Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Product Security Engineer

Collective

About Collective

Collective is on a mission to redefine the way businesses-of-one work. Our technology and team of trusted advisors help members achieve financial independence by taking care of everything from business incorporation to accounting, bookkeeping, tax services, and access to a thriving community, all in one integrated platform. We believe in empowering self-employed people to enjoy the same tax savings that big companies get, so they can focus on their passion, not paperwork.

Featured in Forbes, Business Insider, Yahoo, Bloomberg, Financial Times, TechCrunch, and more. We are backed by General Catalyst, Sound Ventures (Ashton Kutcher and Guy Oseary), QED Investors, Google’s Gradient Ventures, Expa, and other investors who have financed iconic companies like YouTube, Substack, Twitch, Box, Hims, Instacart, and Lyft.

About the role

We’re hiring a Product Security Engineer to build Collective’s application security program — with AI agents at the center of it from day one. This is not a legacy appsec role where you triage a scanner queue by hand: you’ll design and operate an agentic appsec pipeline where automated security testing across the stack — static analysis, dynamic testing, and dependency scanning — combines with AI-driven triage and automated security review of code changes to give engineering teams fast, high-signal feedback. Alongside the program, you’ll drive vulnerability remediation across the platform — from finding to verified fix — and make targeted code changes that eliminate whole classes of vulnerabilities rather than patching them one at a time. You’ll work closely with product engineers on a platform that handles our members’ financial and tax data, where the cost of a missed vulnerability is real.

What you’ll do
  • Build and operate an agentic application security program: the full testing stack — SAST, DAST, and software composition analysis (SCA) — integrated into CI/CD, LLM-based triage that separates real findings from noise, and automated security review of pull requests — so security feedback arrives in minutes, not review cycles.

  • Drive vulnerability remediation end to end: triage and rate findings from scanners, penetration tests, and researchers; route fixes to owning teams; track them to closure against SLAs; and verify that fixes actually close the hole.

  • Eliminate vulnerability classes at the root: ship secure defaults, paved-path libraries, and framework-level fixes so the easy way to write a feature is also the safe way — targeted, well-scoped code changes in the product codebase.

  • Lead threat modeling and security review for new features and platform changes, engaging with product engineers early in design rather than at the end — and automate the practice over time, so threat models are living documents that agents draft and update as the system changes rather than point-in-time artifacts.

  • Tune and evolve the program’s signal quality: new rules, better prompts, fewer false positives — treating the agentic pipeline itself as a product you iterate on.

  • Stay current on the vulnerability landscape relevant to a fintech platform handling sensitive financial and tax data, and translate what matters into concrete program changes.

What you’ll bring
  • 4+ years of security engineering experience with real depth in application security: you know the major vulnerability classes cold — how they’re introduced, exploited, and durably fixed — and you’ve improved the security posture of a production platform, not just reported on it.

  • Hands‑on experience with SAST, DAST, and SCA tooling and CI/CD integration — Semgrep, CodeQL, Bandit, OWASP ZAP, Burp Suite, or equivalent — including the judgment to know which findings matter.

  • Genuine enthusiasm for building with LLMs and AI agents: you’ve used them to automate security work (or are visibly on your way there), you can write and evaluate the prompts and workflows that make agentic tooling reliable, and you treat AI as leverage rather than a threat to the craft.

  • Enough software engineering skill to make confident, well‑scoped changes in a production codebase — reading unfamiliar code, shipping a paved-path library, fixing a vulnerability pattern across a service (we run Python/Django on AWS). Building large systems from scratch is not the center of this role; landing precise changes in someone else’s code is.

  • Experience driving remediation through teams you don’t manage: clear writeups, severity calls you can defend, and the persistence to get fixes over the line without burning relationships.

  • Product empathy: security feedback that engineers act on is feedback shaped for how they work — you optimize for fixed vulnerabilities, not filed tickets.

What we offer
  • Hybrid Work Model: Based in San Francisco with a balance of in-office and remote flexibility.

  • Fresh Lunch: Provided on in-office days.

  • Commuter Support: $150 monthly reimbursement for transit expenses.

  • Health & Wellness: $200 quarterly reimbursement to support your well-being.

  • Time Off: Flexible PTO plus 14 company holidays.

  • Comprehensive Coverage: 100% medical, dental, and vision for employees; 75% coverage for dependents.

  • Parental Leave: 16 weeks fully paid.

  • Retirement & Ownership: 401k plan plus an equity package.

  • Team Connection: Quarterly virtual events and an annual in-person summit.

