Talent.com
Senior Product Security Engineer, Secure Design
Senior Product Security Engineer, Secure DesignDigitalOcean, LLC • San Francisco, CA, United States
Senior Product Security Engineer, Secure Design

Senior Product Security Engineer, Secure Design

DigitalOcean, LLC • San Francisco, CA, United States
9 hours ago
Job type
  • Full-time
Job description

Senior Product Security Engineer, Secure Design

Dive in and do the best work of your career at DigitalOcean. Journey alongside a strong community of top talent who are relentless in their drive to build the simplest scalable cloud. If you have a growth mindset, naturally like to think big and bold, and are energized by the fast-paced environment of a true industry disruptor, you’ll find your place here. We value winning together—while learning, having fun, and making a profound difference for the dreamers and builders in the world.

We’re looking for a Senior Product Security Engineer who is passionate about partnering with engineers to assess the security risk of new products and features.

As a member of the Secure Design team, you will report to the Senior Manager of Product Security. Our Secure Design team enables DigitalOcean to build secure‑by‑design products. We leverage strong relationships with both product teams and the rest of security engineering to be successful. Our scope is primarily focused on reviewing early‑stage decisions, helping develop threat models, scaling impact via automation, curating security patterns, authoring security guidance, training, and championing security initiatives.

You will collaborate with other security teams and the rest of DigitalOcean to guide secure architecture design, reduce security risk in the organization, and empower engineers to make informed security decisions. Security at DO means solving incredibly complex problems at a high‑scale that have real impact for our customers, our products, and the larger internet community.

What you’ll do :

Threat model application designs and solutions and provide security risk assessments (70%)

  • Provide deep technical expertise in software and network architecture during holistic assessments of security layers across infrastructure, application, people, and process.
  • Collaborate with product managers, designers, and engineers to threat model and architect secure and resilient systems.
  • Identify the trade‑offs of different solutions and recommend the efficient design to achieve both functional goals and security requirements.
  • Provide hands‑on remediation guidance to development teams.

Cultivate and promote a security culture (20%)

  • Champion an internal security culture (developer training, internal CTFs, etc.).
  • Mentor software engineering teams in security best practices.
  • Help DigitalOcean engineers understand how security events impact them. Do they need to worry about the next Log4j CVE? How does RetBleed impact DigitalOcean’s fleet?
  • Build security tooling and automations to help scale the Product Security team’s practices (10%)

  • Use software architecture and coding patterns to reduce the impact of security issues.
  • Drive architecture, patterns, and processes across engineering that make security the easiest path.
  • Integrate custom security tooling into engineering workflows.
  • What you’ll add to DigitalOcean :

    Required qualifications :

  • Experience leading architectural changes or complex cross team efforts to mitigate security vulnerabilities.
  • Ability to clearly communicate security topics and vulnerability classes (e.g. OWASP Top Ten) and ability to provide actionable direction to product teams.
  • A record of partnering with internal engineering teams to tackle security problems across an entire stack with empathy and creativity. Engineering teams are our partners, not our adversaries.
  • Working knowledge of modern development concepts (virtualized environments, containerization, continuous integration + delivery).
  • Preferred qualifications :

  • 3+ years experience guiding software teams on secure architecture design.
  • Experience building or reviewing threat models and ability to craft malicious user, attacker, and abuse / misuse cases.
  • Working knowledge of hardware and software supply chain security.
  • Compensation Range :

  • $161,000 - $220,000
  • This is a remote role.
  • Why You’ll Like Working for DigitalOcean

  • We innovate with purpose. You’ll be a part of a cutting‑edge technology company with an upward trajectory, who are proud to simplify cloud and AI so builders can spend more time creating software that changes the world. As a member of the team, you will be a Shark who thinks big, bold, and scrappy, like an owner with a bias for action and a powerful sense of responsibility for customers, products, employees, and decisions.
  • We prioritize career development. At DO, you’ll do the best work of your career. You will work with some of the smartest and most interesting people in the industry. We are a high‑performance organization that will always challenge you to think big. Our organizational development team will provide you with resources to ensure you keep growing. We provide employees with reimbursement for relevant conferences, training, and education. All employees have access to LinkedIn Learning’s 10,000+ courses to support their continued growth and development.
  • We care about your well‑being. Regardless of your location, we will provide you with a competitive array of benefits to support you from our Employee Assistance Program to local Employee Meetups to flexible time off policy, to name a few. While the philosophy around our benefits is the same worldwide, specific benefits may vary based on local regulations and preferences.
  • We reward our employees. The salary range for this position is based on market data, relevant years of experience, and skills. You may qualify for a bonus in addition to base salary; bonus amounts are determined based on company and individual performance. We also provide equity compensation to eligible employees, including equity grants upon hire and the option to participate in our Employee Stock Purchase Program.
  • DigitalOcean is an equal‑opportunity employer. We do not discriminate on the basis of race, religion, color, ancestry, national origin, caste, sex, sexual orientation, gender, gender identity or expression, age, disability, medical condition, pregnancy, genetic makeup, marital status, or military service.
  • #J-18808-Ljbffr

    Create a job alert for this search

    Product Design Engineer • San Francisco, CA, United States

    Related jobs
    Staff Product Security Engineer

    Staff Product Security Engineer

    Rippling • San Francisco, CA, United States
    Full-time
    Rippling gives businesses one place to run HR, IT, and Finance.It brings together all of the workforce systems that are normally scattered across a company, like payroll, expenses, benefits, and co...Show more
    Last updated: 20 days ago • Promoted
    Senior Security Engineer (Product and Platform Security)

    Senior Security Engineer (Product and Platform Security)

