CrawlJobs Logo

Security Engineer - Product & Production Infrastructure

wiz.io Logo

Wiz

Location Icon

Location:
United States

Category Icon
Category:
IT - Software Development

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

204000.00 - 281000.00 USD / Year

Job Description:

Wiz is looking for a Security Engineer for Product & Production Infrastructure who has experience performing security reviews, vulnerability management, and detection and response operations in cloud-native environments. You’ll get to collaborate with our software development and DevOps teams to secure Wiz’s products, CI/CD infrastructure, and production infrastructure. You’ll also have the opportunity to influence our product roadmap by utilizing Wiz-for-Wiz to assess, monitor, and harden our environments.

Job Responsibility:

  • Lead threat modeling and security reviews across Wiz's products and cloud infrastructure, identifying attack surfaces and developing scalable mitigation strategies
  • Build automation, policy-as-code, and security tooling that enables development teams to "shift left" and integrate end-to-end security into their workflows
  • Design and implement secure baselines for cloud resources and Kubernetes based infrastructure
  • Drive vulnerability management and remediation efforts – prioritizing issues, implementing mitigations, and designing strategic preventative controls in software supply chains from development through production
  • Extend our detection and response capabilities – building scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents
  • Collaborate with our Wiz Federal team – extending our DevSecOps and Product Security practices to Wiz's FedRAMP environment and ensure it meets key security requirements
  • Build deep functional partnerships with Wiz's engineering and operations teams – helping them deliver secure-by-design solutions

Requirements:

  • 7+ years of experience in security engineering or security operations work in cloud environments
  • Strong AWS cloud security experience (we will also consider equivalent experience in Azure and GCP)
  • Cloud native Kubernetes services (EKS/GKE/AKS) and strong container security principles
  • Deep understanding of securing IAM and cloud identities at scale
  • Proven ability to lead technical security reviews of products and architectures, conduct threat modeling exercises, and translate findings into actionable security controls
  • Practical understanding of web application security concepts (such as OWASP Top-10 and similar)
  • Hands-on experience with IAC and related tools (Terraform, CloudFormation, Helm, Pulumi)
  • Experience with automation and tooling development in one or more: Python, Go, Shell, HCL, Rego

Nice to have:

  • Bachelor's degree in computer science or a related field and / or candidates with equivalent job experience in lieu of a degree
  • Experience working with remote, globally distributed teams
  • Experience working in organizations that develop software and/or operate managed infrastructure and technology services for their own customers
  • Experience with CNAPP, CSPM, or CIEM solutions
What we offer:
  • Medical, dental and vision insurance
  • Home Office Setup reimbursement
  • Flexible Spending Accounts
  • Monthly Connectivity reimbursement
  • Employee Assistance Program (EAP)
  • Short- and Long-term Disability Insurance
  • Life & Accident Insurance
  • 401(k) Retirement Savings Plan (with employer match)
  • Flexible paid time off + 11 paid holidays
  • Paid leave programs, including parental, pregnancy health, medical and bereavement leave

Additional Information:

Job Posted:
December 13, 2025

Employment Type:
Fulltime
Work Type:
Remote work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Security Engineer - Product & Production Infrastructure

New

Security Engineer - Product & Production Infrastructure

Wiz is looking for a Security Engineer for Product & Production Infrastructure w...
Location
Location
United Kingdom
Salary
Salary:
Not provided
wiz.io Logo
Wiz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in security engineering or security operations work in cloud environments
  • AWS platforms and services (we will also consider equivalent experience in Azure and GCP)
  • Kubernetes (AWS EKS) and container infrastructure
  • IAM and managing cloud identities at-scale
  • Secure development and application of IAC solutions (Terraform, Helm)
  • Cloud-native observability and management tools
  • Development experience in Go, Python and Rust
Job Responsibility
Job Responsibility
  • Lead threat modeling and security review exercises across Wiz’s production and CI/CD environments – identifying and mitigating risks in our products and the cloud services that support them
  • Drive vulnerability management and remediation efforts – prioritizing issues, implementing mitigations, and designing strategic preventative controls
  • Extend our detection and response capabilities – building scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents
  • Build deep functional partnerships with Wiz’s engineering and operations teams – helping them deliver secure-by-design solutions
Read More
Arrow Right
New

