Staff Product Security Engineer
$180k - $247.5kOkta
Secure Every Identity, from AI to Human
Identity is the key to unlocking the potential of AI. Okta secures AI by building the trusted, neutral infrastructure that enables organizations to safely embrace this new era. This work requires a relentless drive to solve complex challenges with real-world stakes. We are looking for builders and owners who operate with speed and urgency and execute with excellence. This is an opportunity to do career-defining work. We're all in on this mission. If you are too, let's talk.The Security Team
Okta is The World's Identity Company. We free everyone to safely use any technology—anywhere, on any device or app. Our Workforce and Customer Identity Clouds enable secure yet flexible access, authentication, and automation that transform how people move through the digital world, putting Identity at the heart of business security and growth.
At Okta, we celebrate a variety of perspectives and experiences. We are not looking for someone who checks every box—we're looking for lifelong learners and people who can improve us with their unique experiences.
Join our team! We're building a world where Identity belongs to you.
The Staff Product Security Engineer Opportunity
The Security team's mission is to strengthen Okta's position as the leading Identity-as-a-service solutions provider by identifying and resolving risks to employees, products, and, most importantly, our customers.
The Staff AI Product Security Engineer joins a team with a clear mission: to shape the future of application security by researching and building systems that prove how AI can fundamentally augment, automate, and scale defense. This is a hybrid research, offensive and software engineering role centered on leveraging AI to uncover vulnerabilities, automate root cause analysis, automate exploitation, and generate secure code patches at cloud scale.
This role is built for engineers who want to push the limits of what AI can do for security, from benchmarking SOTA frontier models and fine-tuning open-weight models to building production-grade security tooling across Product Security. While a main focus will be on creating intelligent, automated security capabilities that keep Okta continuously ahead of emerging threats, performing full security reviews of Okta's products, as well as agentic architectures and internal AI pipelines, to uncover, exploit and fix vulnerabilities is also part of the work.
The ideal candidate thinks creatively but also like an attacker, builds like an engineer, and publishes their findings. We actively support external research disclosure through white papers, blog posts, and conference presentations.
What You Will Do
- Lead technical capability research evaluating frontier LLMs and customized open-weight models for advanced code analysis, autonomous attack and logical security reasoning.
- Engineer production-grade, AI-assisted security tools that automate vulnerability discovery, triaging, and risk validation across codebases.
- Architect context-aware code-repair engines that automatically recommend verified security fixes to software development teams.
- Build automated Proof-of-Concept (PoC) exploit generators in sandboxed runtimes to safely perform root cause analysis on identified vulnerabilities.
- Modify and fine-tune open-source models to carry out domain-specific defensive and offensive code analysis tasks.
- Embed AI models, unified APIs, and model-agnostic execution frameworks across Product Security tools to multiply team capabilities.
- Assess and secure internal AI platforms, agentic execution runtimes, and AI coding agent container environments.
- Perform manual code review and AI-assisted deep dives of Okta's products and system implementations across multiple languages.
- Develop threat models for agentic architectures, orchestration layers, and LLM-integrated services.
- Deliver technical reference blueprints and publish external research demonstrating how AI models transform modern security engineering.
- Run the AI security vendor and tooling evaluation program: design and operate a benchmarking harness against AI security tools.
- Conduct offensive security research focused on agentic AI systems: prompt injection, agent privilege escalation, tool-binding abuse, and agentic supply chain attacks against internal developer platforms.
- Translate research findings into actionable guidance for engineering teams building AI-powered features and platforms.
What You Bring
- 8+ years of experience in information security, with meaningful depth in application security, offensive research, or AI/ML security.
- Experience building security tooling and automation (scripts, scanners, detection logic, or evaluation harnesses) that other engineers actually use.
- Strong offensive mindset: the ability to model what an adversary does to break systems and how this translates to an agentic system, identify where the model's reasoning or the orchestration layer breaks down, and construct scenarios that make the risk concrete.
