Product Security Engineer

1 Month ago • 4 Years + • Product Management

Job Summary

Job Description

Smarsh is seeking a Product Security Engineer to support secure development across engineering teams. This hands-on role involves identifying and mitigating product risks through security reviews, tooling improvements, and vulnerability remediation. The engineer will work closely with senior security engineers and cross-functional teams to integrate security into the software development lifecycle, contributing to a cloud-first, DevOps-centric environment within a global team.
Must have:
  • Assist in integrating security practices into the software development lifecycle
  • Participate in structured threat modelling exercises
  • Work with engineering teams to review findings from SAST, SCA, DAST, and container scans
  • Track remediation progress for vulnerabilities
  • Conduct basic secure code and configuration reviews
  • Help maintain and enhance security scanning integrations in CI/CD pipelines
  • Assist in preparing for and triaging internal and third-party penetration tests
  • Help develop security best practices, developer guidance, and response runbooks
  • 4 years in security engineering, DevSecOps, application security, or related software engineering roles
  • Strong foundational knowledge of secure coding and OWASP Top 10 risks
  • Experience with at least one modern programming language (Python, Java, JavaScript, Go, or C#)
  • Familiarity with cloud platforms (AWS, Azure, or GCP) and container technologies (Docker, Kubernetes)
  • Exposure to security tooling such as SAST, SCA, or DAST scanners (Semgrep, Endor, Burp)
  • Basic understanding of identity and access controls (OAuth, SAML, API tokens)
  • Strong collaboration and communication skills
Good to have:
  • Experience working in Agile/Scrum teams or DevOps environments
  • Familiarity with CI/CD tools like GitHub Actions or Jenkins
  • Exposure to security frameworks (NIST, ISO 27001, SOC 2)
  • Experience working in SaaS, multi-tenant cloud environments
  • Knowledge of machine learning security (AI/ML model risks, LLM security best practices)
  • Familiarity with attack surface management and threat intelligence
  • Relevant certifications (Security+, SSCP, GSEC)
Perks:
  • Competitive salary along with company bonus
  • Strong maternity and paternity scheme
  • A workplace pension scheme
  • Take what you need holiday package
  • Private medical insurance
  • Dental plan
  • Group life assurance
  • Group income protection
  • Employee assistance programme
  • A monthly wellness allowance
  • Adoption assistance
  • Stock options

Job Details

Who are we?

Smarsh empowers its customers to manage risk and unleash intelligence in their digital communications. Our growing community of over 6500 organizations in regulated industries counts on Smarsh every day to help them spot compliance, legal or reputational risks in 80+ communication channels before those risks become regulatory fines or headlines. Relentless innovation has fueled our journey to consistent leadership recognition from analysts like Gartner and Forrester, and our sustained, aggressive growth has landed Smarsh in the annual Inc. 5000 list of fastest-growing American companies since 2008.

We're seeking a Product Security Engineer to support secure development across our engineering teams. In this hands-on role, you'll help identify and mitigate product risks by participating in security reviews, improving tooling, and supporting vulnerability remediation. You'll work closely with senior security engineers and cross-functional teams to build security into our software development lifecycle.

This is a great opportunity for a security-minded engineer who wants to grow their technical breadth while making meaningful impact in a cloud-first, DevOps-centric environment. You must be comfortable working as part of a global team in a dynamic, fast-paced environment. Collaboration across time zones and geographies is a key part of our culture and success.

How will you contribute?

  • Secure SDLC Support: Assist in integrating security practices into the software development lifecycle, including design reviews and backlog grooming.
  • Threat Modelling: Participate in structured threat modelling exercises with guidance from senior team members.
  • Vulnerability Triage: Work with engineering teams to review findings from SAST, SCA, DAST, and container scans and track remediation progress.
  • Code & Config Review: Conduct basic secure code and configuration reviews, escalating high-risk findings as needed.
  • Security Tooling & Automation: Help maintain and enhance security scanning integrations in CI/CD pipelines.
  • Pen Testing Coordination: Assist in preparing for and triaging internal and third-party penetration tests.
  • Security Documentation & Guidance: Help develop security best practices, developer guidance, and response runbooks.

