We create honest financial products that improve lives.
Staff Product Security Engineer
Location
United States
Posted
67 days ago
Salary
$200K - $275K / year
Seniority
Lead
Job Description
Staff Product Security Engineer
Affirm
• Partner with Affirm product teams to ensure that security is included in every phase of the product development lifecycle. • Conduct threat modeling and architecture reviews to ensure threats are understood, documented, and mitigated. • Review and analyze product source code to identify security vulnerabilities and provide recommendations for secure implementation. • Seek out opportunities to automate processes when appropriate. • Identify emerging classes of vulnerabilities and developing solutions for them before they’re a problem. • Assist product teams in the development of security focused test cases to enforce security requirements. • Advise product teams on business security requirements early in the product development lifecycle. • Decompose large, cross-team projects into individual tasks. Manage scope across teams and drive toward project closure.
Job Requirements
- Deep understanding of web application architecture and design principles
- Experience using modern software development and delivery techniques to develop cloud-based services. Python, Kotlin, Java, AWS, and Azure experience preferred.
- Knowledge of common security flaws and resolution as published by OWASP, SANS, etc.
- Experience with PCI or other regulated environments.
- Experience conducting threat models for complex, distributed products using standard threat modeling techniques and methodologies.
- Experience with standard authentication mechanisms, including SAML and OAuth2.
- Understanding of continuous integration / continuous deployment processes and tools.
- BS degree in related field or equivalent experience. MS degree in a related field or equivalent experience is a plus.
Benefits
- Health care coverage - Affirm covers all premiums for all levels of coverage for you and your dependents
- Flexible Spending Wallets - generous stipends for spending on Technology, Food, various Lifestyle needs, and family forming expenses
- Time off - competitive vacation and holiday schedules allowing you to take time off to rest and recharge
- ESPP - An employee stock purchase plan enabling you to buy shares of Affirm at a discount
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Provide influence and leadership over Samsara’s Enterprise Security roadmap and priorities, helping to balance both near-term and long-term business impact with technical considerations • Write clear, concise documentation and runbooks for enterprise security workflows • Collaborate with partners across Engineering, IT, and Security to ensure proper implementation of security tools and policies • Occasionally assist the Security Operations team during security investigations, acting as a technical subject matter expert within your domain • Partner with engineering teams to triage and support remediation of vulnerabilities and misconfigurations in systems and applications • Mentor engineers in the Security team to grow their domain knowledge, tool-specific skills, and communication abilities • Champion, role model, and embed Samsara’s cultural principles as we scale globally and across new offices
Data Analyst – Cybersecurity
CrowdSecCrowdSec is a CTI tool leveraging crowdsourced data to identify and block malevolent IPs in real time worldwide.
• Analyze Cyber Threat Intelligence data to extract meaningful insights • Identify trends, patterns, and anomalies in large-scale security data • Produce regular data-driven content (reports, blog posts, insights) to showcase the value of CrowdSec data • Analyze product usage to understand how users interact with CrowdSec • Identify friction points in the user journey • Provide actionable insights to improve feature adoption and overall user experience • Contribute to shaping future product features based on data • Define and monitor key product and business KPIs • Analyze network growth, user retention and churn patterns • Help the team understand what drives engagement and long-term usage • Leverage data to generate qualified leads and insights for Sales and Marketing • Identify high-potential accounts or segments based on usage or behavior • Support go-to-market strategies with data-driven insights
• Design and operate telemetry ingestion pipelines that collect and process data from endpoint, identity, network, cloud, and other enterprise security sources. • Normalize and enrich telemetry into structured datasets using standardized schemas and entity models so signals from different systems can be correlated consistently. • Build and maintain data models and graph ready structures that connect users, devices, identities, and activity across the security ecosystem. • Provide governed access to security datasets through APIs, query interfaces, and streaming pipelines used by Detection, Automation, AI, and Analytics teams. • Define lifecycle and retention strategies across hot, cold, and archive storage tiers to balance performance, scalability, and cost. • Work closely with enterprise data engineering and security engineering teams to align on architecture, data fabric strategy, and shared platform capabilities. • Maintain clear documentation of data sources, schemas, and entity definitions so teams across NVIDIA can reliably build on the platform.
• Owning the technical aspects of integration (configuration, debugging, documentation, testing, go-live) of our Security Solutions • Analyzing customer traffic as well as systems and customizing Akamai security solutions to answer customers' security issues • Managing and documenting technical issues, responses and requests to ensure information is recorded and updated • Collaborating with cross-functional project team to scope, set timelines, create technical solutions, and support the ongoing implementation • Participating in ongoing training initiatives to up-skill yourself and to train others.