- Demonstrated hands-on experience assessing LLM-integrated systems and agentic AI architectures, not just familiarity with the concepts, but evidence of having found real vulnerabilities in them.
- Proficiency in at least two programming languages (Python and one of: Go, Java, TypeScript, C/C++).
- Advanced experience in threat modeling, manual code review, and penetration testing, applied to complex distributed systems.
- Knowledge of authentication and authorization protocols (OIDC, OAuth 2.0, SAML) and their implementation risks.
- Strong communication skills: the ability to write clearly for technical and non-technical audiences, document research findings with precision, and present at external venues.
- Experience producing external security research, publications, conference talks, blog posts, or open-source tooling.
Desired Skills and Abilities
- Experience in vulnerability research and vulnerability discovery through source code auditing, as well as penetration testing skills.
- Familiarity with agentic framework internals (tool-use protocols, MCP, function-calling patterns, agent orchestration architectures).
- Experience with SAST, DAST, SCA, and fuzzing tooling applied to AI/ML pipelines or CI/CD systems.
- Strong cryptographic knowledge and experience in identifying cryptographic implementation flaws.
- Ability to develop proof-of-concept exploits that demonstrate vulnerabilities to engineering and product leadership. Plus, if able to exploit AI/Agentic-specific vulnerabilities
- Experience contributing to security standards, SDL processes, or vulnerability research programs.
#LI-SM1
#LI-Hybrid
#LI-Remote
P25264_3461996
The annual base salary range for this position for candidates located in the San Francisco Bay area is between:
$180,000—$247,000 USD
Below is the annual base salary range for candidates located in California (excluding San Francisco Bay Area), Colorado, Illinois, New York and Washington. Your actual base salary will depend on factors such as your skills, qualifications, experience, and work location. In addition, Okta offers equity (where applicable), bonus, and benefits, including health, dental and vision insurance, 401(k), flexible spending account, and paid leave (including PTO and parental leave) in accordance with our applicable plans and policies. To learn more about our Total Rewards program please visit:
The annual base salary range for this position for candidates located in California (excluding San Francisco Bay Area), Colorado, Illinois, New York, and Washington is between:
$161,000—$221,000 USD
The Okta Experience
- Supporting Your Well-Being
- Driving Social Impact
- Developing Talent and Fostering Connection + Community
We are intentional about connection. Our global community, spanning over 20 offices worldwide, is united by a drive to innovate. Your journey begins with an immersive, in-person onboarding experience designed to accelerate your impact and connect you to our mission and team from day one.
Okta is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, marital status, age, physical or mental disability, or status as a protected veteran. We also consider for employment qualified applicants with arrest and convictions records, consistent with applicable laws. If reasonable accommodation is needed to complete any part of the job application, interview process, or onboarding please use this Form to request an accommodation. Notice for New York City Applicants & Employees: Okta may use Automated Employment Decision Tools (AEDT), as defined by New York City Local Law 144, that use artificial intelligence, machine learning, or other automated processes to assist in our recruitment and hiring process. In accordance with NYC Local Law 144, if you are an applicant or employee residing in New York City, please click here to view our full NYC AEDT Notice.$128.9k - $180k
...thrive, we can’t wait to meet you.WHAT YOU'LL DOAs a Senior Security Engineer on the Enterprise Security team, you'll protect Braze employees... ...infrastructure operating at the center of cloud operations, product, app security, and system architecture. That includes developing...SuggestedWork at officeLocal area$210k - $260k
...financial destiny. How do we do it? We provide cutting-edge products and services that enhance the trading journey. Whether a seasoned... ...in the world. What you'll do:We're looking for aStaff Security Engineer, Application Security to help scale and mature our security...SuggestedWork at officeRemote workWorldwideMonday to FridayFlexible hours$90.74k - $117.43k
