Senior Product Security Engineer

1 Month ago • 5 Years + • Cyber Security • $140,000 PA - $180,000 PA

Job Summary

Job Description

SoundCloud empowers artists and fans to connect and share through music. As a Product Security Engineer, you will collaborate cross-functionally with engineering teams to identify and address potential vulnerabilities and implement robust security measures in our products and services. You will advocate and shape security best practices across SoundCloud’s Engineering, Product, and Design (“EPD”) organization, playing a pivotal role in safeguarding our products against emerging cyber threats to our platform, artists, creators, listeners, and fans.
Must have:
  • Conduct code reviews and threat modeling exercises.
  • Automate the security of the Software Development Lifecycle.
  • Define, implement, and oversee Vulnerability Management Program processes.
  • Triage and remediate submissions from external bug bounty program.
  • Participate in security incident response process.
  • Make recommendations to improve consumer security of the platform.
  • Identify and improve security anti-patterns in codebases and architecture.
  • Guide Engineering and Product teams on safe use of Generative AI.
  • Promote security best practices through educational initiatives.
  • Improve internal tooling, processes, and documentation.
  • Mentor and onboard new team members.
Good to have:
  • Knowledge of industry-standard security frameworks and regulations (GDPR, CCPA, SOC2, NIS2, OWASP)
  • Experience with vulnerability management
  • Experience threat modeling Generative AI applications & use-cases in the context of the EU AI Act
Perks:
  • Comprehensive health benefits (medical, dental, vision, mental health)
  • Robust 401k program
  • Employee Equity Plan
  • Generous professional development allowance
  • Creativity and Wellness benefit (gym membership, photography course, book)
  • Flexible vacation and public holiday policy (up to 35 days PTO annually)
  • 16 paid weeks for all parents (birthing and non-birthing)
  • Various snacks, goodies, and 2 free lunches weekly when at the office

Job Details

As a Product Security Engineer, you will collaborate cross-functionally with engineering teams to identify and address potential vulnerabilities and implement robust security measures in our products and services. You will advocate and shape security best practices across SoundCloud’s Engineering, Product, and Design (“EPD”) organization. This position has a unique opportunity to play a direct and pivotal role in safeguarding our products against emerging cyber threats to our platform, artists and creators, and listeners and fans.

Key Responsibilities:

  • Conduct code reviews and threat modeling exercises to identify and remediate potential security vulnerabilities
  • Drive efforts to automate the security of our Software Development Lifecycle
  • Define, implement, and oversee processes and policies in our Vulnerability Management Program
  • Triage and drive to remediation submissions from our external bug bounty program
  • Participate in our security incident response process
  • Make recommendations to product and teams about how to improve the consumer security of our platform
  • Identify security anti-patterns in our codebases and architecture, and make recommendations to engineering on how to improve them
  • Help guide our Engineering and Product teams around the safe and responsible use of Generative AI in our products and SDLCs.
  • Promote and implement security best practices through educational initiatives, such as CTFs and technical talks
  • Improve internal tooling, processes, and documentation
  • Mentor and onboard new team members

Experience and Background:

  • 5+ years of product or application security experience, or other relevant software engineering experience
  • Enthusiasm about collaborating with engineering and product teams to proactively address security issues in products
  • Experience conducting threat modeling exercises and secure code reviews
  • Experience configuring DevSecOps tools (e.g. SAST, SCA, Secret Scanning)
  • Experience managing bug bounty programs
  • Familiarity with languages such as Javascript, Go, Ruby, Python, or Scala
  • Experience working with cloud providers (AWS, GCP) and Developer SaaS solutions (GitHub, Jira)
  • Familiarity with IaC tools such as Terraform
  • Ability to effectively communicate risk to technical and non-technical audiences
  • Experience with data analysis (SQL) in order to determine scope and impact of vulnerabilities
  • Knowledge of industry-standard security frameworks and regulations, such as GDPR, CCPA, SOC2, NIS2, and OWASP is a plus
  • Experience with vulnerability management is a plus
  • Experience threat modelling Generative AI applications & use-cases in the context of the EU AI Act is a plus

About us:

  • We are a multinational company with offices in the US (New York and Los Angeles), Germany (Berlin), and the UK (London)
  • We provide a flexible work culture that offers the opportunity to collaborate and connect in person at our offices as well as accommodating work from home
  • We are deeply committed to ensuring diversity, equity and inclusion at all levels of our organization and fostering a community where everyone’s voice, perspective and experience is respected and heard
  • We believe a strong team is made by investing in employees through mentorship, workshops and enrichment opportunities

Benefits:

  • Comprehensive health benefits including medical, dental, and vision plans, as well as mental health resources
  • Robust 401k program
  • Employee Equity Plan
  • Generous professional development allowance
  • Interested in a gym membership, photography course or book? We have a Creativity and Wellness benefit!
  • Flexible vacation and public holiday policy where you can take up to 35 days of PTO annually
  • 16 paid weeks for all parents (birthing and non-birthing), regardless of gender, to welcome newborns, adopted and foster children
  • Various snacks, goodies, and 2 free lunches weekly when at the office

Diversity, Equity and Inclusion at SoundCloud

SoundCloud is for everyone. Diversity and open expression are fundamental to our organization; they help us lead what’s next in music by understanding and empowering our creators and fans, no matter their identity. We acknowledge the challenges in the music industry, and strive to influence an inclusive culture where everyone can contribute respectfully and thrive, especially the historically marginalized communities that many of our creators, fans and SoundClouders identify with. We are dedicated to creating an inclusive environment at SoundCloud for everyone, regardless of gender identity, sexual orientation, race, ethnicity, migration background, national origin, age, disability status, or care-giver status.

