Haystack
← Back to Jobs
Technology
SI

Product Security Engineer

Stellar IT SolutionsSunnyvale, CA🇺🇸United StatesPosted Sep 17, 2026

Why This Role Stands Out

This hybrid role at Stellar IT Solutions offers a fantastic opportunity to integrate security directly into product development, fostering significant career growth and skill enhancement within a reputable company. You'll thrive here if you are a proactive security professional eager to collaborate with engineering teams and shape secure application platforms. Apply now to make a tangible impact and advance your expertise!

Quick Overview

Seniority
Mid Senior
Work mode
Hybrid
Location
Sunnyvale, CA, United States
Posted
2 weeks ago
MicroservicesAWSEncryptionOWASPAzureGoogle CloudKubernetesPythonTypeScript

Job Description

Product Security Engineer

Sunnyvale, CA

Long Term Contract

About the role

We are seeking a multifaceted Product Security Engineer whose role will be to embed security directly into the product design and development lifecycle. Working closely with cross-functional engineering teams, you will play a crucial role in securing our application platform.

Roles:

  • Analyze applications and system architectures from their inception to release. Proactively identify potential security vulnerabilities and integrate robust security controls and conduct architecture reviews and threat modeling.
  • Conduct regular security assessments and utilize AI-assisted testing on products and systems to systematically identify and mitigate vulnerabilities before they can be exploited.
  • Assist in maturing vulnerability management program and drive risk-contextualized resolutions discovered through various security platforms, collaborating closely with development teams.
  • Provide continuous guidance and education to developers on secure coding practices, emerging threats, and general security best practices to cultivate a security-conscious culture.
  • Collaborate with incident response teams and join security incident calls that impact product operations and create targeted remediation suggestions based on current threat landscapes.
  • Work alongside software engineers to mature automated SAST and DAST tooling to secure development frameworks and CI/CD pipelines.

We're looking for someone who has:

  • 5+ years of demonstrable experience as a Security Engineer, Application Security Engineer, or Product Security Engineer within a highly complex, rapidly scaling software organization.
  • Proficiency in modern programming languages (such as Python, Typescript, etc.), knowledge of security tools (e.g., Burp Suite, OWASP ZAP), and familiarity with modern security protocols and encryption methods.
  • Implemented AI to rapidly identify, validate, and scale security programs.
  • Deep, practical knowledge of container security (Kubernetes), compute constraints, and securing ephemeral workloads across major public cloud platforms (AWS, Google Cloud Platform, Azure) and on-premises environments.
  • Hands-on experience deploying, tuning, and automating SAST, DAST, and CI/CD pipeline security tools.
  • Specific operational experience configuring and driving remediation through cloud security platforms.
  • Proven experience securing large-scale platform migrations and managing the distinct security lifecycles of both legacy systems and modern microservices.

Nice to have:

  • Direct professional experience in the autonomous vehicle, automotive, aerospace, or defense sectors.
  • Familiarity with physics-based simulation environments, deterministic computing constraints, or managing High-Performance Computing (HPC) clusters.
  • Demonstrable contributions to open-source security tools, published vulnerability research, or recognized vulnerability disclosures (CVEs)

Similar jobs