#J-18808-Ljbffr
Vacancy posted 18 hours ago
Similar jobs that could be interesting for youBased on the Product Security Engineer in San Francisco, CA vacancy
  •  ...identity verification infrastructure where security isn't a layer we add later, it's core to...  .... As AI tooling expands what engineers can build and how fast they can build it...  .... What you'll work on This is a product security role embedded in a generalist security... 
    Suggested
    Full time
    For contractors
    Internship
    Relocation package

    Persona Identities, Inc

    San Francisco, CA
    5 days ago
  • $188k - $282k

     ...generational company at a true inflection point. We have strong product-market fit and world-class investor support. We're...  ...getting started. Role Overview As a Senior Software Engineer on the Product Security team at Harvey, you'll be a key technical contributor... 
    Suggested
    Work experience placement

    Harvey

    San Francisco, CA
    5 days ago
  • $125.64k

     ...Security Engineer We are looking for an early-career Security Engineer to join our Product Security team, someone who has a builder's mindset, is eager to learn, and is excited to contribute to both planned initiatives and dynamic, real-time security needs with enough... 
    Suggested
    Full time
    Work at office
    Local area
    Remote work
    Night shift

    Chime - San Francisco, CA, US

    San Francisco, CA
    3 days ago
  •  ...Our First Product Security-Focused Engineer Takes high-level direction (e.g., "identify top five security-related gaps for AX") and drives to results. Success looks like a LanceDB platform that follows security-related best practices, and an ongoing partnership with... 
    Suggested

    LanceDB

    San Francisco, CA
    4 days ago
  •  ...humble and collaborative; turn zerotoone ideas into real products, and you "get stuff done" end-to-end. You use AI to...  ...next. About the team Airwallex's Information Security team partners closely with engineering, IT, and other stakeholders to protect our systems,... 
    Suggested
    Worldwide

    Airwallex

    San Francisco, CA
    3 days ago
  • $208k - $312k

     ...Product Security Engineer Hybrid - San Francisco, New York City, London, Berlin About the Role: Traditional product security teams work one report at a time: a person triages a bug bounty submission, validates it, reproduces it, and hands it off for a fix. That... 
    Work at office
    Remote work
    Work from home
    Monday to Friday
    Flexible hours

    c e r e m o n y

    San Francisco, CA
    5 days ago
  • $122.9k - $216.3k

    The Opportunity Adobe's Security Partnership Product Engineering (SPPE) team is hiring a mid-level engineer to build the AI-powered platforms that help secure our products. The team's tools include a threat modeling capability that delivers analysis in seconds and a new... 
    Temporary work
    Local area
    Worldwide

    Adobe

    San Francisco, CA
    3 days ago
  • $175k - $215k

     ...and we're looking for someone to make sure it's built securely from the ground up. As part of the Product Security team, you won't just be securing the future, you'll be building it, working closely with engineering teams, shipping production code, designing secure architectures... 
    Temporary work

    Crusoe

    San Francisco, CA
    2 days ago
  • $208k - $312k

     ...About the Role: We are looking for a Product Security Engineer to join our security team to drive critical product security initiatives across Vercel’s products and platform. Your core focus will be on threat modeling, open-source software security, secure code review... 
    Work at office
    Remote work
    Work from home
    Monday to Friday
    Flexible hours

    Vercel Corp

    San Francisco, CA
    18 hours ago
  •  ...Product Security Engineer BackOps AI transforms supply-chain operations with agentic AI that automates complex workflows, freeing teams to focus on what matters most. Headquartered in the San Francisco Bay Area, we foster a culture of innovation, ownership, and measurable... 
    Work at office
    Flexible hours

    BackOps

    San Francisco, CA
    17 hours ago
  • $130k - $215k

     ...Astranis satellites provide dedicated, secure networks to highly-sophisticated customers...  ...and Fidelity, and employs a team of 450 engineers and entrepreneurs. Astranis designs,...  ...headquarters in Northern California, USA. Product Security Engineer As a Product Security... 
    Permanent employment
    Flexible hours

    Astranis

    San Francisco, CA
    3 days ago
  • $180k - $247k

     ...Secure Every Identity, from AI to Human Identity is the key to unlocking the potential of AI. Okta secures AI by building...  ...building a world where Identity belongs to you. The Staff Product Security Engineer Opportunity The Security team's mission is to... 
    Local area
    Remote work
    Worldwide
    Flexible hours

    Okta, Inc.

    San Francisco, CA
    4 days ago
  •  ...About The Role We’re looking for a hands-on staff security engineer to play a key role in building Rippling’s Product Security program. Rippling’s product’s scope provides a unique set of security challenges, but our management is especially supportive of security... 
    Work at office
    Relocation
    3 days per week
    1 day per week

    Rippling

    San Francisco, CA
    17 hours ago
  • $188k - $282k

     ...generational company at a true inflection point. We have strong product-market fit and world-class investor support. We’re...  ...re just getting started.Role OverviewAs a Senior Software Engineer on the Product Security team at Harvey, you'll be a key technical contributor... 
    Flexible hours

    Harvey

    San Francisco, CA
    7 days ago
  • $180k - $258k

     ...Curious to learn more about our story? Check out this blog post written by our founders. Role OverviewWe are looking for a Product Security Engineer to join our team and act as a champion for security within our product engineering organization. You will be responsible... 
    Shift work