Security Engineer - Product & Production Infrastructure

Wiz is looking for a Security Engineer for Product & Production Infrastructure w...
Location
Location
Germany
Salary
Salary:
Not provided
wiz.io Logo
Wiz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in security engineering or security operations work in cloud environments
  • AWS platforms and services (we will also consider equivalent experience in Azure and GCP)
  • Kubernetes (AWS EKS) and container infrastructure
  • IAM and managing cloud identities at-scale
  • Secure development and application of IAC solutions (Terraform, Helm)
  • Cloud-native observability and management tools
  • Development experience in Go, Python and Rust
Job Responsibility
Job Responsibility
  • Lead threat modeling and security review exercises across Wiz’s production and CI/CD environments – identifying and mitigating risks in our products and the cloud services that support them
  • Drive vulnerability management and remediation efforts – prioritizing issues, implementing mitigations, and designing strategic preventative controls
  • Extend our detection and response capabilities – building scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents
  • Build deep functional partnerships with Wiz’s engineering and operations teams – helping them deliver secure-by-design solutions
Read More
Arrow Right
New

Senior Product Security Engineer

Join our Product Security team, where you'll partner with development and game t...
Location
Location
United States , Las Vegas
Salary
Salary:
Not provided
take2games.com Logo
Take-Two Interactive Software, Inc.
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Information Technology, or a similar field, or equivalent experience
  • At least 5 years of demonstrated experience in application security, ideally within the gaming or technology sectors
  • Validated expertise in pentesting, security architecture, risk management, and securing CI/CD pipelines
  • Extensive knowledge of common and complex security vulnerabilities, along with effective mitigation techniques
  • Ability to translate design documents into security-focused guidelines and requirements for product development
  • Adapt quickly to new technologies, languages, and solve challenges outside your expertise
Job Responsibility
Job Responsibility
  • Develop threat models for a variety of applications and games to prioritize scope and use cases for security testing
  • Execute hands-on penetration tests and red team exercises to identify vulnerabilities in applications, infrastructure, and services
  • Conduct manual and automated secure code reviews in languages such as C#, Java, Python, and JavaScript, providing clear, actionable guidance to developers on vulnerability remediation
  • Triage, validate, and manage vulnerability reports from our bug bounty program, working with external researchers and internal teams on resolution
  • Develop and implement security automation tools to improve the efficiency and effectiveness of security processes
  • Provide security architecture and design guidance to development teams, ensuring secure coding practices are followed
  • Partner with teams to define and execute security strategy, driving security priorities across the organization
  • Stay ahead of emerging security threats, seeking and advocating for new technologies to address complex risks
What we offer
What we offer
  • Medical (HSA & FSA)
  • dental
  • vision
  • 401(k) with company match
  • employee stock purchase plan
  • commuter benefits
  • in-house wellness program
  • broad learning & development opportunities
  • a charitable giving platform with company match
  • Fitness allowance
  • Fulltime
Read More
Arrow Right
New

Senior Product Security Engineer

Ready to make an impact on the security of products from the ground up? Join our...
Location
Location
United States , Austin
Salary
Salary:
Not provided
take2games.com Logo
Take-Two Interactive Software, Inc.
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Information Technology, or a similar field, or equivalent experience
  • At least 5 years of demonstrated experience in application security, ideally within the gaming or technology sectors
  • Validated expertise in pentesting, security architecture, risk management, and securing CI/CD pipelines to ensure seamless and secure software delivery
  • Extensive knowledge of common and complex security vulnerabilities, along with effective mitigation techniques
  • Ability to translate design documents into security-focused guidelines and requirements for product development
  • Adapt quickly to new technologies, languages, and solve challenges outside your expertise
  • Travel: No routine travel required
  • occasional travel as needed.
Job Responsibility
Job Responsibility
  • Develop threat models for a variety of applications and games to prioritize scope and use cases for security testing
  • Execute hands-on penetration tests and red team exercises to identify vulnerabilities in applications, infrastructure, and services
  • Conduct manual and automated secure code reviews in languages such as C#, Java, Python, and JavaScript, providing clear, actionable guidance to developers on vulnerability remediation
  • Triage, validate, and manage vulnerability reports from our bug bounty program, working with external researchers and internal teams on resolution
  • Develop and implement security automation tools to improve the efficiency and effectiveness of security processes
  • Provide security architecture and design guidance to development teams, ensuring secure coding practices are followed
  • Partner with teams to define and execute security strategy, driving security priorities across the organization
  • Stay ahead of emerging security threats, seeking and advocating for new technologies to address complex risks.
What we offer
What we offer
  • Medical (HSA & FSA), dental, vision, 401(k) with company match, employee stock purchase plan, commuter benefits, in-house wellness program, broad learning & development opportunities, a charitable giving platform with company match
  • Fitness allowance, employee discount programs, discounted games & events and stocked pantries.
  • Fulltime
Read More
Arrow Right
New

