Remote Otter LogoRemoteOtter

Product Security Engineer - Remote

Posted 4 weeks ago
Software Development
Full Time
Worldwide

Overview

Smarsh empowers its customers to manage risk and unleash intelligence in their digital communications. Our growing community of over 6500 organizations in regulated industries counts on Smarsh every day to help them spot compliance, legal or reputational risks in 80+ communication channels before those risks become regulatory fines or headlines. Relentless innovation has fueled our journey to consistent leadership recognition from analysts like Gartner and Forrester, and our sustained, aggressive growth has landed Smarsh in the annual Inc. 5000 list of fastest-growing American companies since 2008.

In Short

  • Secure SDLC Integration: Embed security within the software development lifecycle, ensuring security is considered at every phase—from design to deployment.
  • Threat Modeling & Security Design Reviews: Conduct structured threat modelling and security assessments for new features, architectures, and services.
  • Vulnerability Management & Remediation: Work closely with engineering teams to identify and remediate vulnerabilities from SAST, DAST, SCA, container security, and cloud security scans.
  • Code & Architecture Review: Conduct secure code reviews and architectural security assessments to identify risks early in the development process.
  • Automation & Tooling: Enhance security automation capabilities by integrating security testing tools into CI/CD pipelines.
  • Penetration Testing & Red Teaming: Facilitate internal and external penetration testing activities, helping to triage and remediate findings.
  • Security Champion Enablement: Collaborate with engineering teams to build security awareness and develop a network of Security Champions.
  • Incident & Response Readiness: Support Smarsh SOC and security incident response, including root cause analysis and post-mortem reviews for your product(s).
  • Security Compliance & Governance: Ensure alignment with regulatory requirements (SOC 2, ISO 27001, etc.) and support audit activities.

Requirements

  • 7+ years of experience in Product Security, Application Security, or a related security engineering role.
  • Deep expertise in secure software development, secure coding practices, and OWASP Top 10 / CWE 25.
  • Strong technical proficiency in modern programming languages (e.g., Python, Java, JavaScript, Go, or C#).
  • Experience with cloud-native security (AWS, Azure, GCP) and securing containerized environments (Docker, Kubernetes).
  • Proficiency in security testing tools such as Burp Suite, Endor, Semgrep, etc.
  • Strong background in network security, including firewalls, IDS/IPS, VPNs, and secure network design.
  • Hands-on experience with CI/CD security automation (GitHub Actions, Jenkins, GitLab CI, etc.).
  • Familiarity with infrastructure-as-code security (Terraform, CloudFormation) and cloud security posture management.
  • Strong understanding of identity & access management (OAuth, OIDC, SAML, JWT) and API security.
  • Knowledge of industry frameworks like NIST, ISO 27001, and SOC 2.
  • Experience driving developer enablement and security training initiatives.
  • Excellent communication and collaboration skills to engage with engineering, product, and leadership teams.

Benefits

  • We value our people and offer a competitive salary along with company bonus
  • Strong maternity and paternity scheme
  • A workplace pension scheme
  • Take what you need holiday package
  • Private medical insurance
  • Dental plan
  • Group life assurance
  • Group income protection
  • Employee assistance programme
  • A monthly wellness allowance
  • Adoption assistance
  • Stock options
Smarsh logo

Smarsh

Smarsh is a forward-thinking technology company focused on providing innovative solutions for runtime network and security services. With a strong emphasis on integrating AI capabilities, Smarsh aims to enhance security and network operations within its platform. The company is dedicated to empowering engineers by delivering robust, cloud-native products that ensure secure and performant application deployment. Smarsh values collaboration, strategic thinking, and technical excellence, and is committed to fostering a diverse and inclusive workplace where all qualified applicants are encouraged to apply.

Share This Job!

Save This Job!

Similar Jobs:

The Product Security Engineer will enhance security measures and practices across product development at iHerb.

USA
Full-time
Software Development
$84,957 - $173,775 USD/year

E.C.S

Product Security Engineer - Remote

Emerson Career Site

6 weeks ago

Join our team as a Product Security Engineer to lead Vulnerability Analysis and Penetration Testing efforts.

India
Full-time
Software Development

T.I.S

Product Security Engineer - Remote

Take-Two Interactive Software

6 weeks ago

Join Take-Two Interactive as a Product Security Engineer to enhance product security throughout the software and game lifecycle.

USA
Full-time
Software Development
$123,500 - $182,780/year

T.I.S

Product Security Engineer - Remote

Take-Two Interactive Software

6 weeks ago

Join Take-Two Interactive as a Product Security Engineer to enhance product security throughout the software and game lifecycle.

USA
Full-time
Software Development

T.I.S

Product Security Engineer - Remote

Take-Two Interactive Software

6 weeks ago

Join Take-Two Interactive as a Product Security Engineer to enhance the security of gaming products.

Worldwide
Full-time
Software Development