CrawlJobs Logo

Senior Engineer Product Security Testing

gomillenniumsoft.com Logo

MillenniumSoft Inc

Location Icon

Location:
United States , San Jose

Category Icon

Job Type Icon

Contract Type:
Contract work

Salary Icon

Salary:

90.00 - 95.00 USD / Hour

Job Description:

BD Biosciences is currently seeking a Senior Engineer to supplement our growing product security team. At BD Biosciences, you will have the opportunity to improve the security of medical devices and systems that are used to help all people live healthy lives. As a member of the product security team, the Senior Engineer – Product Security is responsible for the development and execution of device test strategies, techniques, procedures, and automated scripts for testing complex systems within project boundaries established by management. Uses independent judgment to assess project test status and product acceptance. Reviews requirements, design documentation, and code to assess correctness, completeness, testability, and usability. Performs automated and manual black box testing. Sets up test data and configures hardware for verification of OS hardening configuration and security solutions including internal software products. Analyzes, reports and maintains documentation of test results, defect reports and requests for change. Works on complex problems where analysis of data requires an in-depth evaluation of various factors. Exercises judgment within generally defined practices and policies in selecting methods and techniques for obtaining solutions. Normally receives no instruction on routine work, general instructions on new assignments.

Job Responsibility:

  • Establish and document product system test strategies and techniques in a Test Protocol
  • translate requirements for complex software systems into traceable test documentation including: Test Designs, Test Procedures, Automated Test Scripts
  • execute Test Protocols, automated test scripts and code, exploratory testing both on the device and in a simulated environment, submitting clear and concise defect reports, regressing defect corrections, and entering requests for change to improve the usability of the product
  • ensure quality in security test deliverables, including design, data summary and interpretation, report and document preparation and review for adherence to applicable regulations
  • develop knowledge of BDB products through training and use
  • contribute to the advancement of process capability for security engineering
  • recommend innovations and improved methods, and tools
  • recommend and participate in functional training to advance the capabilities of the group
  • keep abreast of the basic requirements for compliance in own area of work and comply with those requirements
  • participate as required in training on regulatory issues affecting own area of work
  • bring regulatory compliance questions/issues to the attention of management

Requirements:

  • BS degree in a related discipline (PhD is equivalent to MS plus two years of directly related technical experience
  • MS is equivalent to BS plus one year of directly related technical experience)
  • five years of direct technical experience in security testing, software quality engineering, or equivalent combination of related education and experience
  • ability to communicate technical ideas clearly
  • good understanding of how to test software applications for cyber security risks
  • ability to function in a team setting
  • demonstrated ability to perform detail-oriented work with a high degree of accuracy
  • effective oral and written communication skills
  • effective analytical, quantitative, and problem-solving skills
  • effective interpersonal skills
  • effective goal settings skills

Additional Information:

Job Posted:
January 11, 2026

Employment Type:
Fulltime
Work Type:
On-site work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Senior Engineer Product Security Testing

Senior Test Engineer

Join Avaloq’s new, dynamic Platform Engineering team. Our mission is to design a...
Location
Location
Switzerland , Zurich
Salary
Salary:
Not provided
avaloq.com Logo
Avaloq
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in test automation for distributed or cloud-native systems
  • Expertise in modern test frameworks (Cypress, Playwright, Selenium, Cucumber, TestNG, JUnit) and BDD practices
  • Experience testing backend APIs, event-driven architectures, and data pipelines
  • Familiarity with AWS cloud services (DynamoDB, Lambda, ECS/EKS), at least one other cloud service and Infrastructure-as-Code testing (Terraform, CDK)
  • Understanding of CI/CD pipelines and DevSecOps principles
  • Awareness of compliance and security testing for regulated financial systems (PCI DSS, SOC2, GDPR)
  • Strong communication and collaboration skills, with a proactive approach to problem solving and continuous improvement
Job Responsibility
Job Responsibility
  • Design and maintain automated testing frameworks across UI, API, and integration layers using tools like Cypress, Playwright, and Postman
  • Implement BDD testing practices using tools like Cucumber or SpecFlow to strengthen collaboration between product and engineering
  • Develop test suites for performance, reliability, and security testing (e.g., JMeter, Gatling, OWASP ZAP)
  • Integrate automated tests into CI/CD pipelines (GitHub Actions, Jenkins) to enable continuous testing and faster feedback cycles
  • Partner with SRE, Platform Engineering, and Product teams to embed quality checks in the delivery process from design through deployment
  • Define AI-enabled test data management, validation and environment strategies to support parallel testing across multiple product teams
  • Champion quality engineering principles and mentor team members on test design, coverage, and automation best practices
What we offer
What we offer
  • Annual bonus
  • Flexible working
  • Instant recognition scheme
  • Access to Udemy for professional and personal learning
  • Fulltime
Read More
Arrow Right