...ExemptCategory: Clinical Support/Instrument Processing/EducationIndustry: ""Posted Date: 2026-06-16Position SummaryThe Senior Product Engineer provides comprehensive engineering leadership that advances the Mobile Solutions strategic plan. This role designs, develops,...SuggestedFor contractorsFor subcontractorLocal area- Job-ID31313768Reference25-08772 A Plant Vehicle Team Engineer has several responsibilities associated with analyzing and improving the... ...targets. -Lead engineering commodity changes for future minor product launches. - Support Variability Reduction Team (VRT) for specific...SuggestedPermanent employmentInterim role
- ..., Formic is scaling rapidly and building the foundation for a new era of high-performance, Made in America production.About the roleAs a Product Support Engineer, you will be the technical escalation point for Field Engineering and the internal expert for one to two assigned...SuggestedPermanent employmentWork at officeImmediate startShift workWeekday work
- ...and communities to build cultures that foster innovation to achieve the best outcomes for patients.Huron is seeking a Senior Product Engineer / Principal to join our HDTx Payer Services team, supporting healthcare payer clients in advancing data quality, regulatory reporting...Full time
$85k - $126.8k
...diversified global leading manufacturer of highly engineered critical components and customized... ...~ On-site Field Data Acquisition ~ Product Design and Development ~ Scanning... ...including disabled/veterans. Government security rules may restrict certain work to specific...Temporary work- ...AwardSpring Product Engineer AwardSpring is an established and growing SaaS company that partners with colleges and foundations to help them award scholarships and manage their donors. We complete the virtuous cycle of giving, getting, and giving again - between donors...Work at office
- ...over 100 years, we've been shaping the future of grooming with precision, performance, and purpose. Now, we're looking for a Product Engineer who is ready to turn ideas into reality and bring next-generation products to life. In this role, you won't just design products...Casual work
$155.58k - $320.32k
...love, and that starts with the people behind the product.Discover a career where you ignite innovation... ...use AI in our recruiting process here.Pinterest’s Security team is seeking an experienced Security Software Engineer to help keep our 619 million monthly active users...Work at officeLocal areaRemote workRelocationRelocation package$145k
...Chicago. Today, Akuna is proud to operate from additional offices in Sydney, Shanghai, London, and Singapore. What you’ll do as a Security Engineer II at Akuna: Akuna is seeking a driven Security Engineer II to safeguard our systems, data, and assets against a threat...Work at office$120k - $200k
We are seeking a motivated, hands-on Security Engineer to join our security team. In this role, you will help protect, monitor, and continuously improve the security of our global systems — including cloud (AWS and M365) and on-premises infrastructure. You’ll play a central...Work at office$200k - $225k
...industry, join our team as we help shape a brighter way forward. The Senior Security Engineer, AI Enablement is Security's embedded, full-time representative on JLL's Falcon team, owning the product's security architecture for agents, MCP integrations, and identity end-to...Full timeLocal areaImmediate startRemote work$134k - $205k
...information, visit Gong, you will join a company built on innovative products, ambitious goals, and passionate people. We are shaping the... ...work of your career.We’re looking for a Senior Corporate Security Engineer to help secure the systems, identities, devices, and...Remote workWork from homeFlexible hours- ...world for our employees, our customers and our communities.The RoleJob DescriptionWe are seeking a skilled Mainframe Logical Security Engineer to design, implement, and manage security controls across IBM z/OS environments. The role ensures the confidentiality, integrity...Full timeLive inRelocation3 days per week
- ...motivated candidate to join our talented Team.Job Title: Network Security Engineer - Strata EECLocation(s): Chicago, ILMust Have:· Panorama/NGFW... ...with their success. · You’re thorough understanding of our product integrations will contribute to the development of new...
