CrawlJobs Logo

Product Security Engineer, Native

meta.com Logo

Meta

Location Icon

Location:
United States , Menlo Park, CA +1 location

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

184000.00 - 257000.00 USD / Year

Job Description:

Meta's Product Security team is seeking a experienced hacker who derives purpose in life by revealing potential weaknesses and then crafting creative solutions to eliminate those weaknesses. Your skills will be the foundation of security initiatives that protect the security and privacy of over two billion people. You will be relied upon to provide engineering and product teams with the web, mobile, or native code security expertise necessary to make informed product decisions. Come help us make life hard for the bad guys.

Job Responsibility:

  • Security Reviews: perform manual design and implementation reviews of products and services that make up the Meta ecosystem, like Instagram, WhatsApp, Oculus, Portal, and more
  • Developer Guidance: provide guidance and education to developers that help prevent the authoring of vulnerabilities
  • Automated Analysis and Secure Frameworks: build automation (static and dynamic analysis) and frameworks with software engineers that enable Meta to scale consistently across all of our products

Requirements:

  • BS or MS in Computer Science or a related field, or equivalent experience
  • 8+ years of experience finding vulnerabilities in interpreted languages
  • Knowledge of best practice secure code development
  • Experience with exploiting common security vulnerabilities
  • Knowledge of common exploit mitigations and how they work
  • Coding and scripting experience in one or more general purpose languages

Nice to have:

  • 8+ years of experience finding security vulnerabilities and knowledge of secure code development in C, C++
  • Contributions to the security community (public research, blogging, presentations, bug bounty, etc.)
  • Experience creating software that enables security processes
What we offer:
  • bonus
  • equity
  • benefits

Additional Information:

Job Posted:
February 16, 2026

Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Product Security Engineer, Native

Security Engineer - Product & Production Infrastructure

Wiz is looking for a Security Engineer for Product & Production Infrastructure w...
Location
Location
Germany
Salary
Salary:
Not provided
wiz.io Logo
Wiz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in security engineering or security operations work in cloud environments
  • AWS platforms and services (we will also consider equivalent experience in Azure and GCP)
  • Kubernetes (AWS EKS) and container infrastructure
  • IAM and managing cloud identities at-scale
  • Secure development and application of IAC solutions (Terraform, Helm)
  • Cloud-native observability and management tools
  • Development experience in Go, Python and Rust
Job Responsibility
Job Responsibility
  • Lead threat modeling and security review exercises across Wiz’s production and CI/CD environments – identifying and mitigating risks in our products and the cloud services that support them
  • Drive vulnerability management and remediation efforts – prioritizing issues, implementing mitigations, and designing strategic preventative controls
  • Extend our detection and response capabilities – building scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents
  • Build deep functional partnerships with Wiz’s engineering and operations teams – helping them deliver secure-by-design solutions
Read More
Arrow Right

Security Engineer - Product & Production Infrastructure

Wiz is looking for a Security Engineer for Product & Production Infrastructure w...
Location
Location
United States
Salary
Salary:
204000.00 - 281000.00 USD / Year
wiz.io Logo
Wiz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years of experience in security engineering or security operations work in cloud environments
  • Strong AWS cloud security experience (we will also consider equivalent experience in Azure and GCP)
  • Cloud native Kubernetes services (EKS/GKE/AKS) and strong container security principles
  • Deep understanding of securing IAM and cloud identities at scale
  • Proven ability to lead technical security reviews of products and architectures, conduct threat modeling exercises, and translate findings into actionable security controls
  • Practical understanding of web application security concepts (such as OWASP Top-10 and similar)
  • Hands-on experience with IAC and related tools (Terraform, CloudFormation, Helm, Pulumi)
  • Experience with automation and tooling development in one or more: Python, Go, Shell, HCL, Rego
Job Responsibility
Job Responsibility
  • Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies
  • Build automation, policy-as-code, and security tooling that enables development teams to "shift left" and integrate end-to-end security into their workflows
  • Design and implement secure baselines for cloud resources and Kubernetes based infrastructure
  • Drive vulnerability management and remediation efforts – prioritizing issues, implementing mitigations, and designing strategic preventative controls in software supply chains from development through production
  • Extend our detection and response capabilities – building scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents
  • Collaborate with our Wiz Federal team – extending our DevSecOps and Product Security practices to Wiz's FedRAMP environment and ensure it meets key security requirements
  • Build deep functional partnerships with Wiz's engineering and operations teams – helping them deliver secure-by-design solutions
What we offer
What we offer
  • Medical, dental and vision insurance
  • Home Office Setup reimbursement
  • Flexible Spending Accounts
  • Monthly Connectivity reimbursement
  • Employee Assistance Program (EAP)
  • Short- and Long-term Disability Insurance
  • Life & Accident Insurance
  • 401(k) Retirement Savings Plan (with employer match)
  • Flexible paid time off + 11 paid holidays
  • Paid leave programs, including parental, pregnancy health, medical and bereavement leave
  • Fulltime
Read More
Arrow Right

