Senior Product Security Engineer

aqua IT
North Carolina

Overview: Serve as a senior security engineering resource supporting multiple product and development teams. Lead application and platform security assessments for new features, services, and emerging technologies, including AI-driven solutions. Conduct security testing and vulnerability validation activities, collaborate with engineering teams to remediate findings, and contribute code-based security improvements where appropriate. Manage external vulnerability reporting processes and coordinate risk management, compliance, and audit-related initiatives across the software development organization. Support incident response efforts and participate in an on-call rotation for security events affecting production environments.

Responsibilities:

  • Lead Product Security across our SaaS offerings, partnering with product and platform engineering teams on design, code, and remediation
  • Own Unified Security Review process for new product launches, vendor evaluations, and AI tooling — including custom penetration tests scoped to each review
  • Drive Security Engineering Risk Management Framework, for consistent risk classification and remediation tracking across product
  • Lead the Vulnerability Disclosure Program and security bug reporting workflow, from researcher intake through fix
  • Drive SOC2 and compliance-related security remediation across product engineering, partnering with R&D leads on architectural fixes
  • Provide security review and guardrails for internal AI platforms and coding agents (LLM gateways, prompt/response controls, agent permissioning)
  • Participate in a shared on-call rotation for high-severity production security incidents

Qualifications:

  • 8+ years of application security engineering experience
  • Strong production coding ability in at least one of Java (preferred), TypeScript/JavaScript, Python, or Go — enough to perform deep code review, write proof-of-concept exploits, and contribute fixes directly into product repos
  • Building security automation into CI/CD pipelines
  • Hands-on penetration testing of production SaaS applications, including custom tests scoped to new product launches
  • Threat modeling, secure design reviews, and static/dynamic code analysis across the SDLC
  • Identifying and remediating common web application vulnerabilities (OWASP Top 10)
  • Experience securing internal AI/LLM platforms and coding agents (model gateways, prompt/response controls, agent permissioning)
  • Experience in Web3, Blockchain or Digital Assets (nice to have, not required)
  • Experience building AI workflows, agents, and guardrailing (nice to have, not required)

Tech Stack:

  • Cloud and containers: AWS, GCP, Kubernetes (EKS/GKE)
  • Infrastructure-as-Code: Terraform
  • Security tooling: Wiz, SonarCloud, Burp, Cloudflare
  • CI/CD and source control: GitHub, GitHub Actions, Artifactory and related build/deploy tooling
  • Languages and scripting: Java, JavaScript, Python, Go
  • AI Coding Agents, Tooling, Systems
Posted 2026-06-12

Recommended Jobs

Operations Associate, Charlotte - UNC, #311

Gopuff
Charlotte, NC

Gopuff is looking for Operations Associates (OAs) to join the operations team. Directly reporting to a Site Leader, OAs play an essential role at Gopuff that requires drive, perseverance, positivity, …

View Details
Posted 2026-06-12

Direct Support Professional - Independent Contractor (MA)

InReach
Charlotte, NC

Job Description Job Description Who We Are: InReach provides a wide variety of services to adults with intellectual and/or developmental disabilities. We Offer: Competitive Wages Flex…

View Details
Posted 2026-05-16

Restaurant Manager

Smithfield's Chicken 'N Bar-B-Q - Knightdale
Knightdale, NC

Description SCNB is currently seeking highly qualified restaurant managers with experience offering competitive pay rates and huge growth potential. Smithfield's managers are the face of our compa…

View Details
Posted 2025-12-10

Tax Specialist - Financial Planning Firm

Strategic Retirement Solutions, Inc.
Durham, NC

Job Description Job Description Position Overview We are seeking a knowledgeable and detail-oriented Tax Preparer to join our team. This person will work closely with our advisors and clients to prov…

View Details
Posted 2026-04-23

Executive Assistant to the CEO (Korean Bilingual)

Cesna Recruitment
Charlotte, NC

[Job Summary] We are seeking a highly skilled and experienced Executive Assistant to provide comprehensive support to the CEO. The ideal candidate will be proactive, detail-oriented, and capable of …

View Details
Posted 2026-01-22

Outside Marketing Representative - Lead Generation

Weed Man - Triad, NC
Winston Salem, NC

Outside Marketing Representative - Lead Generation Are you outgoing, motivated, and comfortable talking to people? Do you enjoy being active and creating opportunities instead of waiting for the…

View Details
Posted 2026-01-12

Audit Staff

Frost PLLC
Raleigh, NC

Job Description Job Description Salary: $65,000 Auditing provides clients with an objective evaluation of a companys financial statements. As an audit associate, youll work with experienced aud…

View Details
Posted 2026-04-23

Senior BCBA

Opal Autism Centers
Wilmington, NC

Burned out by unrealistic caseloads, excessive administrative demands, or unstable ABA environments?  At  Opal Autism Centers , we’re intentionally building a different kind of BCBA experience —…

View Details
Posted 2026-06-13

North Carolina - Pediatrician

National Health Partners
Winston Salem, NC

Pediatrician opportunity in North Carolina Join established group which is Hospital Employed Qualifies for PSLF Excellent hospital with high retention rate in all specialties Competitive …

View Details
Posted 2025-10-20