Base Career helps you apply smarter for this job.
Key skills for this role
We're seeking a highly technical Senior Product Security Engineer for a 6-month contract (40 hours/week) to embed security into the product development lifecycle. This is a hands-on engineering role responsible for identifying security risks early, partnering with development teams on remediation, conducting security reviews, performing application security testing, and helping build secure-by-design products.
This role will work closely with Engineering, Cloud Security, Infrastructure, Compliance, and Product Management to ensure security is integrated throughout the SDLC while enabling developer velocity.
Perform manual web, API, thick-client, and mobile application penetration testing.
Validate findings from third-party penetration tests.
Conduct secure code reviews.
Verify remediation of security vulnerabilities.
Drive adoption of secure coding practices.
Partner with developers to improve security throughout the SDLC.
Help define Product Security standards and engineering guardrails.
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
Coral Gables, USA
London, GBR
Miami, USA
Miami, USA
Miami, USA
Miami, USA
Miami, USA
Miami, USA
Coral Gables, USA
Develop reusable security patterns and reference architectures.
Triage findings from SAST, DAST, SCA, container scanning, and cloud security tools.
Work with engineering teams to prioritize remediation.
Track remediation SLAs and security metrics.
Assess AI-enabled products for security risks.
Review LLM integrations and AI workflows.
Test AI applications for prompt injection, data leakage, insecure tool use, model abuse, and authorization weaknesses.
Help define secure AI engineering standards.
Improve automation of security testing throughout CI/CD.
Integrate security tooling into developer workflows.
Build scripts and tooling that reduce manual security work.
Collaborate with Product, Engineering, Infrastructure, Cloud Security, and Compliance teams.
Support customer security questionnaires related to product security.
Assist Sales Engineering with security discussions when needed.
5+ years in Product Security or Application Security.
Strong understanding of modern application architectures.
Experience securing:
Web applications
APIs
Microservices
Cloud-native applications
Experience performing threat modeling.
Experience conducting penetration testing.
Strong understanding of:
OWASP Top 10
OWASP API Top 10
Authentication & Authorization
OAuth / OIDC
Secure SDLC
Experience with SAST, DAST, SCA, and container security.
Experience partnering directly with engineering teams.
Strong written and verbal communication skills.
Experience securing AI/LLM applications.
Experience with Kubernetes and containers.
Familiarity with cloud security (AWS, Azure, or GCP).
Experience with GitHub Actions or CI/CD security.
Experience using:
Snyk
Burp Suite Pro
Semgrep
Wiz
GitHub Advanced Security
Security certifications such as OSCP, GWAPT, GWEB, CSSLP, or CISSP are a plus
Verified company details for this employer are not available yet.
Contract
Senior · 5+ years experience
Remote
Apply faster on company sites with our extension.