Senior Security Engineer

The primary focus of this role is web application security. The security team wo...
Location
Location
Salary
Salary:
110000.00 - 190000.00 USD / Year
aha.io Logo
Aha!
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Four+ years of experience working in application security
  • Active collaborator with engineering and product teams
  • Experience with security reviews or threat modeling for a full-stack web application
  • Experience with security tools such as CodeQL or Burp Suite
Job Responsibility
Job Responsibility
  • Identifying application security threats and mitigations early
  • Improving and maintaining security code scanning tools
  • Contributing to application security scanning or testing
  • Developing and sharing secure patterns internally for ongoing education
What we offer
What we offer
  • Profit sharing
  • Medical, dental, and vision plans (for many teammates, we cover 100% of the premiums)
  • Up to 200 hours of paid time off a year to spend however you want
  • 30 to 90 days of paid parental leave and five to 10 days of paid care and bereavement leave
  • Up to $1,000 annually for third-party education, along with paid time off to immerse yourself in learning
  • Volunteer opportunities throughout the year
  • Fulltime
Read More
Arrow Right

Senior Product Security Engineer

Join our Product Security team, where you'll partner with development and game t...
Location
Location
United States , Las Vegas
Salary
Salary:
Not provided
take2games.com Logo
Take-Two Interactive Software, Inc.
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Information Technology, or a similar field, or equivalent experience
  • At least 5 years of demonstrated experience in application security, ideally within the gaming or technology sectors
  • Validated expertise in pentesting, security architecture, risk management, and securing CI/CD pipelines
  • Extensive knowledge of common and complex security vulnerabilities, along with effective mitigation techniques
  • Ability to translate design documents into security-focused guidelines and requirements for product development
  • Adapt quickly to new technologies, languages, and solve challenges outside your expertise
Job Responsibility
Job Responsibility
  • Develop threat models for a variety of applications and games to prioritize scope and use cases for security testing
  • Execute hands-on penetration tests and red team exercises to identify vulnerabilities in applications, infrastructure, and services
  • Conduct manual and automated secure code reviews in languages such as C#, Java, Python, and JavaScript, providing clear, actionable guidance to developers on vulnerability remediation
  • Triage, validate, and manage vulnerability reports from our bug bounty program, working with external researchers and internal teams on resolution
  • Develop and implement security automation tools to improve the efficiency and effectiveness of security processes
  • Provide security architecture and design guidance to development teams, ensuring secure coding practices are followed
  • Partner with teams to define and execute security strategy, driving security priorities across the organization
  • Stay ahead of emerging security threats, seeking and advocating for new technologies to address complex risks
What we offer
What we offer
  • Medical (HSA & FSA)
  • dental
  • vision
  • 401(k) with company match
  • employee stock purchase plan
  • commuter benefits
  • in-house wellness program
  • broad learning & development opportunities
  • a charitable giving platform with company match
  • Fitness allowance
  • Fulltime
Read More
Arrow Right

Senior Product Security Engineer

Ready to make an impact on the security of products from the ground up? Join our...
Location
Location
United States , Austin
Salary
Salary:
Not provided
take2games.com Logo
Take-Two Interactive Software, Inc.
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Information Technology, or a similar field, or equivalent experience
  • At least 5 years of demonstrated experience in application security, ideally within the gaming or technology sectors
  • Validated expertise in pentesting, security architecture, risk management, and securing CI/CD pipelines to ensure seamless and secure software delivery
  • Extensive knowledge of common and complex security vulnerabilities, along with effective mitigation techniques
  • Ability to translate design documents into security-focused guidelines and requirements for product development
  • Adapt quickly to new technologies, languages, and solve challenges outside your expertise
  • Travel: No routine travel required
  • occasional travel as needed.
Job Responsibility
Job Responsibility
  • Develop threat models for a variety of applications and games to prioritize scope and use cases for security testing
  • Execute hands-on penetration tests and red team exercises to identify vulnerabilities in applications, infrastructure, and services
  • Conduct manual and automated secure code reviews in languages such as C#, Java, Python, and JavaScript, providing clear, actionable guidance to developers on vulnerability remediation
  • Triage, validate, and manage vulnerability reports from our bug bounty program, working with external researchers and internal teams on resolution
  • Develop and implement security automation tools to improve the efficiency and effectiveness of security processes
  • Provide security architecture and design guidance to development teams, ensuring secure coding practices are followed
  • Partner with teams to define and execute security strategy, driving security priorities across the organization
  • Stay ahead of emerging security threats, seeking and advocating for new technologies to address complex risks.
What we offer
What we offer
  • Medical (HSA & FSA), dental, vision, 401(k) with company match, employee stock purchase plan, commuter benefits, in-house wellness program, broad learning & development opportunities, a charitable giving platform with company match
  • Fitness allowance, employee discount programs, discounted games & events and stocked pantries.
  • Fulltime
Read More
Arrow Right