What will you bring?

  • 4 years in security engineering, DevSecOps, application security, or related software engineering roles.
  • Strong foundational knowledge of secure coding and OWASP Top 10 risks.
  • Experience with at least one modern programming language (e.g., Python, Java, JavaScript, Go, or C#).
  • Familiarity with cloud platforms (AWS, Azure, or GCP) and container technologies (Docker, Kubernetes).
  • Exposure to security tooling such as SAST, SCA, or DAST scanners (e.g., Semgrep, Endor, Burp).
  • Basic understanding of identity and access controls (OAuth, SAML, API tokens).
  • Strong collaboration and communication skills, with a willingness to learn and grow.

Preferred Qualifications

  • Experience working in Agile/Scrum teams or DevOps environments.
  • Familiarity with CI/CD tools like GitHub Actions or Jenkins.
  • Exposure to security frameworks (NIST, ISO 27001, SOC 2).
  • Experience working in SaaS, multi-tenant cloud environments.
  • Knowledge of machine learning security (AI/ML model risks, LLM security best practices).
  • Familiarity with attack surface management and threat intelligence.
  • Relevant certifications (e.g., Security+, SSCP, GSEC) are a plus but not required.

What do we offer?

  • We value our people and offer a competitive salary along with company bonus
  • Strong maternity and paternity scheme
  • A workplace pension scheme
  • Take what you need holiday package
  • Private medical insurance
  • Dental plan
  • Group life assurance
  • Group income protection
  • Employee assistance programme
  • A monthly wellness allowance
  • Adoption assistance
  • Stock options

Don't meet every requirement? Apply anyway! We value diverse candidates and encourage applications, even if you don't perfectly match the job description. Studies have shown that some strong candidates may self-select out of the interview process prematurely, at Smarsh we encourage an inclusive, high-performing environment.

Smarsh is an equal opportunity and affirmative action employer. Qualified applicants will receive consideration without regard to their race, colour, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Smarsh invites all qualified interested applicants to apply for career opportunities. Reasonable accommodations may be made to enable individuals with disabilities to perform essential functions. Including frequency of functions.

About our culture

Smarsh hires lifelong learners with a passion for innovating with purpose, humility and humor. Collaboration is at the heart of everything we do. We work closely with the most popular communications platforms and the world’s leading cloud infrastructure platforms. We use the latest in AI/ML technology to help our customers break new ground at scale. We are a global organization that values diversity, and we believe that providing opportunities for everyone to be their authentic self is key to our success. Smarsh leadership, culture, and commitment to developing our people have all garnered Comparably.com Best Places to Work Awards. Come join us and find out what the best work of your career looks like.

Similar Jobs

JDA - Sr Accountant I

JDA

Scottsdale, Arizona, United States (Remote)
4 Weeks ago
Mercury - Sales Development Representative

Mercury

San Francisco, California, United States (Remote)
1 Month ago
Wind River - Senior Engineer - Technical Support

Wind River

Galați, Județul Galați, Romania (On-Site)
1 Month ago
Resolver - Solutions Architect

Resolver

Toronto, Ontario, Canada (Hybrid)
1 Month ago
HappyRobot - Revenue Operations Analyst

HappyRobot

San Francisco, California, United States (On-Site)
4 Months ago
Bebopbee - Lead Product Manager

Bebopbee

Palo Alto, California, United States (Remote)
3 Months ago
Paytm - Product Operation - Assistant Manager - Lending

Paytm

Noida, Uttar Pradesh, India (On-Site)
3 Months ago
Rocket Science - Producer (Technical Account Manager)

Rocket Science

Albany, New York, United States (Hybrid)
5 Months ago
Gamomat - Freelance Product Manager - Games

Gamomat

Berlin, Berlin, Germany (Hybrid)
1 Month ago
Epic Games - Senior Producer

Epic Games

(On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Xplor Technologies - Customer Success Manager (Maternity Leave 12-Month Contract)

Xplor Technologies

Melbourne, Victoria, Australia (Hybrid)
1 Month ago
velotio technologies  - QA Architect

velotio technologies

Pune, Maharashtra, India (Remote)
3 Months ago
USE Insider - Solutions Consultant - France

