Staff Product Security Engineer
Menlo Ventures
RDQ226R605; This role can be based remotely anywhere in the United States.
The Product Security Teams mission is to left-shift SDLC (Security Development Lifecycle) processes for all code written in Databricks (for Customer Use or Supporting Customer internally) to reduce the likelihood of introducing new vulnerabilities in production and minimize the count and effect of externally identified vulnerabilities on Databricks Services. You will be an individual contributor on the product security team at Databricks, managing SDLC functions for features and products within Databricks. This would include, but is not limited to, security design reviews, threat models, manual code reviews, exploit writing and exploit chain creation. You will also support IR and VRP programs when there is a vulnerability report or a product security incident. You will work with a global team, spread across various locations in the US and EMEA. The impact you will have Full SDLC Support for new product features being developed in ENG and non-ENG teams. This would include Threat Modeling, Design Review, Manual Code Review, Exploit writing, etc. Work with other security teams to provide support for Incident Response and Vulnerability Response as and when needed. Work with the results of SAST tools to help evaluate and identify false positives and file defects for real issues. Work on DAST tools and related automation for auto-assessment and defect filing. Maintain the automation framework and add new features as needed to support different security compliances that Databricks may want to get into – FedRamp, PCI, HIPPA, etc. Prioritize security from a risk management perspective, rather than an absolute textbook version. Help develop and implement security processes to improve the overall productivity of the product security organization and the SDLC process in general What we look for 3-10 years Experience with the Threat Modeling process and ability to find design problems based on a block diagram of data flow. Solid understanding on at least two of the following domains - Web Security, Cloud Security, Systems Security and Applied Cryptography. Proficient with one or more of Programming languages (Python/Java/Scala/JavaScript) and ability to read code to identify security defects. Strong skills on scripting and automation on exploits Fuzzing skills are good to have. Exploit writing skills is a positive and greatly required. Pay Range TransparencyDatabricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected base salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipated utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. Zone 1 Pay Range: $178,200 — $249,450 USD Zone 2 Pay Range: $160,300 — $224,425 USD Zone 3 Pay Range: $151,400 — $212,000 USD Zone 4 Pay Range: $142,500 — $199,500 USD Benefits
At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region, please visit our benefits portal. Our Commitment to Diversity and Inclusion
At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio‑economic status, veteran status, and other protected characteristics. Compliance
If access to export-controlled technology or source code is required for performance of job duties, it is within Employers discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone. #J-18808-Ljbffr
Vacancy posted 4 hours ago
Similar jobs that could be interesting for youBased on the Staff Product Security Engineer in Richmond, VA vacancy
$180k - $220k
...your recruiter to learn more. Base pay range $180,000.00/yr - $220,000.00/yr Additional compensation types Stock options Product Security Engineer We are hiring a Product Security Engineer who can make real security changes in the codebase and infrastructure, not bolt...SuggestedFull timeRemote workVisa sponsorship$30 - $50 per hour
...Role Overview As a Product Security Engineer, you will embed security into the software lifecycle for platforms that handle AI/ML data operations. You will help secure services supporting data labeling, content safety labeling, RLHF evaluation, and model evaluation tooling...SuggestedHourly payRemote work$500 per month
...Owlet is changing the world of parenting with meaningful products that truly make a difference for millions around the world. Owlet... ...mission at: We are looking for a seasoned Senior Product Security Engineer to lead and advance our product and application security initiatives...SuggestedRemote workWork from homeFlexible hours$40 per hour
...train AI models. In this role, you will evaluate AI-generated security content, solve technical cybersecurity problems, and provide feedback... ...testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat intelligence, or similar) Some...SuggestedHourly payFull timePart timeRemote work$118.72k - $190.04k
...rapidly growing company supporting more than 90% of Fortune 500 companies. The Red Hat Product Security Compliance team is seeking a knowledgeable and proactive Product Security Engineer to achieve our security and compliance objectives.The team is growing and we have a...SuggestedPermanent employmentFull timeContract workWork experience placementWork at officeRemote workWork from homeWorldwideFlexible hours$200k - $250k
...A leading fintech company is seeking a Security Engineer to enhance its information security measures. The role involves partnering with product teams, conducting threat modeling, and analyzing code vulnerabilities. The ideal candidate should have experience with cloud...Remote work$100k - $172.5k
...more at Job Function: Technology Enterprise Strategy & Security Job Sub Function: Solution Architecture Job... ...We are searching for the best talent for a Principal Product Security Engineer to be located in Danvers, MA or Raritan, NJ. Remote work...Full timeTemporary workWork at officeLocal areaImmediate startRemote work3 days per week$140k - $165k
...A leading energy software company in the United States seeks a Senior Product Security Engineer to enhance its security practices while actively contributing to goals of decarbonization. Responsibilities include supporting the Secure Software Development Lifecycle and...- Red Hat, Inc. is seeking a knowledgeable and proactive Product Security Engineer to achieve security and compliance objectives. You will work towards the security and compliance of systems in FedRAMP environments while collaborating with multi-functional teams remotely....Remote job
$184k - $252k
...BetterCloud is seeking a Staff Product Security Engineer to lead the secure design and implementation of trustworthy products across AI and cloud-native systems. This role involves collaborating with engineering and data teams to integrate security practices throughout...- ...create the software that powers our world. We are seeking a Staff AI Product Security Architect to join our Security Platforms & Architecture... ...for AI integrations, creating architectural patterns that engineering teams can leverage, and ensuring our AI capabilities meet...