    Candid Health

    San Francisco, CA
    6 days ago
  • $250k - $285k

     ...-performing team that believes in each other, come build with us at Crusoe. About This Role We’re seeking a Staff Product Security Engineer with deep AI/ML security expertise to strengthen Crusoe’s security posture across applications, infrastructure, and distributed... 
    Temporary work

    Crusoe

    San Francisco, CA
    15 days ago
  • $220k - $330k

     ...generational company at a true inflection point. We have strong product-market fit and world-class investor support. We’re...  ...re just getting started.Role OverviewAs a Staff Software Engineer on the Product Security team at Harvey, you'll play a critical role in shaping how... 
    Flexible hours

    Harvey

    San Francisco, CA
    7 days ago
  •  ...deliver predictive and generative AI, and enables leaders to secure their AI assets. Organizations worldwide rely on DataRobot...  ...in the future. DataRobot is seeking an experienced Staff Product Security Engineer to drive security innovation while ensuring our platform meets... 
    Full time
    Local area
    Worldwide
    Flexible hours

    DataRobot

    San Francisco, CA
    7 days ago
  •  ...60k - $225kA GPU cloud computing startup, revolutionizing the computing landscape, is looking to hire a Principal Product and Application Security Engineer to join their team as a founding engineer. This startup has hit a $1B valuation, closed their Series A funding, and... 
    Full time

    Motion Recruitment

    San Francisco, CA
    3 days ago
  •  ...identity verification infrastructure where security isn't a layer we add later, it's core to...  ...'ll work alongside experienced security engineers to defend Persona's people, devices, and...  ...PII or sensitive data was the core product The team Small and senior by design... 
    Full time
    For contractors
    Internship
    Work at office
    Work from home
    Relocation package
    Monday to Friday
    Flexible hours

    Persona Identities, Inc

    San Francisco, CA
    4 days ago
  • $237.6k - $297k

     ...We are seeking a highly technical Security Engineer to join our Product Security team. This role is integral to ensuring the security and integrity of our products and services. You will conduct in-depth code reviews, implement security best practices, and influence the... 
    Full time

    Scale AI

    San Francisco, CA
    4 days ago
  • $320k - $405k

     .... Our team is a quickly growing group of committed researchers, engineers, policy experts, and business leaders working together to build beneficial AI systems. About the role Corporate Security protects the environment Anthropic's people work in every day: their... 
    Work at office
    Visa sponsorship
    Flexible hours

    Menlo Ventures

    San Francisco, CA
    18 hours ago
  • $300k - $320k

     ...growing group of committed researchers, engineers, policy experts, and business leaders working...  ...AI systems. About the Team The Security Engineering team's mission is to...  ...practices, or partnering with our research and product teams, we are committed to operating as... 
    Work at office
    Visa sponsorship
    Flexible hours

    Talanto

    San Francisco, CA
    18 hours ago
  • $220k - $260k

     ...rely on every day. We are looking for a hands‑on Corporate Security Engineer to own and improve the technical controls that keep our...  ...tooling across macOS and enterprise environments. Write production‑quality scripts and automation in Python or Bash, and have shipped... 
    Work at office
    Local area

    Monograph

    San Francisco, CA
    18 hours ago
  • $128.9k - $180k

     ...we can't wait to meet you. WHAT YOU'LL DO As a Senior Security Engineer on the Enterprise Security team, you'll protect Braze...  ...infrastructure operating at the center of cloud operations, product, app security, and system architecture. That includes developing... 
    Work at office
    Local area
    Flexible hours

    Braze

    San Francisco, CA
    3 days ago
  • $155k - $400k

     ...native future. About The Role The Security Team is responsible for securing all...  ...security problems with creativity and an engineering mindset. We work at a company with a strong developer culture, building a product that millions of developers genuinely love... 
    Hourly pay

    Sentry

    San Francisco, CA
    4 days ago
  •  ...About the Team Security is at the foundation of OpenAI's mission to ensure that artificial...  ...OpenAI's technology, people, and products. We are technical in what we build but are...  .... About the Role As a Security Engineer, Application Security you will be responsible... 
    Work at office
    Remote work
    Relocation package

    OpenAI

    San Francisco, CA
    1 day ago
  •  ...experiences that thousands of developers use to create their own products. Plaid powers the tools millions of people rely on to live a...  ...New York, Washington D.C., London and Amsterdam. Security Engineering is the engineering function inside the Plaid security org... 
    Full time
    Work experience placement
    Local area

    Plaid Inc.

    San Francisco, CA
    1 day ago
  •  ...is based in San Francisco and includes engineers, designers, and operators from Airbnb, Palantir...  ...candidate we're looking to join our product team: Product focused: There are...  ...engineers have built a live-streaming security system for their parents' new house, a database... 

    Conversion Services

    San Francisco, CA
    4 days ago
  •  ...Job Opportunity PromptArmor is an AI security company based in San Francisco. We help...  ...the novel risks introduced by AI in their products and across their assets and ecosystem....  ...wasn't built to solve. We're hiring engineers across the stack to help us build the platform... 

    PromptArmor

    San Francisco, CA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Product Security Engineer. Be the first to apply!