At SoundCloud you can find your community or elevate your allyship by joining a Diversity Resource Group. Diversity Resource Groups are employee-organized groups focused on supporting and promoting the interests of a particular underrepresented community in order to build a more inclusive culture at SoundCloud. Anyone can join, whether you share the identity or strive to be an ally.

Similar Jobs

Toast - Staff Software Engineer

Toast

Chennai, Tamil Nadu, India (Hybrid)
2 Months ago
deel. - Senior Backend Engineer, Node.js + AWS

deel.

Romania (Remote)
1 Month ago
Varonis  - Manager of Customer Success

Varonis

United States (On-Site)
4 Months ago
Egnyte - AEC Account Executive 2 - East

Egnyte

Raleigh, North Carolina, United States (On-Site)
3 Months ago
C3 IoT - Senior Manager/Director, Strategic Partnerships

C3 IoT

London, England, United Kingdom (On-Site)
1 Month ago
Postman - Staff Product Manager, Security

Postman

San Francisco, California, United States (Hybrid)
1 Month ago
Tesla - Fulfillment Analyst EMEA - Energy Products

Tesla

North Brabant, Netherlands (On-Site)
6 Months ago
Marsh McLennan - Analyst - IT Product Support

Marsh McLennan

Mexico City, Mexico (Hybrid)
4 Months ago
PlaySimple - Senior Product Manager

PlaySimple

(On-Site)
6 Months ago
22 dog studios - Freelance VFX Producer

22 dog studios

Tenerife, Magdalena, Colombia (Hybrid)
3 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Synthesia - Mid-Market Account Executive

Synthesia

New York, United States (Hybrid)
1 Month ago
PayPal - Director, Head of Analytics & Transformation, SMB

PayPal

San Jose, California, United States (On-Site)
1 Year ago
Diligent Corporation - Customer Success Specialist

Diligent Corporation

Bengaluru, Karnataka, India (Hybrid)
1 Month ago
Sierra - Commercial Counsel

Sierra

Atlanta, Georgia, United States (On-Site)
1 Month ago
Threat connect - Technical Product Marketing Manager, Threat Intel and SecOps

Threat connect

United States (Remote)
6 Months ago
Cognite - Senior Field Engineering Director / Pre-sales

Cognite

Tokyo, Japan (Hybrid)
11 Months ago
WebFX - Sales Account Executive

WebFX

United States (Remote)
8 Months ago
EveryMatrix - Group Payroll Specialist

EveryMatrix

Bucharest, Bucharest, Romania (Hybrid)
2 Months ago
Aledade - Technical Product Manager (Data & Infrastructure)

Aledade

United States (Remote)
1 Month ago

Get notifed when new similar jobs are uploaded

Jobs in Atlanta, New York, United States

tapblaze  - Product Manager - F2P Mobile Gaming

tapblaze

Los Angeles, California, United States (On-Site)
5 Months ago
Celestial AI - Senior Firmware Engineer

Celestial AI

Santa Clara, California, United States (On-Site)
1 Month ago
Flow - Senior Product Designer

Flow

Miami, Florida, United States (On-Site)
10 Months ago
bytedance - Software Engineer, Model Inference

bytedance

San Jose, California, United States (On-Site)
1 Month ago
Rocket Science - Software Engineer - Godot

Rocket Science

Albany, New York, United States (Hybrid)
2 Months ago
Carbon Health - Primary Care Physician

Carbon Health

Boston, Massachusetts, United States (On-Site)
1 Month ago
Sawhorse Productions - Data Analyst

Sawhorse Productions

California, United States (Remote)
5 Months ago
WebFX - Junior Outreach Strategist (Non-Client Facing)

WebFX

Harrisburg, Pennsylvania, United States (On-Site)
3 Months ago
Technicon design - Engineering Technician

Technicon design

Long Beach, California, United States (On-Site)
1 Month ago
Meow Wolf - Area Sales Assistant Manager

Meow Wolf

Grapevine, Texas, United States (On-Site)
1 Year ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

 Many Chat  Inc  - Product Marketing Manager

Many Chat Inc

Barcelona, Catalonia, Spain (Hybrid)
1 Month ago
Univision - Senior Product Manager, Partnerships

Univision

Bogota, Colombia (On-Site)
1 Year ago
Wildlife Studios - Product Manager

Wildlife Studios

São Paulo, Brazil (On-Site)
3 Months ago
Monzo - Senior Product Manager, Open Banking

Monzo

London, England, United Kingdom (Remote)
3 Months ago
Match Group - Lead Product Manager

Match Group

Vancouver, British Columbia, Canada (Hybrid)
2 Months ago
Pomelo - Senior Product Manager, Growth & New Ventures

Pomelo

United States (Remote)
1 Month ago
Quantic Dream - Live Ops Producer (F/M/NB)

Quantic Dream

Paris, Île-de-France, France (Hybrid)
10 Months ago
Rockstar Games - Production Coordinator

Rockstar Games

Leeds, England, United Kingdom (On-Site)
3 Months ago
Krafton India  - Sr Product Manager

Krafton India

Bengaluru, Karnataka, India (On-Site)
4 Months ago
hogarth - Content Production Manager

hogarth

Buenos Aires, Buenos Aires, Argentina (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

About The Company

New York, New York, United States (Hybrid)

New York, United States (On-Site)

New York, United States (Hybrid)

United States (Hybrid)

Berlin, Berlin, Germany (On-Site)

Atlanta, New York, United States (Hybrid)

Berlin, Berlin, Germany (Hybrid)

Berlin, Berlin, Germany (On-Site)

Berlin, Berlin, Germany (Hybrid)

New York, United States (On-Site)

View All Jobs

Get notified when new jobs are added by sound cloud

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug
Contact Us
hello@outscal.com
Made in INDIA 💛💙