Staff Product Security Engineer

As a Staff Product Security Engineer, you will play a crucial role in safeguardi...
Location
Location
France , Paris
Salary
Salary:
Not provided
dashlane.com Logo
Dashlane
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong understanding of application security best practices, including experience with threat modeling and risk assessments
  • Demonstrated experience building or improving an SDLC program
  • Familiarity with CI/CD pipelines and their security implications
  • Familiarity with cloud infrastructure (e.g., AWS, Azure, Kubernetes), and Infrastructure-as-Code (e.g., Terraform)
  • Interest in enabling secure use of AI tools to drive efficiency, creativity, and impact internally
  • Communication & Collaboration: You engage and listen empathetically to others, adjusting your communication style to fit the audience and message. You are experienced in communicating with technical and non-technical audiences
  • Mentoring: You enjoy using your knowledge and experience to support and uplevel those around you
  • Motivated Learner: You learn new technologies and processes quickly, and understand where to look for knowledge when you need it
  • Adaptability: You are a jack or jane of all trades - you’re comfortable digging into non-technical parts of the business to provide security support and guidance
Job Responsibility
Job Responsibility
  • Drive the continuous improvement of Dashlane’s security program across the product and company
  • Conduct architecture design reviews, threat modeling, and technical security assessments of Dashlane’s product (application and infrastructure) to identify security risks and provide mitigation guidance
  • Ensure security best practices are integrated throughout the software development lifecycle (SDLC)
  • Build upon and scale Vulnerability Management to ensure the team can track, analyze, and manage vulnerabilities and their remediation
  • Perform risk assessments of Dashlane’s internal systems, environments, assets, and data, and implement security best practices accordingly
  • Evaluate and implement security tooling and/or build customized tooling in-house where necessary
  • Participate in Compliance and Incident Response
  • Innovate and propose new forward-looking security features that protect Dashlane and our users
What we offer
What we offer
  • Equal Parental leave - regardless of gender, up to 20 weeks fully paid leave to take care of their new baby, within the first year of birth or adoption
  • Health insurance covered by Dashlane
  • Mentorship program - select your mentor from our internal pool and continue your learning path!
  • Commute allowance
  • Meal Vouchers (Swile)
  • Mental health services through Spring Health for you and family members
  • 4 extra days off (one per quarter) to acknowledge the importance of your wellbeing
  • Spot in daycare
  • Time off saving account
  • Donation matching program - give back to the community and support actions that lead to positive social impact under the historically marginalized communities. Every donation will be matched by Dashlane
  • Fulltime
Read More
Arrow Right