USE Insider

Paris, Île-de-France, France (On-Site)
2 Months ago
Zscaler - Sales Development Manager

Zscaler

Raleigh, North Carolina, United States (Hybrid)
1 Month ago
Mercury - Senior Engineering Manager - Reconciliation

Mercury

Canada (Remote)
1 Month ago
USE Insider - Account Executive - Brazil

USE Insider

State Of São Paulo, Brazil (Hybrid)
3 Months ago
Paperflite - Senior Product Manager

Paperflite

Chennai, Tamil Nadu, India (On-Site)
10 Months ago
deel. - HR Experience Specialist

deel.

Philippines (Remote)
4 Weeks ago
undefined - Director, Product Specialists

United States (Remote)
2 Months ago
Demandbase - Director, Customer Marketing

Demandbase

United States (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

Jobs in London, England, United Kingdom

Toast - Field Service Manager

Toast

London, England, United Kingdom (Hybrid)
1 Month ago
affinidi - Mobile Engineering Manager (m/f/d)

affinidi

London, England, United Kingdom (On-Site)
4 Weeks ago
Synthesia - Sales Operations Director

Synthesia

London, England, United Kingdom (Remote)
1 Month ago
Haptic  - Technical Art Director

Haptic

United Kingdom (Hybrid)
7 Months ago
Adyen - Regulatory Product Compliance Manager

Adyen

London, England, United Kingdom (On-Site)
1 Month ago
London stock Exchange - Lead Software Engineer (Python)

London stock Exchange

Nottingham, England, United Kingdom (On-Site)
3 Months ago
Rebellion - Senior Gameplay Programmer

Rebellion

Runcorn, England, United Kingdom (Hybrid)
4 Months ago
Lighthouse Games - Principal Material Artist

Lighthouse Games

Royal Leamington Spa, England, United Kingdom (Hybrid)
2 Months ago
Nice - Partner Enablement Manager International

Nice

London, England, United Kingdom (Hybrid)
2 Months ago
Morning Star - Associate Sales Manager - Audience

Morning Star

London, England, United Kingdom (Hybrid)
4 Weeks ago

Get notifed when new similar jobs are uploaded

Product Management Jobs

Sony Pictures Entertainment - Producer, International Formats - Maternity Cover

Sony Pictures Entertainment

London, England, United Kingdom (Hybrid)
1 Month ago
Springer Group - Engineering Product Manager

Springer Group

Lisbon, Lisbon, Portugal (On-Site)
1 Year ago
Adyen - Senior Content Producer / Writer

Adyen

San Francisco, California, United States (On-Site)
1 Month ago
Nintendo - Experiential Marketing Specialist (Event Producer)

Nintendo

Redmond, Washington, United States (Hybrid)
1 Year ago
Welltech - Senior Product Manager, Platform

Welltech

Limassol, Limassol, Cyprus (Hybrid)
3 Months ago
Epic Games - Senior Technical Product Manager, Identity

Epic Games

Vancouver, British Columbia, Canada (On-Site)
4 Months ago
Socialpoint - ExDev Producer

Socialpoint

Barcelona, Catalonia, Spain (Hybrid)
2 Months ago
Perplexity - AI Research/Machine Learning Engineer - Agent Products

Perplexity

California, United States (On-Site)
3 Months ago
Valeo - Production Planner

Valeo

Czechowice-Dziedzice, Silesian Voivodeship, Poland (On-Site)
3 Months ago
Loyalty Juggernaut - Product Engineer (Angular)

Loyalty Juggernaut

Hyderabad, Telangana, India (On-Site)
1 Year ago

Get notifed when new similar jobs are uploaded

About The Company

London, England, United Kingdom (Remote)

Atlanta, Georgia, United States (Hybrid)

Bengaluru, Karnataka, India (Hybrid)

Heredia, Costa Rica (Remote)

United Kingdom (Remote)

Bengaluru, Karnataka, India (Hybrid)

Atlanta, Georgia, United States (Hybrid)

Bengaluru, Karnataka, India (Hybrid)

Heredia, Costa Rica (Hybrid)

View All Jobs

Get notified when new jobs are added by smarsh

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug