
Staff Product Security Engineer
DataRobot
full-time
Posted on:
Location Type: Office
Location: Boston • California • Massachusetts • United States
Visit company websiteExplore more
Job Level
About the role
- Lead Federal Security: Serve as a primary technical lead for the DataRobot Federal Group, driving the acquisition and maintenance of Authority to Operate (ATO) at FedRAMP High and DoD IL5 levels.
- Compliance Engineering: Translate complex federal controls (NIST 800-53) into actionable engineering requirements for commercial developers.
- Audit & Policy Management: Write and maintain security policies (SSPs) and procedures.
- Security Engineering & Automation: Automate Everything: Develop custom automation to manage security tooling and implement "Secure-by-Design" processes in the CI/CD pipeline using Python or Go.
- Container Security: Identify, design, and implement controls to safeguard our containerized production environments.
- Customer Engagement: Act as the external face of DataRobot Security. Work directly with customers' security teams to resolve concerns regarding CVE exposure and architecture.
Requirements
- Must be a United States Citizen residing in the United States.
- 8+ years of experience working in Information Security, with significant time spent in Product Security or AppSec roles.
- Bachelor's or Master's degree in Computer Science, Cybersecurity, Information Systems, or a related field (or equivalent experience).
- Deep understanding of the FedRAMP authorization process, NIST 800-53, and DoD Cloud Computing Security Requirements Guide (SRG).
- Fluent in writing code using Python or Go to build security automation.
- Must have a deep understanding of Linux containers (internals, security isolation).
- Familiarity with Kubernetes orchestration is strongly preferred.
- Hands-on experience with common security tools such as Semgrep, Trivy, and Burp Suite.
Benefits
- Medical, Dental & Vision Insurance
- Flexible Time Off Program
- Paid Holidays
- Paid Parental Leave
- Global Employee Assistance Program (EAP) and more!
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
PythonGoLinux containersKubernetessecurity automationNIST 800-53FedRAMPsecurity policiesCI/CD pipelineAppSec
Soft skills
customer engagementtechnical leadershipcommunication