Principal Product Security Engineer
About the role
Join our dedicated Security team as a Principal Product Security Engineer. You’ll play a key role in helping our Engineering teams deliver secure software at speed. This role supports teams to shift-left on security and contributes to innovative security principles and securing new technologies.
You’ll contribute to internal tooling, architecture reviews, strategy, risk identification through threat modelling, and mentoring engineers on practical remediation.
Who you are;
You’re an experienced security professional who can partner closely with engineering teams to uplift security across cloud-based products. You balance hands-on technical depth with the ability to influence, educate, and drive scalable security improvements.
- Proven experience in security roles supporting cloud-based services, with strong knowledge of application and product security, OWASP Top 10, CWE/SANS Top 25, and compliance frameworks such as NIST, PCI DSS, and ISO 27001
- Secure-by-design mindset, designing pragmatic security solutions that fit domain needs and influencing developers to drive secure adoption
- Strong communicator, able to engage diverse audiences, bridge knowledge gaps, and lift overall security understanding
- Security assurance expertise, including solution design reviews, compliance reviews, ad-hoc source code reviews, and security maturity assessments
- Hands-on and technically confident, comfortable reading or writing code, introducing security concepts (e.g. canary deployments, feature/launch flags), and supporting peers with security queries
- Continuous improvement focus, proactively identifying patterns, trends, automation, frameworks, and tooling to improve code and data security, while thriving in fast-paced, collaborative environments with a customer-first mindset
About the role
Join our dedicated Security team as a Principal Product Security Engineer. You’ll play a key role in helping our Engineering teams deliver secure software at speed. This role supports teams to shift-left on security and contributes to innovative security principles and securing new technologies.
You’ll contribute to internal tooling, architecture reviews, strategy, risk identification through threat modelling, and mentoring engineers on practical remediation.
Who you are;
You’re an experienced security professional who can partner closely with engineering teams to uplift security across cloud-based products. You balance hands-on technical depth with the ability to influence, educate, and drive scalable security improvements.
- Proven experience in security roles supporting cloud-based services, with strong knowledge of application and product security, OWASP Top 10, CWE/SANS Top 25, and compliance frameworks such as NIST, PCI DSS, and ISO 27001
- Secure-by-design mindset, designing pragmatic security solutions that fit domain needs and influencing developers to drive secure adoption
- Strong communicator, able to engage diverse audiences, bridge knowledge gaps, and lift overall security understanding
- Security assurance expertise, including solution design reviews, compliance reviews, ad-hoc source code reviews, and security maturity assessments
- Hands-on and technically confident, comfortable reading or writing code, introducing security concepts (e.g. canary deployments, feature/launch flags), and supporting peers with security queries
- Continuous improvement focus, proactively identifying patterns, trends, automation, frameworks, and tooling to improve code and data security, while thriving in fast-paced, collaborative environments with a customer-first mindset