Applied Methods
~The MetaEngineeringProduct Security Engineer

Product Security Engineer

Product Security Engineers at AI companies sit within engineering organizations and own security across the software development lifecycle—threat modeling, secure code review, vulnerability management, and the security-relevant tooling that engineers depend on. In practice at AI companies, the role frequently extends past pure application security into the surrounding infrastructure and identity layers: securing CI/CD pipelines, designing IAM and secrets management for application access, and reviewing the cloud architecture the application runs on. The boundary with the infrastructure-side security role is genuinely blurry across the population, with most engineers in this slug doing both. AI-specific surfaces—LLM input handling, agent and tool-use boundaries, model-pipeline integrity—are emerging as a meaningful part of the work but sit alongside, not in place of, classical product security. These roles typically sit within security or product engineering organizations, partnering directly with developers to embed security into the build.

$ titles --canonical
Software Engineer, SecuritySecurity Software EngineerProduct Security EngineerStaff Product Security Engineer
Open Jobs50
Companies Hiring31
$02

Skills

What companies are looking for in this role.

$ skills --core

Designing secure software and hardware system architectures for mission-critical platforms

95%

Conducting threat modeling and risk assessments for complex systems

92%

Integrating security requirements throughout software development lifecycle processes

90%

Building and implementing abuse detection systems at scale

88%

Performing code security analysis and vulnerability scanning

85%

Developing and maintaining comprehensive threat models of software systems

80%

Implementing secure multi-tenant SaaS application architecture and tenant isolation

80%

Building kernel-level security detection systems and endpoint monitoring solutions

78%

Designing authentication and authorization protocols for enterprise systems

77%

Designing automated response mechanisms and policy enforcement systems

75%

Implementing software supply chain security and managing software artifacts securely

75%

Conducting security code reviews and applying security patterns across codebases

73%

Building and operating security detection tooling and infrastructure platforms

72%

Integrating security scanning tools into continuous integration and deployment pipelines

70%

Assessing and mitigating third-party integration security risks

68%

Defining and implementing secure software development lifecycle processes

68%

Analyzing attack patterns and translating findings into detection rules and improvements

67%

Building security infrastructure that consumes hardware-based trust primitives

65%

Architecting scalable data pipelines for security telemetry processing

60%
$ skills --emerging

Designing and implementing large language model guardrails and safety mechanisms

88%

Building AI-powered detection systems that identify malicious patterns and classify threats

85%

Architecting agentic system security controls including sandboxing and access control

82%

Implementing model provenance, signing, and artifact integrity verification

62%
$ skills --soft

Collaborating with cross-functional engineering and infrastructure teams on security integration

95%

Establishing secure engineering standards and security mentorship programs across organizations

78%

Communicating complex security concepts to diverse technical and non-technical audiences

72%

Driving organizational alignment on security strategy and architecture decisions

68%

Mentoring junior security engineers and fostering security culture

65%

Balancing security requirements with product velocity and user experience

62%

Supporting enterprise sales and compliance questionnaire responses

58%
$03

Technology

The tools and technologies that define this role.

$ tech --language
Gohigh
Pythonhigh
C/C++moderate
Rustmoderate
TypeScriptmoderate
$ tech --framework
Reactlow
$ tech --platform
AWShigh
Kuberneteshigh
Linuxhigh
GCPmoderate
MongoDBlow
$ tech --tool
SASThigh
SCAhigh
BigQuerymoderate
Claudemoderate
Hexlow
$ tech --concept
eBPFmoderate
GDPRmoderate
ISO 27001moderate
mTLSmoderate
OAuthmoderate
SBOMmoderate
CIS Benchmarkslow
DICElow
EU AI Actlow
ISO 42001low
OIDClow
SAMLlow
$04

Open Jobs

50 open Product Security Engineer jobs across 31 companies.

Helsing1w
Software Engineer, DevSecOps
Washington, DC·Engineering
Abridge2w
Staff Application Security Engineer
SF Office·Engineering
Notion2w
Software Engineer, Security
San Francisco, California·Engineering
Decagon2w
Platform Engineer, Security
San Francisco·Engineering
MongoDB4w
Senior Product Security Engineer, Server
Cork·Engineering
MongoDB4w
Senior Product Security Engineer, Server
Dublin·Engineering
Replit4w
Staff Software Engineer, Fraud
Foster City, CA·Engineering
Replit4w
Staff Software Engineer, Risk
Foster City, CA·Engineering
Replit4w
Senior Software Engineer, Fraud
Foster City, CA·Engineering
Replit4w
Senior Software Engineer, Risk
Foster City, CA·Engineering
Lovable1mo
Staff / Principal Software Engineer, Security
Stockholm·Engineering
Lambda1mo
Security Engineering Intern - Summer 2026
San Francisco Office (Fremont St)·Engineering
Replit1mo
Product Security Architect
Foster City, CA·Engineering
ElevenLabs1mo
Compliance Engineer - EU
London·Engineering
Harvey1mo
Staff Product Security Engineer
San Francisco·Engineering
Harvey1mo
Staff Product Security Engineer
New York·Engineering
CoreWeave1mo
Staff AI Security Engineer
Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA·Engineering
Reflection1mo
Member of Technical Staff - Security Engineer
San Francisco·Engineering
Anthropic2mo
Senior Security Software Engineer, Linux Kernel Security - Nodes & Sensors
Zürich, CH·Engineering
Replit2mo
Staff Software Engineer, Anti-Abuse & Security
Foster City, CA·Engineering