Product Security Engineer Senior in United States Embassy at Jobgether
Explore Related Opportunities
Job Description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Product Security Engineer Senior based in the United States.
This role offers the opportunity to shape the security architecture of modern cloud-native platforms, connected products, and enterprise applications in a technology-driven environment. You will work at the intersection of cybersecurity, cloud engineering, and DevSecOps, embedding security throughout the software development lifecycle and helping teams build resilient, secure solutions from the ground up. Collaborating with engineering, platform, and DevOps teams, you will influence enterprise security strategy while driving the adoption of secure-by-design and Zero Trust principles. This position is ideal for an experienced security professional who enjoys solving complex technical challenges, improving cloud security maturity, and enabling innovation through scalable security practices.
- Design and lead secure architecture reviews for cloud-native, distributed, and IoT-enabled platforms, ensuring security is embedded throughout the product lifecycle.
- Define, implement, and maintain cloud security standards, guardrails, landing zones, and policy-as-code frameworks to strengthen infrastructure security.
- Lead the implementation and optimization of Cloud-Native Application Protection Platform (CNAPP) capabilities, including Cloud Security Posture Management (CSPM), Cloud Workload Protection (CWPP), Cloud Infrastructure Entitlement Management (CIEM), and identity risk analysis.
- Secure Azure Kubernetes Service (AKS), containerized workloads, Infrastructure-as-Code environments, APIs, and service-to-service communications using modern cloud security best practices.
- Integrate security controls into CI/CD pipelines by implementing shift-left security practices, including SAST, DAST, Software Composition Analysis (SCA), container scanning, Infrastructure-as-Code scanning, and runtime protection.
- Develop reusable security patterns, architectural standards, and governance frameworks that enable consistent implementation across engineering teams.
- Partner closely with engineering, DevOps, platform, and product teams to promote secure development practices and continuous security improvements.
- Communicate security assessments, technical findings, remediation recommendations, and strategic guidance to both technical and non-technical stakeholders.
- Drive enterprise-wide adoption of Zero Trust principles while continuously improving cloud security posture and operational resilience.
- Bachelor's degree in Computer Science, Information Technology, or a related technical discipline.
- Extensive experience designing and implementing secure cloud architectures for enterprise applications, cloud-native platforms, and distributed systems.
- Strong expertise with Microsoft Azure security services and cloud security architecture.
- Hands-on experience with leading CNAPP platforms such as Microsoft Defender for Cloud, Prisma Cloud, Wiz, Orca Security, Lacework, or similar solutions.
- Deep knowledge of Kubernetes, Azure Kubernetes Service (AKS), container security, workload protection, image hardening, and runtime security controls.
- Experience securing Infrastructure-as-Code environments using Terraform, ARM templates, Bicep, or comparable technologies.
- Strong background implementing DevSecOps practices, including CI/CD security integration, SAST, DAST, SCA, container scanning, Infrastructure-as-Code scanning, and policy-as-code.
- Excellent understanding of cloud governance, identity and access management, least-privilege principles, and Zero Trust security models.
- Strong analytical, problem-solving, communication, and stakeholder management skills with the ability to explain complex technical concepts clearly.
- Azure Security certifications are considered an asset.
- Competitive compensation package.
- Comprehensive medical, health, and wellness benefits.
- Retirement savings program and additional employee benefit offerings.
- Opportunities for ongoing technical learning, professional development, and industry certifications.
- Exposure to innovative cloud, IoT, and enterprise technology initiatives.
- Collaborative environment that encourages innovation, continuous improvement, and cross-functional teamwork.
- Inclusive workplace committed to diversity, equity, and equal opportunity.
- Opportunity to make a meaningful impact by shaping enterprise-wide security strategy and protecting mission-critical technologies.