Security Engineer - Product & Production Infrastructure

Wiz is looking for a Security Engineer for Product & Production Infrastructure w...
Location
Location
United Kingdom
Salary
Salary:
Not provided
wiz.io Logo
Wiz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in security engineering or security operations work in cloud environments
  • AWS platforms and services (we will also consider equivalent experience in Azure and GCP)
  • Kubernetes (AWS EKS) and container infrastructure
  • IAM and managing cloud identities at-scale
  • Secure development and application of IAC solutions (Terraform, Helm)
  • Cloud-native observability and management tools
  • Development experience in Go, Python and Rust
Job Responsibility
Job Responsibility
  • Lead threat modeling and security review exercises across Wiz’s production and CI/CD environments – identifying and mitigating risks in our products and the cloud services that support them
  • Drive vulnerability management and remediation efforts – prioritizing issues, implementing mitigations, and designing strategic preventative controls
  • Extend our detection and response capabilities – building scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents
  • Build deep functional partnerships with Wiz’s engineering and operations teams – helping them deliver secure-by-design solutions
Read More
Arrow Right

Product Security Engineer

We are seeking a Product Security Engineer focused on cloud and infrastructure s...
Location
Location
United States , Palo Alto
Salary
Salary:
Not provided
1x.tech Logo
1X Technologies
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience coding and deploying services in a production cloud environment
  • Strong experience with securing cloud environments (AWS, Azure, or GCP) and infrastructure as code practices
  • Hands-on expertise with identity and access management, including just-in-time access and least-privilege enforcement
  • Proficiency in securing CI/CD pipelines, artifact integrity validation, and supply chain protections
  • Experience developing and operating cloud-native security services and controls
  • Deep understanding of secure network architecture and cloud connectivity solutions (e.g., VPCs, PrivateLink, Direct Connect)
  • Familiarity with cloud security posture management (CSPM) tools and incident response workflows
  • Solid programming or scripting skills for automating security processes and tooling
  • Strong knowledge of cloud security best practices and compliance frameworks
  • Expertise in software development, including code auditing
Job Responsibility
Job Responsibility
  • Develop and maintain security critical cloud services, working closely with relevant teams
  • Implement infrastructure as code (IaC) security practices to ensure consistent, secure deployments and automated remediation of configuration drift
  • Design and manage identity and access management systems to enforce just-in-time access and least-privilege permissions across all cloud services
  • Protect CI/CD pipelines against poisoning and credential theft, enforce access controls, and validate artifact integrity throughout the software supply chain
  • Develop and maintain cloud-native security services including device authentication, data protection, and secure communication with the fleet
  • Architect secure cloud networks through VPC segmentation, traffic filtering, private connectivity, and access control mechanisms
  • Configure and operate cloud security posture management (CSPM) tooling, enforce protections against common misconfigurations, and correlate events for incident response across cloud and edge devices
What we offer
What we offer
  • Health, dental, and vision insurance
  • 401(k) with company match
  • Paid time off and holidays
  • Fulltime
Read More
Arrow Right

