DigitalOcean
DigitalOcean

60 Digitalocean Marketing Program Manager Jobs Hiring Near You

DigitalOcean is building the substrate for an AI-native company, and this role owns its ... data, and program management teams-and as technical advisor to business owners evaluating AI ...

Software Engineer I

Seattle, WA · On-site

$97K - $122K/yr

Help manage a global GPU footprint, ensuring 99.9% uptime for mission-critical production workloads ... Program. * DigitalOcean is an equal-opportunity employer. We do not discriminate on the basis of ...

Senior Hardware Sourcer II

Seattle, WA · On-site

$106K - $133K/yr

DigitalOcean is seeking an experienced individual to manage end-to-end sourcing operations for our ... Program to Local Employee Meetups to flexible time off policy, to name a few. While the philosophy ...

Compensation Partner

San Francisco, CA · On-site

$97K - $122K/yr

Dive in and do the best work of your career at DigitalOcean. Journey alongside a strong community ... Program manage annual and mid-year compensation cycles in order to deliver smooth, timely, and ...

Senior Capacity Planner

Seattle, WA · On-site

$106K - $132K/yr

... DigitalOcean: * 5+ years of experience in capacity planning, infrastructure operations, or program/project management in a technical environment * Strong cross-functional communication and ...

Systems Engineer I

Seattle, WA · On-site

$83K - $104K/yr

Reporting to the Manager of Infra::Machines::Design, you will support sustaining engineering ... Program. * DigitalOcean is an equal-opportunity employer. We do not discriminate on the basis of ...

Data Center Engineer II

Wenatchee, WA · On-site

$85K - $107K/yr

Inventory and asset management What You'll Add to DigitalOcean: * Experience in deploying ... Program to Local Employee Meetups to flexible time off policy, to name a few. While the philosophy ...

Senior Security Analyst I

Boston, MA · Remote

$109K - $137K/yr

... DigitalOcean, you will lead and own critical aspects of our security monitoring program, shaping ... Experience in proactive threat hunting, vulnerability management, and coordinating with red teams ...

Senior Security Analyst I

Seattle, WA · Hybrid

$109K - $137K/yr

... DigitalOcean, you will lead and own critical aspects of our security monitoring program, shaping ... Experience in proactive threat hunting, vulnerability management, and coordinating with red teams ...

Compensation Partner

Denver, CO · On-site

$97K - $122K/yr

Dive in and do the best work of your career at DigitalOcean. Journey alongside a strong community ... Program manage annual and mid-year compensation cycles in order to deliver smooth, timely, and ...

Senior Security Analyst I

Seattle, WA · On-site

$109K - $137K/yr

... DigitalOcean, you will lead and own critical aspects of our security monitoring program, shaping ... Experience in proactive threat hunting, vulnerability management, and coordinating with red teams ...

Showing results 41-60

Staff Product Security Engineer, Secure Design (Kernel and Virtualization)

DigitalOcean

Seattle, WA • Hybrid

$175K - $190K/yr

Full-time

Re-posted 13 days ago


Job description

We're looking for a Staff Product Security Engineer who is passionate about partnering with engineers to assess and mitigate the security risk of our virtualization stack.

You'll own the security risk posture for our virtualization stack. You'll get there by building the frameworks the org uses to reason about hypervisor risk - systematic threat models that surface risks, shared rubrics for assessing their impact and likelihood, and clear ways of communicating them to security, kernel, virtualization, and provisioning teams. From there, you'll own the response: designing and proposing defense-in-depth mitigations and driving their implementation.

As a member of the Product Security team, you will report to the Manager of Secure Design. Our Secure Design team enables DigitalOcean to build secure-by-design products. We leverage strong relationships with both product teams and the rest of security engineering to be successful. The team's scope is primarily focused on reviewing early-stage decisions, developing threat models, scaling impact via automation, curating security patterns, authoring security guidance, training, and championing security initiatives. 

What you'll do:

Propose and implement mitigations and defense-in-depth to threats discovered through threat modeling the virtualization stack (90%)

  • Provide deep technical expertise in systems architecture, kernel security features and network architecture to build out a threat model for our virtualization stack
  • Identify the trade-offs of different solutions and recommend the efficient design to achieve both functional goals and security requirements. We do not deliver mandates; we work alongside cross-functional partners to find mutually beneficial solutions.
  • Collaborate with development teams to implement remediations and defense in depth to protect DigitalOcean's customers' workloads.

Cultivate and promote a security culture (10%)

  • Mentor software engineering teams in security best practices.
  • Help oversee our vulnerability management program (we call it security debt).
  • Help DigitalOcean engineers understand how security events impact them. Do they need to worry about the next Redfish or Copy Fail CVEs? How does RetBleed impact DigitalOcean's fleet?
What you'll add to DigitalOcean:

Required qualifications:

  • Deep familiarity with at least one kernel security feature (ex: AppArmor, SELinux, Landlock, etc.) 
  • Capable of assessing and understanding the performance implications of code changes to virtualization stacks (especially in Qemu and KVM), built from hands-on experience. Experience 
  • A record of partnering with internal engineering teams to tackle security problems across an entire stack with empathy and creativity. Engineering teams are our partners, not our adversaries.
  • Ability to clearly communicate security topics and vulnerability classes (e.g. memory corruption, privilege escalation, TOCTOU, etc) and ability to provide actionable direction to product teams.
  • Working knowledge of modern development concepts (virtualized environments, containerization, continuous integration + delivery).

Preferred qualifications:

  • 5+ years of writing systems level code (embedded systems, kernel, assembly or similar).
  • Experience guiding software teams on secure architecture design.
  • Written code for an embedded system (raspberry pi, arduino, etc).
  • Experience building or reviewing threat models and ability to craft malicious user, attacker, and abuse/misuse cases.
  • An understanding of patches and mitigations for hardware side-channel attacks.
  • Familiarity with object oriented and functional programming concepts, particularly with languages such as Go, Rust, or C.
Compensation Range: 
  • $175,000 - $190,000

*This is a hybrid role

JR: 2026-8011

#LI-Hybrid