Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Product Security Engineer

$180k - $258k

Candid Health

What we do

We're fixing one of the most broken and costly pieces of the US healthcare system: medical billing.


Today, healthcare providers spend over $250B each year on administrative overhead just to get paid by insurance. Medical billing is expensive because it's nuanced and hard - maybe ~100x harder than credit card payment processing - and because it's traditionally done by armies of humans who track and manage complex rules and processes specific to individual insurance companies with little or no supporting software. We're rethinking medical billing from the ground up, building software backed by best-in-class data science (and, soon, a dash of machine learning) to automate much of this complexity so healthcare providers can get paid dramatically more easily and inexpensively.

We were in the Y Combinator W20 batch and have since been well funded by a world-class group of funds (8VC, First Round Capital, BoxGroup, Oak HC/FT) + angel investors. We're now helping our customers treat opioid addiction, provide holistic care for women, lose weight, increase access to mental health care, and much more. This is such important and gratifying work; we can't wait for you to join our team and help support some of the most important innovation happening in healthcare today!

Curious to learn more about our story? Check out this blog post written by our founders.


Role Overview

We are looking for a Product Security Engineer to join our team and act as a champion for security within our product engineering organization. You will be responsible for ensuring our products are designed, developed, and maintained with security as a core pillar. You will work in partnership with development squads to perform threat modeling, guide secure architecture decisions, and automate security gates in our CI/CD pipelines.

Key Responsibilities
  • Security by Design: Lead threat modeling sessions during the architectural design phase of new features to identify potential risk vectors early.
  • Secure Development Lifecycle (SDLC): Drive the adoption of "Shift Left" security practices, integrating security tooling (SAST, DAST, SCA) directly into developer workflows.
  • Vulnerability Management: Triage, prioritize, and partner with engineering teams to remediate vulnerabilities found in code, third-party libraries, and cloud infrastructure.
  • Security Tooling & Automation: Build, maintain, and tune security automation tools to reduce friction for developers while maintaining high-security standards.
  • Secure Coding Standards: Develop and deliver training, coding patterns, and security guardrails to help engineering teams build resilient, secure-by-default products.
  • Incident Response Support: Assist in identifying the root cause of security incidents related to product features and contribute to post-incident remediation and architectural improvements.
  • Supply Chain Security: Build out processes and automation to ensure the security of open-source dependencies.
Required Qualifications
  • Experience: 5+ years of experience in software engineering or security engineering, specifically focusing on product security or application security.
  • Technical Skills:
    • Proficiency in one or more programming languages (e.g., Python, Go, Java, or JavaScript).
    • Deep understanding of modern web/cloud architecture (e.g., APIs, Microservices, Kubernetes, AWS/GCP/Azure).
    • Familiarity with the OWASP Top 10 and common exploitation techniques.
  • Collaboration: Proven ability to influence and collaborate with engineering teams without hindering development velocity.
  • Problem Solving: Strong analytical skills to evaluate complex systems and design innovative, practical security solutions.
Preferred Skills (Nice to Have)
  • Experience with Infrastructure as Code (IaC) security (e.g., Terraform, CloudFormation).
  • Experience in designing cryptographic implementations or secure authentication/authorization flows (e.g., OAuth, OIDC, JWT).
  • Knowledge of compliance frameworks relevant to our industry (e.g., SOC2, ISO27001, HIPAA).

Pay Transparency

The estimated starting annual salary range for this position is $180,000 - 258,000 USD. The listed range is a guideline from Pave data, and the actual base salary may be modified based on factors including job-related skills, experience/qualifications, interview performance, market data, etc. Total compensation for this position may also include equity, sales incentives (for sales roles), and employee benefits. Given Candid Health's funding and size, we heavily value the potential upside from equity in our compensation package. Further note that Candid Health has minimal hierarchy and titles, but has broad ranges of experience represented within roles.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Product Security Engineer in San Francisco, CA vacancy
  • $130k - $180k

     ...About the role We are looking for an early-career Security Engineer to join our Product Security team, someone who has a builder's mindset, is eager to learn, and is excited to contribute to both planned initiatives and dynamic, real-time security needs with enough... 
    Suggested
    Full time
    Work at office
    Local area
    Remote work
    Night shift

    Chime Financial, Inc

    San Francisco, CA
    2 days ago
  • $117.2k - $176.7k

     ...to ensure you are not duplicating efforts. Job Category Product Job Details About Salesforce Salesforce is the #1...  ...Salesforce. Overview of the Role: We are looking for a Product Security Engineer to join our Salesforce Product Security Advisors team. You... 
    Suggested

    Salesforce.Com Inc

    San Francisco, CA
    21 hours ago
  • A leading tech organization is seeking a Product Security Engineer to lead security initiatives and safeguard its innovative products. This hands-on role involves embedding security throughout the development lifecycle, performing in-depth code reviews, and managing vulnerability... 
    Suggested

    Tools for Humanity

    San Francisco, CA
    2 days ago
  • $180k - $285k

     ...Astranis satellites provide dedicated, secure networks to highly-sophisticated customers...  ...and Fidelity, and employs a team of 450 engineers and entrepreneurs. Astranis designs,...  ...in Northern California, USA. Senior Product Security Engineer As a Senior Product... 
    Suggested
    Permanent employment
    Flexible hours

    Astranis

    San Francisco, CA
    6 days ago
  • $180k - $240k

     ...Astranis satellites provide dedicated, secure networks to highly-sophisticated customers...  ...and Fidelity, and employs a team of 450 engineers and entrepreneurs. Astranis designs,...  ...in Northern California, USA. Senior Product Security Engineer As a Senior Product... 
    Suggested
    Permanent employment
    Flexible hours

    Astranis

    San Francisco, CA
    21 hours ago
  • $221k - $250k

     ...hardware, software, AI, cryptography, mobile engineering, and global operations. Our teams come from OpenAI...  ...the Time AI 100. Learn more about the newest product launches from our Liftoff event. About the Team The Security team at Tools for Humanity operates at a... 
    Flexible hours

    Tools for Humanity

    San Francisco, CA
    4 days ago
  • $162k - $260k

     ...Aurora, visit aurora.tech or follow us on LinkedIn. Aurora's Product Security team's mission is to discover, mitigate, and prevent...  ...responsible for developing, contributing and documenting security engineering processes and the resulting product security requirements... 
    Work experience placement
    Work at office
    Local area
    3 days per week

    Aurora Innovation

    San Francisco, CA
    4 days ago
  •  ...re humble and collaborative; turn zerotoone ideas into real products, and you "get stuff done" end-to-end. You use AI to work smarter...  ...you, let's build what's next. Your role As a Senior Security Engineer at Airwallex, you will be a trusted member of the... 
    Worldwide

    Airwallex

    San Francisco, CA
    4 days ago
  • $107.7k - $285.9k

     ...development - powered by Copilot to build, scale, and deliver secure software. Over 180 million developers, including more than...  ...world builds secure software, and we are looking for a Product Security Engineer III to join our Product Security Engineering team. This is... 
    Remote work

    GitHub

    San Francisco, CA
    4 days ago
  • $187k - $260k

     ...organizations, including 80% of the Fortune 100, rely on Airtable to transform how work gets done. Join Airtable as a Product Security Engineer and play a pivotal role in shaping the security of our rapidly evolving platform as we expand our AI and LLM-powered offerings... 
    For contractors
    Live in
    Remote work

    Airtable

    San Francisco, CA
    6 days ago
  • $144.8k - $261.45k

     ...one of the world's most innovative software companies whose products touch billions of people around the world, Adobe empowers everyone...  ...big idea could be yours. The Opportunity The Adobe Security Engineering Partnerships (SEP) team is seeking a Senior Product Security... 
    Temporary work
    Local area
    Worldwide

    Adobe

    San Francisco, CA
    4 days ago
  • A leading mental health solutions company is seeking a security engineer to enhance product security and compliance. The role involves analyzing application vulnerabilities, integrating security practices across development, and collaborating with engineering teams. Candidates... 
    Remote work

    Modern Health

    San Francisco, CA
    6 days ago
  •  ...workplace. The Role Maintaining the security and privacy of our users is paramount....  ...This role offers an opportunity to apply engineering and security skills to make a direct...  ...compliance posture. This role is part of the Product Security (ProdSec) team, reports to the... 
    Full time
    Remote work
    Flexible hours

    Modern Health

    San Francisco, CA
    2 days ago
  • $175k - $215k

     ...and we're looking for someone to make sure it's built securely from the ground up. As part of the Product Security team, you won't just be securing the future, you'll be building it, working closely with engineering teams, shipping production code, designing secure architectures... 
    Temporary work

    Crusoe

    San Francisco, CA
    1 day ago
  •  ...modern civilization. Yet vulnerabilities threaten its integrity, security, and resilience. We are on a mission to secure the world's...  .... About This Role We're looking for a Security Product Engineer to work directly with customers to deploy and operationalize... 
    Work at office
    Relocation

    depthfirst

    San Francisco, CA
    3 days ago
  • $250k - $285k

     ...Staff Product Security Engineer Crusoe is on a mission to accelerate the abundance of energy and intelligence. As the only vertically integrated AI infrastructure company built from the ground up, we own and operate each layer of the stack — from electrons to tokens... 
    Temporary work

    Crusoe

    San Francisco, CA
    3 days ago
  • $200k - $275k

    A leading financial technology company is looking for a security engineer to enhance product security and automate processes. Responsibilities include collaborating with product teams on security measures, conducting threat modeling and analysis, as well as reviewing source... 
    Remote work

    Affirm

    San Francisco, CA
    2 days ago
  • $225k - $275k

     ...hidden fees or compounding interest. Affirm values information security as a critical part of the company’s continued success. Our...  ..., enabling the company to succeed in building honest financial products. The Security team posture increases security and reduces risk... 
    Casual work
    Work at office
    Remote work
    Flexible hours

    Affirm

    San Francisco, CA
    2 days ago
  •  ...identity verification infrastructure where security isn't a layer we add later, it's core to...  .... As AI tooling expands what engineers can build and how fast they can build it...  ...that scale security across every team and product. Partner with product engineers to shape... 
    Full time
    For contractors
    Internship
    Relocation package

    Persona

    San Francisco, CA
    2 days ago
  • $300 per month

     ...energy and intelligence. We’re crafting the engine that powers a world where people can...  ...infrastructure. About This Role At Crusoe, the AI Security Engineer is central to ensuring the...  ..., moving from proof‑of‑concept to production at scale. Secure MLOps & Governance: Establish... 
    Temporary work

    Crusoe Energy Systems LLC

    San Francisco, CA
    2 days ago
  •  ...identity verification infrastructure where security isn't a layer we add later, it's core to...  .... As AI tooling expands what engineers can build and how fast they can build it...  ...problem. What you'll work on This is a product security role embedded in a generalist security... 
    Full time
    For contractors
    Internship
    Relocation package

    Persona

    San Francisco, CA
    2 days ago
  • $180k - $258k

    Candid Health is seeking a Product Security Engineer focused on ensuring security as a core component of our products. The role involves leading threat modeling, collaborating with developers, and managing vulnerabilities, guaranteeing our software is secure by design.... 

    Candid Health

    San Francisco, CA
    21 hours ago
  • $272k - $320k

     ...empower, and be owned by everyone. About the Security team: Well beyond “regular company...  ...and software security. The team of 15+ engineers helps guide, blockchain, device, cloud,...  ...complex security challenges throughout our product lifecycle. As a key architect of our... 
    Flexible hours

    Kubelt

    San Francisco, CA
    2 days ago
  •  ...model reliability and progress. We’re a team of researchers, engineers, academics, and builders from places like UC Berkeley,...  ...focus. About the Role Arena Intelligence is seeking a Founding Product Security Engineer to lead the strategy, design, and hands‑on implementation... 
    Permanent employment
    Work at office

    Arena Intelligence, Inc.

    San Francisco, CA
    21 hours ago
  • A leading mental health technology company is seeking a Security Engineer to ensure the secure design and development of applications. The role involves partnering with product and engineering teams, conducting security reviews, and enhancing automated tooling. Candidates... 

    Headway - Design & Development

    San Francisco, CA
    2 days ago
  • $50 per hour

     ...computational biology. About This Role Crusoe Security & Compliance is hiring a Senior/Staff Application Security Engineer to play a critical role in ensuring the...  ...improvement of our security posture, making our products safer and our customers' data more secure. A... 
    Temporary work

    ProducePay

    San Francisco, CA
    21 hours ago
  • A leading tech company in San Francisco is seeking a Senior/Staff Application Security Engineer to ensure the security of its applications and infrastructure. The role involves integrating security into the software development lifecycle, conducting assessments, and mentoring... 

    Epoch Biodesign

    San Francisco, CA
    2 days ago
  • $151k - $196k

     ...chance to meaningfully shape the future of cardiac health, our company, and your careerAbout This Role:We are seeking a Staff Product Security Engineer with proven experience in the medical device industry. In this role, you will safeguard medical devices by identifying,... 
    Remote work
    Shift work

    El Camino Health

    San Francisco, CA
    3 days ago
  • $217k - $303.9k

    Tensec is seeking a Staff Product Security Engineer in San Francisco, California. The role involves leading the design of secure frameworks and integrating security into engineering workflows. Candidates should have over 8 years of experience in software or application... 
    Remote job

    Tensec

    San Francisco, CA
    3 days ago
  • A leading identity verification company in San Francisco seeks a skilled Product Security Engineer. In this role, you'll drive the vulnerability lifecycle, design scalable security systems, and partner with engineers to ensure secure product development. Candidates should... 
    Relocation package

    Persona

    San Francisco, CA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Product Security Engineer. Be the first to apply!