$92k - $120k
...Information TechnologyJob Description Summary: The Senior IT Security Engineer is responsible for planning, deploying, administering, and... ...standards.Coordinating the evaluation of new IT and security products and servicesProviding summary data, KPIs, metrics, and reports...Full timeWork at officeWork from homeFlexible hours2 days per week$130k - $150k
How you'll make an impact: As the Senior Security Engineer, you will work as a team member on the Security team you will be ensuring Strata... ...career growth. Together, we lift our customers, our products, our company, and our community. We believe that each of our...Work experience placement$149k - $235k
...data stores such as MongoDB. We're looking for a Senior Cloud Security Engineer II to join our Security Engineering function as a senior... ...guardrails, and reference architectures that Infrastructure, SRE, and Product Engineering build on — turning point-in-time fixes into...Work at officeLocal area$89.1k - $133.7k
...financial services company focused on securing the future of middle‑income America... ...s IT Team is hiring an IT Security Engineer to maintain, design and implement... ...to internal IT, Business staff and stakeholders.Performing product and solution life cycle management...Full timeWork experience placementWork at officeRemote workFlexible hours$112k - $209k
...your search for important and impactful work lead to the same place.The global law firm of K&L Gates LLP is seeking a Senior Security Engineer to join the firm. The Senior Security Engineer develops, automates, and enhances security capabilities for cloud, on-premises,...Full timeTemporary workWork experience placementLocal areaRemote work$70k - $140k
DescriptionThis position is a remote position. Summary:The RACF Mainframe Security Engineer is accountable for delivery and implementation of IAM... ...experience working as a RACF AdministratorExperience in production support and design of Cyber Security technologiesOperational...Full timeWork at officeRemote workWork from homeFlexible hours$160k - $205k
...cybersecurity and looking to work with some of the best information security professionals in the world in challenging environments? Bank... ..., share your knowledge and experience by mentoring junior engineers, and assist with monitoring and response functions, so those teams...Full timeWork at officeRemote workShift workDay shift$70 - $90 per hour
DescriptionWe are seeking a skilled and motivated Container Security Engineer to strengthen our cybersecurity posture across containerized environments. This role focuses on the identification, analysis, and mitigation of vulnerabilities and misconfigurations in container...Contract workTemporary workWork experience placement- ...including hosts and lmhosts files • Expert level knowledge of protocols such as: Kerberos, NTLM, TCP, UDP, IPv4, IPv6, SAML, LDAP and Secure LDAP • Expert level knowledge of Windows server operating systems • Knowledge of Semperis ADFR and DSPDepartment: Preferred...Contract work
$130k - $145k
...8-20Company: Addison GroupCONFIDENTIAL SEARCH - Senior Network Security EngineerLocation: Chicago - OnsitePay: $130 - $145K Base Benefits... ..., and 401(k)Confidential search for a Senior Network Security Engineer for a highly respected Chicago organization undergoing a...$146.2k - $243.6k
...customers worldwide with maintenance, repair and operating (MRO) products and value-added solutions delivered through innovative... ...Grainger Technology Group (GTG) in the department of Product Engineering. GTG builds powerful digital capabilities and advances technology...Full timeFor contractorsWork experience placementH1bLocal areaWorldwide- ...Vice President of Product & Engineering About the Company Innovative energy company specializing in demand response & backup generator monetization Industry Oil & Energy Type Privately Held, VC-backed Founded 2025 Employees 11-50 Funding...Remote work
- Job Title: Plant Vehicle Team Engineer - Body / Vehicle Quality Engineering Position Overview: We are seeking a Plant Vehicle Team Engineer... ...issues) Issue engineering alerts and documentation to support product changes and quality improvements Present findings, status...Permanent employmentInterim role
$150k - $250k
...more. Base pay range $150,000.00/yr - $250,000.00/yr Direct message the job poster from Isomer Overview As our Senior Full Stack Product Engineer, you'll be one of the early engineers shaping both the technical foundation of our platform and the product itself. You will...Full time
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Staff Product Security Engineer. Be the first to apply!
- staff engineer Chicago, IL
- assistant engineer Chicago, IL
- engineering aide Chicago, IL
- assistant civil engineer Chicago, IL
- senior staff engineer Chicago, IL
- senior staff systems engineer Chicago, IL
- software engineer staff Chicago, IL
- technology administrator Chicago, IL
- staff data engineer Chicago, IL
- project engineer assistant project manager Chicago, IL