Security Engineer - Wiz Product

Come join the company that is reinventing cloud security and empowering business...
Location
Location
Israel , Tel Aviv
Salary
Salary:
Not provided
wiz.io Logo
Wiz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in security engineering or security operations work in cloud environments
  • AWS platforms and services (we will also consider equivalent experience in Azure and GCP)
  • Kubernetes (AWS EKS) and container infrastructure
  • IAM and managing cloud identities at-scale
  • Secure development and application of IAC solutions (Terraform, Helm)
  • Cloud-native observability and management tools
  • Development experience in Go, Python and Rust
  • Applicants must have the legal right to work in the country where the position is based, without the need for visa sponsorship
Job Responsibility
Job Responsibility
  • Lead threat modeling and security review exercises across Wiz’s production and CI/CD environments – identifying and mitigating risks in our products and the cloud services that support them
  • Drive vulnerability management and remediation efforts – prioritizing issues, implementing mitigations, and designing strategic preventative controls
  • Extend our detection and response capabilities – building scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents
  • Collaborate with our Wiz Federal team – extending our DevSecOps and Product Security practices to Wiz’s FedRAMP environment and ensure it meets key security requirements
  • Build deep functional partnerships with Wiz’s engineering and operations teams – helping them deliver secure-by-design solutions
  • Fulltime
Read More
Arrow Right

Senior Security Engineer

PagerDuty is seeking a Senior Security Engineer to join our diverse, customer-fo...
Location
Location
Canada , Toronto
Salary
Salary:
137000.00 - 207000.00 CAD / Year
https://www.pagerduty.com Logo
PagerDuty
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proficiency with Application & Product Security typically associated with 4 - 5 years of experience in a Security Engineering role working with a cloud-native, microservices environment, preferably AWS
  • Familiarity with cloud-native product technologies including: Vulnerability detection via multiple approaches including SAST, DAST, SCA, and runtime (e.g., Qualys/Nessus, Wiz, Snyk, GHAS, Semgrep, etc.)
  • CI/CD technologies and integrations (e.g., CircleCI, Buildkite, Helm, Terraform, Chef)
  • Product security event logging standards and analysis tools (e.g., SIEM such as: SumoLogic, LogRythm, or Splunk, etc.)
  • Security Incident Response & Risk Management processes and tools
  • Proficiency in at least one programming language and framework (e.g. Python, Bash, Phoenix/Elixir, Java, Ruby on Rails), typically associated with 3 - 4 years of experience with the language/framework
  • Have exceptional written, oral communication, and interpersonal skills
  • Organizational skills with the ability to successfully manage multiple priorities and deadlines
Job Responsibility
Job Responsibility
  • Embrace the role of hands-on technical lead in defining product security standards and guiding platform protections
  • Establish criteria and conduct comprehensive security reviews throughout all stages of product development to identify and address security risks
  • Perform regular threat assessments, coordinate with third-party testers for penetration testing, and conduct internal penetration testing to identify and mitigate security risks
  • Mentor and guide team members to ensure product and business objectives are prioritized in project implementations, fostering a strong documentation culture with project charters and design documents
  • Work with loosely defined requirements where you exercise your analytical skills to clarify questions, share your approach, and collaborate with the team to design and implement effective security frameworks. Maintain a strong appetite for challenging problems with a high degree of ownership
  • Participate in the team’s On-Call rotation, triaging and addressing security issues as they arise, and implement measures to prevent future occurrences
  • Enable service team security implementations by developing security-as-code constructs, including infrastructure-as-code (IaC) modules, libraries and frontend components, while creating and maintaining developer-focused documentation to promote easy adoption
  • Establish and uphold baseline standards and hardened configurations for platform components
  • Continuously enhance security frameworks by focusing on product security standards and software supply chain protections, tailored for application security in cloud-native, microservices environments
What we offer
What we offer
  • Competitive salary
  • Comprehensive benefits package from day one
  • Flexible work arrangements
  • Company equity
  • ESPP (Employee Stock Purchase Program)
  • Retirement or pension plan
  • Generous paid vacation time
  • Paid holidays and sick leave
  • Dutonian Wellness Days & HibernationDuty - companywide paid days off in addition to PTO
  • Paid parental leave: 22 weeks for pregnant parent, 12 weeks for non-pregnant parent (some countries have longer leave standards and we comply with local laws)
  • Fulltime
Read More
Arrow Right

