Staff Product Security Engineer
$180k - $247kOkta
Secure Every Identity, from AI to HumanIdentity is the key to unlocking the potential of AI. Okta secures AI by building the trusted, neutral infrastructure that enables organizations to safely embrace this new era. This work requires a relentless drive to solve complex challenges with real-world stakes. We are looking for builders and owners who operate with speed and urgency and execute with excellence.This is an opportunity to do career-defining work. We're all in on this mission. If you are too, let's talk.The Security TeamOkta is The World's Identity Company. We free everyone to safely use any technology—anywhere, on any device or app. Our Workforce and Customer Identity Clouds enable secure yet flexible access, authentication, and automation that transform how people move through the digital world, putting Identity at the heart of business security and growth.At Okta, we celebrate a variety of perspectives and experiences. We are not looking for someone who checks every box—we're looking for lifelong learners and people who can improve us with their unique experiences.Join our team! We're building a world where Identity belongs to you.The Staff Product Security Engineer OpportunityThe Security team's mission is to strengthen Okta's position as the leading Identity-as-a-service solutions provider by identifying and resolving risks to employees, products, and, most importantly, our customers.The Staff AI Product Security Engineer joins a team with a clear mission: to shape the future of application security by researching and building systems that prove how AI can fundamentally augment, automate, and scale defense. This is a hybrid research, offensive and software engineering role centered on leveraging AI to uncover vulnerabilities, automate root cause analysis, automate exploitation, and generate secure code patches at cloud scale.This role is built for engineers who want to push the limits of what AI can do for security, from benchmarking SOTA frontier models and fine-tuning open-weight models to building production-grade security tooling across Product Security. While a main focus will be on creating intelligent, automated security capabilities that keep Okta continuously ahead of emerging threats, performing full security reviews of Okta's products, as well as agentic architectures and internal AI pipelines, to uncover, exploit and fix vulnerabilities is also part of the work.The ideal candidate thinks creatively but also like an attacker, builds like an engineer, and publishes their findings. We actively support external research disclosure through white papers, blog posts, and conference presentations.What You Will DoLead technical capability research evaluating frontier LLMs and customized open-weight models for advanced code analysis, autonomous attack and logical security reasoning.Engineer production-grade, AI-assisted security tools that automate vulnerability discovery, triaging, and risk validation across codebases.Architect context-aware code-repair engines that automatically recommend verified security fixes to software development teams.Build automated Proof-of-Concept (PoC) exploit generators in sandboxed runtimes to safely perform root cause analysis on identified vulnerabilities.Modify and fine-tune open-source models to carry out domain-specific defensive and offensive code analysis tasks.Embed AI models, unified APIs, and model-agnostic execution frameworks across Product Security tools to multiply team capabilities.Assess and secure internal AI platforms, agentic execution runtimes, and AI coding agent container environments.Perform manual code review and AI-assisted deep dives of Okta's products and system implementations across multiple languages. Develop threat models for agentic architectures, orchestration layers, and LLM-integrated services.Deliver technical reference blueprints and publish external research demonstrating how AI models transform modern security engineering.Run the AI security vendor and tooling evaluation program: design and operate a benchmarking harness against AI security tools.Conduct offensive security research focused on agentic AI systems: prompt injection, agent privilege escalation, tool-binding abuse, and agentic supply chain attacks against internal developer platforms.Translate research findings into actionable guidance for engineering teams building AI-powered features and platforms.What You Bring8+ years of experience in information security, with meaningful depth in application security, offensive research, or AI/ML security.Experience building security tooling and automation (scripts, scanners, detection logic, or evaluation harnesses) that other engineers actually use.Strong offensive mindset: the ability to model what an adversary does to break systems and how this translates to an agentic system, identify where the model's reasoning or the orchestration layer breaks down, and construct scenarios that make the risk concrete.Demonstrated hands-on experience assessing LLM-integrated systems and agentic AI architectures, not just familiarity with the concepts, but evidence of having found real vulnerabilities in them.Proficiency in at least two programming languages (Python and one of: Go, Java, TypeScript, C/C++).Advanced experience in threat modeling, manual code review, and penetration testing, applied to complex distributed systems.Knowledge of authentication and authorization protocols (OIDC, OAuth 2.0, SAML) and their implementation risks.Strong communication skills: the ability to write clearly for technical and non-technical audiences, document research findings with precision, and present at external venues.Experience producing external security research, publications, conference talks, blog posts, or open-source tooling.Desired Skills and AbilitiesExperience in vulnerability research and vulnerability discovery through source code auditing, as well as penetration testing skills.Familiarity with agentic framework internals (tool-use protocols, MCP, function-calling patterns, agent orchestration architectures).Experience with SAST, DAST, SCA, and fuzzing tooling applied to AI/ML pipelines or CI/CD systems.Strong cryptographic knowledge and experience in identifying cryptographic implementation flaws.Ability to develop proof-of-concept exploits that demonstrate vulnerabilities to engineering and product leadership. Plus, if able to exploit AI/Agentic-specific vulnerabilitiesExperience contributing to security standards, SDL processes, or vulnerability research programs.