
Product Security Engineer
Ncontracts
full-time
Posted on:
Location Type: Remote
Location: Remote • Tennessee • 🇺🇸 United States
Visit company websiteSalary
💰 $80,000 - $100,000 per year
Job Level
JuniorMid-Level
Tech Stack
AnsibleAWSAzureCloudCyber SecurityDockerGoogle Cloud PlatformJavaJavaScriptKubernetesLinuxPostgresPythonRubySQL
About the role
- Participate in security architecture reviews and threat modeling for new features and systems
- Perform code reviews with focus on security vulnerabilities and best practices
- Design and implement security controls for cloud infrastructure (AWS, Azure, GCP)
- Participate in security assessments of AI/ML systems, including Agentic AI implementations
- Contribute to secure coding guidelines and security testing frameworks
- Integrate security tools into CI/CD pipelines (SAST, DAST, dependency scanning)
- Collaborate with DevOps team on infrastructure-as-code security practices
- Investigate and remediate security vulnerabilities across the technology stack
- Create security documentation for development teams and architectural decisions
- Support penetration testing activities and coordinate remediation efforts
- Research emerging threats and security technologies, particularly in AI/ML space
Requirements
- 2+ years of experience in application security or product security engineering
- Bachelor’s degree in computer science, Cybersecurity, or related technical field
- Strong programming skills in modern languages (Python, Ruby, Java, C#, JavaScript, PowerShell)
- Strong database experience with proficiency in SQL and PostgreSQL
- Deep understanding of web application security (OWASP Top 10, API security)
- Experience with cloud security architectures and containerization (Docker, Kubernetes)
- Experience with server administration across Linux and Windows environments
- Knowledge of security testing tools and methodologies (SAST, DAST, penetration testing)
- Experience applying risk assessment methodologies (DREAD, CVSS) to analyze security findings and establish data-driven remediation priorities
- Understanding of secure software development lifecycle (SSDLC) practices
- Experience with version control systems (Git) and CI/CD pipelines
- Experience with infrastructure automation using Ansible
- Demonstrated ability to communicate technical security concepts to diverse stakeholders and influence remediation efforts
- Self-motivated with ability to work independently and drive security initiatives to completion
- Experience collaborating with development teams to implement security fixes
Benefits
- Responsible PTO Plan that meets or exceeds state and local medical and family leave laws
- 11 paid holidays
- Community and social events to keep you connected and engaged
- Mental Health Benefits
- Medical, Dental and Vision insurance
- Company-paid Group Life Insurance, Short- and Long-Term Disability
- Flexible Spending Account & Health Savings Account
- Aflac Benefits – Critical Illness, Cancer Protection, & Hospital Choice
- Pet Insurance
- 401 (k) with company match with eligibility on Day 1 of employment
- 2 Paid Volunteer Time Off Days
- And much more!
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
application securityproduct security engineeringprogramming (Python, Ruby, Java, C#, JavaScript, PowerShell)database (SQL, PostgreSQL)web application securitycloud security architecturescontainerization (Docker, Kubernetes)server administration (Linux, Windows)security testing (SAST, DAST, penetration testing)risk assessment methodologies (DREAD, CVSS)
Soft skills
communicationself-motivatedindependent workcollaborationinfluence
Certifications
Bachelor’s degree in computer scienceBachelor’s degree in Cybersecurity