Senior Software Engineer, Product Engineering

Everlaw is looking for a Senior Software Engineer with experience building and s...
Location
Location
United States , Oakland
Salary
Salary:
164000.00 - 239000.00 USD / Year
everlaw.com Logo
Everlaw
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • BS or MS in Computer Science, or equivalent coursework
  • Experience and proficiency in coding in a language such as C, C++, C#, Java, Python, Javascript, Go or Rust
  • Good knowledge of algorithms and fundamental computer science concepts, relational databases, API design, and building user interfaces
  • At least 5 years of experience building distributed systems in the cloud with service based architecture, using frontend frameworks to create rich, deep, web applications, and experience with the best practices to test, maintain, and launch cloud based software
  • At least 1 year of experience leading or coordinating multi-developer efforts, including planning and technical breakdown
Job Responsibility
Job Responsibility
  • Build customer-facing features that represent the core of our product, including document and image/multi-modal processing, collaborative review tools, organization, translation tools, search, review, and more
  • Use AI technologies to find the evidence rapidly such as document classification, predictive coding, transfer learning and LLMs
  • Collaborate with one or more of the Product, Design, Engineering Operations, Security Engineering, and DevOps teams to build out and implement new features that are used in our production environments
  • Help with scaling our system to larger datasets with hundreds of millions of documents
  • Provide Technical Mentorship to other engineers by both sharing your technical knowledge and becoming an expert in an area of our code base
  • Be a Code Reviewer by reviewing code developed by others using your knowledge of programming languages, design patterns, and best practices
  • Fix defects in our product by triaging product or system issues and writing code to debug, track and resolve these issues
  • Provide on-call support for the product by answering questions from customers, triaging defects and exceptions, and carrying the pager
  • Contribute to documentation for internal engineering consumption or for external the Everlaw platform
  • Do technical interviews to help us recruit engineers and grow the team
What we offer
What we offer
  • Equity program
  • 401(k) retirement plan with company matching
  • Health, dental, and vision
  • Flexible Spending Accounts for health and dependent care expenses
  • Paid parental leave and approximately 10 days (80 hours) per year of sick leave
  • Seventeen paid vacation days plus 11 federal holidays
  • Membership to Modern Health to help employees prioritize mental health and wellness
  • Annual allocation for Learning & Development opportunities and applicable professional membership dues
  • Company-sponsored life and disability insurance
  • Work in Downtown Oakland, just steps from the BART line and dozens of restaurants
  • Fulltime
Read More
Arrow Right