- ...A leading software company is hiring a Staff AI Product Security Architect to enhance the security of their AI-powered platform. This senior position involves establishing secure principles for AI integrations and conducting risk assessments. Candidates should have over...
$175k - $200k
...Sr. Staff AI Security Architect page is loaded## Sr. Staff AI Security Architectlocations: Remote... ...with Security, Architecture, Data, Product, Legal, Risk, and Compliance teams, this... ...and business teams. Mentor architects, engineers, and security teams on AI security best...Remote work- ...Security Engineer – Application Security Fragomen is seeking a Security Engineer – Application Security to join our talented Cyber Security team in our Technology Innovation Lab in Pittsburgh. We are looking for professionals who are passionate about security, capable...
- ...OpenAI is looking for a Principal Software Engineer to join the Infrastructure Security team. This role involves designing and implementing high-scale security systems critical to safeguarding OpenAIs technology and user data. Candidates should possess strong software...
- ...A technology-driven company in the United States is seeking a Product Engineer to take ownership of significant product features from conception to execution. The ideal candidate is comfortable tackling various aspects of the technology stack and excels in collaborative...
- ...changes. Help us ignite the future of data synchronization as a Product Engineer at Ditto! We are seeking an experienced software engineer to... ...development teams with delivery requirements and pipelines (security/authentication, integration and test, and production...Remote workFlexible hours
- ...leverage Dittos core IP to create additional products and services that meet the unique needs... ...of data synchronization as a Product Engineer at Ditto! We are seeking an experienced... ...with delivery requirements and pipelines (security/authentication, integration and test,...Work at officeRemote workFlexible hours
- ...Security Engineer (Infrastructure Security) About 1mind 1mind is a platform that deploys multimodal Superhumans for revenue teams. These... ...face, a voice, and a GTM brain equipped with deep technical and product knowledge. They can lead unlimited simultaneous conversations...Full timeRemote workShift work
- ...A leading technology company in the United States is looking for a Cloud Security Engineer (Staff) to define and execute security strategies across multi-cloud and hybrid environments. The successful candidate will focus on preventative security controls, design complex...
- ...development lifecycle. Visit h1.co to learn more about us. Product Engineering plays a pivotal role in developing and delivering our... ...reliability, observability, testing, and data quality Ensure data security, integrity, and compliance with governance and regulatory...Flexible hours
$200k - $240k
...here. Small to medium sized business owners are the primary engine of wealth creation in the modern economy. The asset they build... ...growing team and help shape the way we develop, deploy, and operate production quality systems. In this role, your work will make a...Remote workHome officeDay shift- ...stakeholders, and contribute to an exceptional customer experience. Who You'll Work With You'll join a team of expert Product Support Engineers within Teradata's Global Support Organization, which provides 24/7 technical support to customers worldwide. The team...Permanent employmentWorldwideFlexible hoursShift work
- ...BitMEX is looking for a Product Engineering Manager to lead a team of Full Stack Web Engineers. You will focus on building engaging user experiences while managing product development across the organization. Candidates should possess at least 10 years of experience, with...Remote work
$15 per hour
...Partners and Andreessen Horowitz and with a rapidly growing team of engineers, scientists, construction veterans, and Enterprise go-to-market... ...the $15T Construction Industry! The Role As the Director of Product Engineering, you will manage a team of engineers and managers...$150k - $200k
...ASG IT & Security Engineer for Applied AI Remote Company Description ASG is an unconventional group of market-leading SaaS software companies... ...with business teams to automate processes and unlock productivity at scale. Support context layer data readiness for enterprise...Remote work$197k - $266.8k
...because of the platform’s flexibility, security and privacy compliance. Organizations... .... What We Do Mapbox is looking for a Staff Cloud Security Engineer to join our Security & Compliance... ...assessments of new vendor integrations and product launches, and facilitate a bug bounty...Full timeRemote work$98.9k
...What you can expect The Security Engineer is responsible for security design and reviews across our products and services. The ideal candidate brings broad technical expertise and hands-on experience in end-to-end product security. In this role, you'll collaborate...Work at officeRemote work- ...Security Management Specialist Seeking a Security Management Specialist with strong expertise in securing and managing enterprise environments. The ideal candidate will have hands-on experience with HashiCorp Vault, Terraform, RHEL, and Ansible, and will contribute...2 days per week
$40 - $60 per hour
...A security technology firm is seeking a Senior Loss Prevention IT Security Engineer. This role requires expertise in installing and programming systems like Genetec and network troubleshooting with a focus on access control and CCTV systems. Candidates should have 8+ years...Hourly payContract work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Staff Product Security Engineer. Be the first to apply!
Related searches
- assistant engineer Richmond, VA
- engineering aide Richmond, VA
- staff engineer Richmond, VA
- technology administrator Richmond, VA
- senior staff systems engineer Richmond, VA
- senior software design engineer Richmond, VA
- data center design engineer Richmond, VA
- new product engineer Richmond, VA
- design engineer Richmond, VA
- product design engineer Richmond, VA


