Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
PayPal

Senior Product Security Engineer

PayPal

Senior Product Security Engineer building security scanners and developer guardrails for PayPal’s global payments platform. Improving software supply-chain, AI/LLM, and application security across engineering workflows.

Posted 9/11/2026full-timeAustin • Illinois, Texas • 🇺🇸 United StatesSenior💰 $130,500 - $193,600 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in security automation, risk reduction, and secure software development practices, with a strong focus on integrating security into CI/CD workflows and developer environments. Proficient in programming and scripting, with the ability to analyze and resolve complex security challenges while collaborating effectively with cross-functional teams.

Highest-signal resume keywords
Security Automation in CI/CDSAST and SCA ExperienceProgramming in Python, Go, and BashCloud-Native Technologies: GCP, Kubernetes, TerraformSecure Software Development Practices

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Security AutomationSASTSCASecrets DetectionSoftware Supply Chain SecurityProgramming in PythonProgramming in GoProgramming in BashStatic Analysis Rules TuningTelemetry and Metrics Analysis
Soft Skills
Clear CommunicationCollaborationIndependent Work
Tools & Technologies
GCPKubernetesTerraformAI/LLM ToolsCI/CD Tools
Industry Keywords
DevSecOpsApplication SecurityCybersecurityDependency GovernanceSBOMs

Tech Stack

Tools & technologies
CloudCyber SecurityGoGoogle Cloud PlatformJavaJavaScriptKubernetesOpen SourcePythonTerraform

About the role

Key responsibilities & impact
  • Design, build, and operate automated security scanners and developer guardrails across the software development lifecycle
  • Identify and reduce risk across source code, open source dependencies, secrets, software supply chains, AI/LLM tools, edge/CDN environments, and developer workflows
  • Apply security best practices to enhance and optimize systems
  • Partner with engineering, platform, and security teams on security initiatives and cross-functional projects
  • Analyze and resolve complex security challenges using standard and alternative approaches
  • Build and operate scanning and guardrail capabilities across source control, CI/CD, package ecosystems, and developer platforms
  • Tune SAST, SCA, and supply chain controls; investigate gaps and false positives; improve remediation guidance
  • Write and review code, APIs, detection rules, and automation that process findings and enforce security policy
  • Troubleshoot integrations with developers, platform engineers, and security teams
  • Evaluate AI/LLM tools and help define appropriate security controls
  • Use metrics and feedback to improve reliability, coverage, performance, adoption, and remediation outcomes

Requirements

What you’ll need
  • 3+ years relevant experience and a Bachelor’s degree OR any equivalent combination of education and experience
  • 3–5 minimum years of relevant experience in software engineering, application or product security, DevSecOps, or cybersecurity
  • Experience developing, integrating, or operating security automation in CI/CD or developer workflows
  • Experience with one or more of SAST, SCA, secrets detection, or software supply chain security
  • Programming or scripting experience in multiple languages such as Python, Go, and Bash
  • Ability to write, review, and troubleshoot code
  • Working knowledge of secure software development, common application vulnerabilities, dependency and package ecosystem risks, and practical remediation approaches
  • Experience with SLSA, SBOMs, provenance, artifact signing or verification, package repositories, or dependency governance
  • Experience creating or tuning rules for static analysis, secrets detection, or policy-as-code systems
  • Familiarity with security considerations for AI/LLM development tools, AI-assisted coding, or model and tool supply chains
  • Experience with GCP, Kubernetes, Terraform, and other cloud-native technologies
  • Familiarity with Java and JavaScript and ability to troubleshoot code
  • Experience using telemetry and metrics to improve security tooling at scale
  • Ability to work independently and collaborate with software, platform, and security teams
  • Clear written and verbal communication of technical findings and tradeoffs

Benefits

Comp & perks
  • Balanced hybrid work model: 3 days in the office and 2 days at either the PayPal office or home workspace
  • Generous paid time off
  • Healthcare coverage for you and your family
  • Resources supporting financial security
  • Mental health support resources
  • Annual performance bonus, as applicable
  • Equity, as applicable
  • Other incentive compensation, as applicable
  • Reasonable accommodations for qualified individuals with disabilities