโ€™re ready to roll up your sleeves and help create a world where every child grows up to be happy and healthy in money and life, apply to join our team.

Greenlight is an equal opportunity employer and will not discriminate against any employee or applicant based on age, race, color, national origin, gender, gender identity or expression, sexual orientation, religion, physical or mental disability, medical condition (including pregnancy, childbirth, or a medical condition related to pregnancy or childbirth), genetic information, marital status, veteran status, or any other characteristic protected by federal, state or local law.

Greenlight is committed to an inclusive work environment and interview experience. If you require reasonable accommodations to participate in our hiring process, please reach out to your recruiter directly or email accomodations@greenlight.me.

#J-18808-Ljbffr