Senior AI Security Engineer

Senior AI Security Engineer role in Citi's Application, Platform and Engineering...
Location
Location
United Kingdom , London
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Production system builder with security focus - proven track record of architecting and building secure, large-scale production applications and business-facing platforms from the ground up
  • Ethical hacking and penetration testing expertise - hands-on experience finding and exploiting vulnerabilities, conducting red team exercises
  • State-of-the-art security engineering with Go, Python, JavaScript
  • HashiCorp Vault mastery - deep experience writing custom plugins, creating secrets engines, implementing dynamic credentials
  • Enterprise authentication & authorization - designing and implementing OAuth, JWT, RBAC, and complex identity systems
  • API security and threat modelling - securing REST/GraphQL APIs, conducting threat assessments
  • AI/ML security and vulnerability research - understanding of LLM vulnerabilities, model security, prompt injection attacks
  • Security automation and tooling – automating manual security processes
  • Cloud-native security - securing containerized applications in Kubernetes, service mesh security
  • Incident response and forensics - experience investigating, analyzing, and responding to security incidents
Job Responsibility
Job Responsibility
  • Build secure AI products from 0-1 - Engineer production-grade, business-facing AI platforms with security built-in from day one
  • Conduct ethical hacking and red team activities - penetration testing, vulnerability research, and attack simulation
  • Design and build security tools and frameworks - Create automated security solutions that scale across fast-paced development cycles
  • Secure novel AI attack surfaces - Identify and mitigate LLM-specific vulnerabilities, prompt injection attacks, and AI model security risks
  • Lead 'shift left' security - Embed security practices throughout rapid development lifecycle while maintaining velocity
  • Mentor security practices - Guide other engineers on secure coding, vulnerability remediation, and security-first thinking
What we offer
What we offer
  • 27 days annual leave (plus bank holidays)
  • Discretional annual performance related bonus
  • Private Medical Care & Life Insurance
  • Employee Assistance Program
  • Pension Plan
  • Paid Parental Leave
  • Special discounts for employees, family, and friends
  • Hybrid working model (up to 2 days working at home per week)
  • Competitive base salary (annually reviewed)
  • Fulltime
Read More
Arrow Right

Senior Application Security Engineer

This role involves embedding security into software delivery pipelines, designin...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5–8+ years of experience in Application Security, Product Security, or Secure Software Development
  • hands-on experience securing software delivery pipelines (CI/CD) and source code repositories (GitHub, GitLab, Jenkins)
  • knowledge of supply chain security frameworks and controls (e.g., SLSA, NIST SSDF)
  • familiarity with secrets management, artifact signing (Sigstore, Cosign), and build integrity practices
  • hands-on experience with WAF tuning, API security controls, and vulnerability remediation
  • proficiency with one or more programming languages (Python, Java, Go, JavaScript/Node.js)
  • experience with SAST, DAST, SCA, and container image scanning tools
  • cloud security experience with AWS, Azure, or GCP
  • deep understanding of OWASP Top 10 (Web + API), CWE, and secure coding practices
Job Responsibility
Job Responsibility
  • secure SDLC & DevSecOps integration
  • design and implement security controls for build and release pipelines (GitHub Actions, Jenkins, GitLab, Azure DevOps)
  • ensure code integrity via signing, artifact scanning, and build provenance
  • automate SAST, DAST, SCA, and container image scanning as part of the software delivery pipeline
  • identify and remediate misconfigurations in pipeline environments and access control
  • design, implement, and monitor WAF rules and API protections
  • perform API risk assessments
  • champion secure design patterns
  • conduct secure code reviews and support automation of testing pipelines
  • triage, prioritize, and track security issues identified in code, pipelines, and deployed environments
What we offer
What we offer
  • comprehensive suite of benefits that supports physical, financial and emotional wellbeing
  • programs catered to helping you reach career goals
  • inclusive work environment
  • Fulltime
Read More
Arrow Right

Senior Product Security Engineer

Designs, develops, troubleshoots and debugs security programs for software enhan...
Location
Location
United States
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's or Master's degree in Computer Science, Information Systems, or equivalent
  • Typically 6-10 years experience in a security role
  • Extensive experience with product security for multiple software systems design tools and languages
  • Excellent analytical and problem solving skills
  • Experience in overall architecture of software systems for products and solutions
  • Designing and integrating software systems running on multiple platform types into overall security architecture
  • Evaluating forms and processes for software systems security testing and methodology, including writing and execution of test plans, debugging, and testing scripts and scanning tools
  • Excellent written and verbal communication skills
  • mastery in English and local language
Job Responsibility
Job Responsibility
  • Leads multiple projects & teams of other software systems engineers and internal and outsourced development partners to integrate security into all stages of design and development for complex products and platforms, including solution design, analysis, coding, testing, and integration
  • Manages and expands relationships with internal and outsourced development partners on software systems secure design and development
  • Reviews and evaluates designs and project activities for compliance with systems design and security guidelines and standards
  • provides tangible feedback to improve product quality and mitigate failure risk
  • Provides security expertise, leadership and perspective to cross-organization projects, programs, and activities
  • Drives innovation and integration of new technologies into projects and activities in the software systems design organization
  • Provides guidance and mentoring to less- experienced staff members
What we offer
What we offer
  • Health & Wellbeing
  • Personal & Professional Development
  • Unconditional Inclusion
  • Fulltime
Read More
Arrow Right