    Box, Inc. • Redwood City, CA, United States
    Full-time
    Box (NYSE : BOX) is the leader in Intelligent Content Management.Our platform enables organizations to fuel collaboration, manage the entire content lifecycle, secure critical content, and transform ...Show more
    Last updated: 6 days ago • Promoted
    Security Engineer, Product Security

    Security Engineer, Product Security

    Scale AI, Inc. • San Francisco, CA, United States
    Full-time
    We are seeking a highly technical Security Engineer to join our Product Security team.This role is integral to ensuring the security and integrity of our products and services.You will conduct in-d...Show more
    Last updated: 30+ days ago • Promoted
    Senior Device Security Engineer

    Senior Device Security Engineer

    Tools for Humanity • San Francisco, CA, United States
    Full-time
    Senior Device Security Engineer.World is a network of real humans, built on privacy‑preserving proof‑of‑human technology, and powered by a globally inclusive financial network that enables the free...Show more
    Last updated: 30+ days ago • Promoted
    Senior Product Security Engineer

    Senior Product Security Engineer

    Crusoe • San Francisco, CA, US
    Full-time
    Crusoe's mission is to accelerate the abundance of energy and intelligence.We’re crafting the engine that powers a world where people can create ambitiously with AI — without sacrif...Show more
    Last updated: 30+ days ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    Trov • San Francisco, CA, United States
    Full-time
    At Pave, we're building the industry’s leading compensation platform, combining the world's largest real-time compensation dataset with deep expertise in AI and machine learning.Our platform is per...Show more
    Last updated: 30+ days ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    Qualified • San Francisco, CA, United States
    Full-time
    Qualified is the Agentic Marketing Platform for B2B companies.With Piper the AI SDR Agent, Qualified offers a whole new way to grow inbound pipeline. Piper operates across both the website and email...Show more
    Last updated: 14 days ago • Promoted
    Senior Firmware Engineer - Secure SSD & Embedded Security

    Senior Firmware Engineer - Secure SSD & Embedded Security

    X-PHY Inc • San Francisco, CA, United States
    Full-time
    X-PHY is an industry leader in cybersecurity technology, delivering cutting-edge solutions that proactively protect businesses from evolving cyber threats. As a hardware-based cybersecurity company,...Show more
    Last updated: 30+ days ago • Promoted
    Security Engineer, Product Security

    Security Engineer, Product Security

    Scale AI • San Francisco, CA, United States
    Full-time
    We are seeking a highly technical Security Engineer to join our Product Security team.This role is integral to ensuring the security and integrity of our products and services.You will conduct in-d...Show more
    Last updated: 30+ days ago • Promoted
    Software Engineer, Product Security

    Software Engineer, Product Security

    Harvey • San Francisco, CA, United States
    Full-time
    At Harvey, we’re transforming how legal and professional services operate — not incrementally, but end-to-end.By combining frontier agentic AI, an enterprise-grade platform, and deep domain experti...Show more
    Last updated: 9 hours ago • Promoted • New!
    Senior Product Engineer - Security and Compliance

    Senior Product Engineer - Security and Compliance

    Rippling • San Francisco, CA, United States
    Full-time
    Senior Software Engineer - Security and Compliance.Rippling gives businesses one place to run HR, IT, and Finance.It brings together all of the workforce systems that are normally scattered across ...Show more
    Last updated: 30+ days ago • Promoted
    Product Security Engineer

    Product Security Engineer

    Databricks Inc. • San Francisco, CA, United States
    Full-time
    RDQ326R24 - This role can be based remotely anywhere in the United States.The Product Security Team's mission is to Left-shift SDLC (Security Development Lifecycle) processes for ALL code written i...Show more
    Last updated: 30+ days ago • Promoted
    Senior Offensive Security Engineer

    Senior Offensive Security Engineer

    Chime • San Francisco, CA, United States
    Full-time
    We are seeking a Senior Security Engineer to build and lead our Offensive Security program.In this role, you will attack Chime’s services, applications, and infrastructure to discover security issu...Show more
    Last updated: 30+ days ago • Promoted
    Senior Product Security Engineer

    Senior Product Security Engineer

    Epoch Biodesign • San Francisco, CA, United States
    Full-time
    Crusoe Energy is on a mission to unlock value in stranded energy resources through the power of computation.Take a look at what we do! https : / / www. We aim to align the long term interests of the cli...Show more
    Last updated: 30+ days ago • Promoted
    Product Security Engineer

    Product Security Engineer

    Casca • San Francisco, CA, United States
    Full-time
    Casca is building AGI for banking.We’re replacing decades-old legacy systems with AI-native technology that automates 90% of the manual work humans once had to do. We're seeking a Product Security E...Show more
    Last updated: 30+ days ago • Promoted
    Senior Firmware Engineer - Secure SSD & Embedded Security

    Senior Firmware Engineer - Secure SSD & Embedded Security

    FLEXXON • San Francisco, CA, United States
    Full-time
    Senior Firmware Engineer - Secure SSD & Embedded Security.X-PHY is an industry leader in cybersecurity technology, delivering cutting‑edge solutions that proactively protect businesses from evolvin...Show more
    Last updated: 30+ days ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    Hayden AI • San Francisco, CA, United States
    Full-time
    At Hayden AI, we are on a mission to harness the power of artificial intelligence and machine learning to transform the way governments and businesses address real-world challenges.From optimizing ...Show more
    Last updated: 30+ days ago • Promoted
    Senior Manager, Product Security

    Senior Manager, Product Security

    Xperi • San Jose, CA, United States
    Full-time
    Xperi invents, develops and delivers technologies that create extraordinary experiences at home and on the go for millions of people around the world. Powering billions of consumer electronics, conn...Show more
    Last updated: 30+ days ago • Promoted