#LI-SM1#LI-Hybrid#LI-RemoteP25264_3461996The annual base salary range for this position for candidates located in the San Francisco Bay area is between: $180,000—$247,000 USDBelow is the annual base salary range for candidates located in California (excluding San Francisco Bay Area), Colorado, Illinois, New York and Washington. Your actual base salary will depend on factors such as your skills, qualifications, experience, and work location. In addition, Okta offers equity (where applicable), bonus, and benefits, including health, dental and vision insurance, 401(k), flexible spending account, and paid leave (including PTO and parental leave) in accordance with our applicable plans and policies. To learn more about our Total Rewards program please visit: . The annual base salary range for this position for candidates located in California (excluding San Francisco Bay Area), Colorado, Illinois, New York, and Washington is between:$161,000—$221,000 USDThe Okta ExperienceSupporting Your Well-BeingDriving Social Impact Developing Talent and Fostering Connection + CommunityWe are intentional about connection. Our global community, spanning over 20 offices worldwide, is united by a drive to innovate. Your journey begins with an immersive, in-person onboarding experience designed to accelerate your impact and connect you to our mission and team from day one.Okta is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, marital status, age, physical or mental disability, or status as a protected veteran. We also consider for employment qualified applicants with arrest and convictions records, consistent with applicable laws.If reasonable accommodation is needed to complete any part of the job application, interview process, or onboarding please use this Form to request an accommodation.Notice for New York City Applicants & Employees: Okta may use Automated Employment Decision Tools (AEDT), as defined by New York City Local Law 144, that use artificial intelligence, machine learning, or other automated processes to assist in our recruitment and hiring process. In accordance with NYC Local Law 144, if you are an applicant or employee residing in New York City, please click here to view our full NYC AEDT Notice.
$122.9k - $216.3k
The OpportunityAdobe’s Security Partnership Product Engineering (SPPE) team is hiring a mid-level engineer to build the AI-powered platforms that help secure our products. The team’s tools include a threat modeling capability that delivers analysis in seconds and a new...SuggestedFull timeTemporary workLocal areaWorldwide$225k - $300k
CLEAR is building THE secure identity company of the future. Our mission is to make experiences safer and easier—physically and... ...unlocks the magic of frictionless experiences.As a Senior Product Security Engineer on our Product Security team you’ll help run and evolve...SuggestedCasual workWork at officeFlexible hours$198.4k - $342k
We are seeking a highly technical Product Security Engineer to join our Public Sector Infrastructure & Security team. Our Product Security Engineers ensure the security and integrity of our products and services. You will conduct in-depth code reviews, implement security...SuggestedFull time- Hi, we're Oscar. We're hiring a Senior Product Security Engineer 1 to join our Security Team.Oscar is the first health insurance company built around a full stack technology platform and a relentless focus on serving our members. We started Oscar in 2012 to create the kind...SuggestedFull timeWork experience placementWork at officeFlexible hours
- ...communication will only be sent from @Rippling.com addresses.About The RoleWe're looking for a hands-on staff security engineer to play a key role in building Rippling's Product Security program. Rippling's product’s scope provides a unique set of security challenges, but our...SuggestedWork at officeRelocation3 days per week1 day per week
$106k - $209k
...Want to secure the future of data management and AI/ML? At MongoDB we are transforming... ...Who You Are With a strong security engineering background, you’re looking for a role that... ...customers by strengthening our core database products. You’re passionate about solving hard...Work at officeLocal areaRemote workWorldwideFlexible hours$200k - $280k
...a true inflection point. We have strong product-market fit and world-class investor support... ...Our customers depend on us to deliver a secure, trustworthy, and compliant platform.... ...firms.ResponsibilitiesClosely work with engineering teams to incorporate secure design principles...Work experience placementFlexible hours$200k - $280k
...Responsibilities Partner with engineering teams to incorporate secure design principles into technical designs. Review security-critical code and serve as code owner for authentication, access control, and administration components. Implement security features...Full timeWork experience placementFlexible hours$30 - $50 per hour
Role Overview As a Product Security Engineer, you will embed security into the software lifecycle for platforms that handle AI/ML data operations. You will help secure services supporting data labeling, content safety labeling, RLHF evaluation, and model evaluation tooling...Hourly payRemote work$30 - $50 per hour
A tech company in the United States is seeking a Product Security Engineer to embed security in the software lifecycle for AI/ML data operations. As part of this role, you will drive secure SDLC practices, lead threat modeling, and manage vulnerabilities. Experience in...Remote jobHourly pay- Jobtailor is seeking a senior security engineering leader to design and implement resilient controls across infrastructure, cloud, and application environments. You will lead security initiatives, mentor engineers, and drive incident investigations and long-term remediation...
$105k - $130k
...Security Systems Design Engineer At Salas O'Brien we tell our clients that we're engineered for impact. This passion for making a difference applies just as much to our team as it does to our projects. That's why we're committed to living our values every day: inspiring...Local areaRemote work$165k - $242k
...Learn more at .What You’ll Do:The Enterprise Security team at CoreWeave is responsible for... ...experiences that actually make people more productive, this is the team to join.About the Role:As a Senior Security Engineer, Enterprise Security, you’ll design and ship...Permanent employmentFull timeTemporary workFor contractorsCasual workWork at officeRemote workFlexible hours$175.1k - $236.9k
...direction using the globe’s largest AWS deployment.As a Senior Security Engineer, you will collaborate with software development teams to... ...maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance...InternshipFlexible hours$174k - $252k
Identify security issues and implement and design security controls, tools, and services... ...complex security issues, guiding teams across Product Areas (PAs) to implement security... ...modeling.5 years of experience with security engineering, computer and network security and...$159.3k - $212.8k
The AWS Security Hub team is looking for a passionate and innovative security engineer with a focus on compliance and security best practices for AWS, Azure, and GCP services... ...a flexible schedule so you can have a more productive and well-balanced life—both in and outside of...InternshipFlexible hours$195k - $240k
Here at Datadog, we think about offensive security a little bit differently. We embrace... ...environment, and we expect our offensive engineers to build the tooling that makes that possible... ..., well-defended environmentsYou write production-quality code (Python, Go, or similar),...Work at office$200k - $220k
...they rely on every day.We are looking for a hands-on Corporate Security Engineer to own and improve the technical controls that keep our... ...detection tooling across macOS and enterprise environments.Write production-quality scripts and automation in Python or Bash, and have...Work at officeLocal area$159.3k - $212.8k
...every direction using the globe’s largest AWS deployment.As a Security Engineer, you will collaborate with software development teams to... ...maintaining a high bar for security across all of Amazon’s products and services. We offer talented security professionals the chance...InternshipFlexible hours$167.5k - $226.3k
...summed up in our company values, which are reflected in our product and in our team.Our ValuesIf this sounds like you, you’ll fit... ...AreJustworks is looking for an experienced, hands-on Senior Security Engineer specializing in AI who will drive and execute the company’s AI...Casual workWork at officeLocal area$147k - $210k
...advanced vulnerability research, defensive engineering, and mitigation strategies across the... ...to improve efficiency.Conduct deep-dive security research into Android vulnerabilities and... ...mitigation solutions and partner with Product/Feature teams to land them.Embed security...- ...A tech firm based in New York City is seeking a Member of Technical Staff – Product Engineering. This role involves designing user-facing products integrating AI capabilities and owning projects from start to finish. Candidates will work closely with accountants to improve...
- ...London offices. You'll own application security at a company where the app layer is the... ...the safe path the easy path for 50+ engineers Threat models for new features and architecture... ...found and fixed real vulnerabilities in production applications - not just run scanners ~...Work at officeRemote workRelocation packageShift work
- ...About the role This is where security meets innovation at enterprise scale. As a security engineer, applications at WRITER, you'll... ...threat modeling sessions with product teams, designing secure... ...This role is open to Mid, Sr. and Staff level candidates Benefits...Full timeWork at officeLocal areaFlexible hours
- ...Corporate Security Engineer Millions of people rely on Notion to do their most important work. Protecting that trust starts with protecting the people who build Notion: our employees, their laptops, their identities, and the SaaS apps they rely on every day. We are...Local area
- An innovative cybersecurity firm in New York is seeking a mid-senior level Product Engineer to drive the development of AI-native products. You will work on both front-end and back-end systems, using technologies like React, TypeScript, Python, and Go. Your responsibilities...
- ...and identity abuse spread faster than any security team can respond to. So we built... ...Palantir, ex-CTO/founders, and ex-Notion engineers, Outtake is designed for clarity, autonomy... ...and autonomous: engineers ship fast, make product decisions, and own outcomes from concept...Full timeWork at officeFlexible hours
- ...experiences that thousands of developers use to create their own products. Plaid powers the tools millions of people rely on to live a... ...New York, Washington D.C., London and Amsterdam. Security Engineering is the engineering function inside the Plaid security org...Full timeWork experience placementLocal area
$100k - $143k
...days per week Role OverviewJoin Enterprise Intelligence as a Product Engineer supporting Decision Intelligence products that help field professionals... ...success and fulfill our promise of providing financial security and peace of mind to families across all communities. Click...Local area3 days per week$175k
...structuring forms, adding tests, and refining performance. You’re a clear, thoughtful communicator. What you’ll be doing At Val Town, product engineers focus on application engineering and have wide latitude in how they work. Your day-to-day will include adding features in our...Work at officeRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Staff Product Security Engineer. Be the first to apply!
- staff engineer New York, NY
- assistant engineer New York, NY
- research assistant engineering New York, NY
- staff design engineer New York, NY
- staff security engineer New York, NY
- engineering aide New York, NY
- assistant civil engineer New York, NY
- senior staff engineer New York, NY
- senior staff systems engineer New York, NY
- assistant chief engineer New York, NY