Product Security Engineer

As a Product Security Engineer specializing in cryptography and PKI, you will de...
Location
Location
United States , Palo Alto
Salary
Salary:
Not provided
1x.tech Logo
1X Technologies
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong experience with cryptography, PKI design, and key management
  • Experience working with hardware security modules (HSMs), including vendor selection, integration, and root‑of‑trust establishment
  • Familiarity with remote device attestation frameworks (such as fTPM, OP‑TEE, or similar)
  • Demonstrated ability to design and scale secure firmware signing and code signing pipelines
  • Proven track record in defining and enforcing trust policies (key generation, rotation, destruction) and provisioning mechanisms
  • Experience securing build/artifact pipelines and developing secure communication protocols
  • Ability to work cross‑functionally with hardware, software, security operations, and infrastructure teams
  • High attention to detail, strong problem solving, with a mindset of anticipating vulnerabilities and designing defendable systems
Job Responsibility
Job Responsibility
  • Design and manage end‑to‑end cryptographic services, including public key infrastructure (PKI) and key lifecycle management
  • Establish HSM infrastructure as the root‑of‑trust for firmware signing and IoT endpoint authentication
  • Lead evaluation, procurement, installation, configuration, and integration of HSM vendor solutions
  • Architect key management systems that scale from hundreds of devices today to millions over time
  • Design remote device attestation mechanisms (e.g. fTPM, OP‑TEE, or equivalent) tied to the HSM root‑of‑trust
  • Build and automate secure firmware/bootloader signing pipelines
  • Define trust infrastructure and policies for author key generation, provisioning, rotation, and destruction
  • Secure build/artifact pipelines and code‑signing workflows
  • Develop factory provisioning architecture for mass key/certificate distribution
  • Support the development of secure communication protocols
  • Fulltime
Read More
Arrow Right

Senior Product Security Engineer

The Product Security team is responsible for making sure Atlassian products and ...
Location
Location
United States , San Francisco; Austin; Seattle; New York
Salary
Salary:
158100.00 - 253900.00 USD / Year
https://www.atlassian.com Logo
Atlassian
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years demonstrated expertise and experience working in security-focused roles
  • Experience with application security, especially web applications
  • Experience in cloud security architecture and infrastructure
  • Experience coding in Java, Python, or Go, and at least one scripting language
  • An ability to reason about security decisions
  • Experience leading projects from start to finish and mentoring other security practitioners
  • An ability to communicate ideas clearly and effectively to engineers who know way more than you about their code
Job Responsibility
Job Responsibility
  • Improve our vulnerability management program
  • Review our products' security posture
  • Define security best practices
  • Empower engineering teams to build secure software by default
What we offer
What we offer
  • Health coverage
  • Paid volunteer days
  • Wellness resources
  • Fulltime
Read More
Arrow Right

Product Security Engineer

We are seeking a Product Security Engineer focused on cloud and infrastructure s...
Location
Location
United States , Palo Alto
Salary
Salary:
Not provided
1x.tech Logo
1X Technologies
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience coding and deploying services in a production cloud environment
  • Strong experience with securing cloud environments (AWS, Azure, or GCP) and infrastructure as code practices
  • Hands-on expertise with identity and access management, including just-in-time access and least-privilege enforcement
  • Proficiency in securing CI/CD pipelines, artifact integrity validation, and supply chain protections
  • Experience developing and operating cloud-native security services and controls
  • Deep understanding of secure network architecture and cloud connectivity solutions (e.g., VPCs, PrivateLink, Direct Connect)
  • Familiarity with cloud security posture management (CSPM) tools and incident response workflows
  • Solid programming or scripting skills for automating security processes and tooling
  • Strong knowledge of cloud security best practices and compliance frameworks
  • Expertise in software development, including code auditing
Job Responsibility
Job Responsibility
  • Develop and maintain security critical cloud services, working closely with relevant teams
  • Implement infrastructure as code (IaC) security practices to ensure consistent, secure deployments and automated remediation of configuration drift
  • Design and manage identity and access management systems to enforce just-in-time access and least-privilege permissions across all cloud services
  • Protect CI/CD pipelines against poisoning and credential theft, enforce access controls, and validate artifact integrity throughout the software supply chain
  • Develop and maintain cloud-native security services including device authentication, data protection, and secure communication with the fleet
  • Architect secure cloud networks through VPC segmentation, traffic filtering, private connectivity, and access control mechanisms
  • Configure and operate cloud security posture management (CSPM) tooling, enforce protections against common misconfigurations, and correlate events for incident response across cloud and edge devices
What we offer
What we offer
  • Health, dental, and vision insurance
  • 401(k) with company match
  • Paid time off and holidays
  • Fulltime
Read More
Arrow Right
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.