Principal Security Engineer

We’re building a world-class global Security team as part of our Trust Program. ...
Location
Location
India , Hyderabad
Salary
Salary:
Not provided
highspot.com Logo
Highspot
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of robust, progressive experience in security engineering, application security, DevSecOps, incident detection and response, or closely related fields
  • Advanced proficiency in at least one programming language (Python, Ruby, Go, Rust, JavaScript), with deep experience conducting detailed code reviews and security assessments across multiple languages
  • Hands-on experience with deploying, operating, and interpreting results from security tools such as static analyzers, web vulnerability scanners, supply chain analysis scanners, and host-based intrusion detection systems
  • Demonstrated experience mentoring, coaching and guiding junior and mid-level security engineers, contributing to a strong team culture, and supporting peer development as a senior individual contributor
  • Demonstrated proactive approach, strong continuous learning orientation, and curiosity about emerging threats, security trends, and innovative technologies
  • Extensive expertise securing cloud-native environments (AWS, Azure, GCP, containers, microservices), with in-depth knowledge of modern cloud security risks and defenses
  • Demonstrated ability to embrace being wrong, practice humility, continuously learn from experiences, and actively seek insights through thoughtful questioning and collaboration
Job Responsibility
Job Responsibility
  • Lead comprehensive application security assessments, advanced threat modeling sessions, and secure code reviews across critical product features, internal tooling, endpoints, and third-party integrations
  • Collaborate strategically with product engineering to establish and enhance secure-by-default and privacy-by-design practices within the software development lifecycle (SDLC)
  • Lead and otherwise participate in incident detection, investigation, triage, containment, and root cause analysis for high impact security incidents, providing mentorship and guidance to junior engineers as required
  • Drive the development and continuous improvement of sophisticated detection rules, response automation, and optimized alert management across cloud environments, corporate infrastructure, and SaaS platforms
  • Lead and participate in complex vulnerability remediation processes, and effectively respond to security issues discovered by both internal teams and external sources
  • Document technical findings and strategic decisions in a clear and accessible manner, and procedural enhancements
  • significantly contribute to comprehensive security playbooks and knowledge repositories
  • Manage and oversee asksecurity@ request handling, and actively participate in sprint-based security activities, balancing strategic and tactical execution
  • Actively participate in the security on-call rotation, or provide senior-level guidance as required during an event and aid in rapid response capabilities to protect our 24x7 platform and global workforce
  • Fulltime
Read More
Arrow Right

Senior AI Security Engineer

Senior AI Security Engineer role in Citi's Application, Platform and Engineering...
Location
Location
United Kingdom , London
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Production system builder with security focus - proven track record of architecting and building secure, large-scale production applications and business-facing platforms from the ground up
  • Ethical hacking and penetration testing expertise - hands-on experience finding and exploiting vulnerabilities, conducting red team exercises
  • State-of-the-art security engineering with Go, Python, JavaScript
  • HashiCorp Vault mastery - deep experience writing custom plugins, creating secrets engines, implementing dynamic credentials
  • Enterprise authentication & authorization - designing and implementing OAuth, JWT, RBAC, and complex identity systems
  • API security and threat modelling - securing REST/GraphQL APIs, conducting threat assessments
  • AI/ML security and vulnerability research - understanding of LLM vulnerabilities, model security, prompt injection attacks
  • Security automation and tooling – automating manual security processes
  • Cloud-native security - securing containerized applications in Kubernetes, service mesh security
  • Incident response and forensics - experience investigating, analyzing, and responding to security incidents
Job Responsibility
Job Responsibility
  • Build secure AI products from 0-1 - Engineer production-grade, business-facing AI platforms with security built-in from day one
  • Conduct ethical hacking and red team activities - penetration testing, vulnerability research, and attack simulation
  • Design and build security tools and frameworks - Create automated security solutions that scale across fast-paced development cycles
  • Secure novel AI attack surfaces - Identify and mitigate LLM-specific vulnerabilities, prompt injection attacks, and AI model security risks
  • Lead 'shift left' security - Embed security practices throughout rapid development lifecycle while maintaining velocity
  • Mentor security practices - Guide other engineers on secure coding, vulnerability remediation, and security-first thinking
What we offer
What we offer
  • 27 days annual leave (plus bank holidays)
  • Discretional annual performance related bonus
  • Private Medical Care & Life Insurance
  • Employee Assistance Program
  • Pension Plan
  • Paid Parental Leave
  • Special discounts for employees, family, and friends
  • Hybrid working model (up to 2 days working at home per week)
  • Competitive base salary (annually reviewed)
  • Fulltime
Read More
Arrow Right