Job Closed
This listing is no longer active.
Yubico sets new world standards for simple, secure login.
Product Security Engineer
Location
United States
Posted
70 days ago
Salary
$120K - $140K / year
Seniority
Senior
Job Description
Product Security Engineer
Yubico
• Define and evangelize requirements and guidance for secure by design and secure by default principles • Implement automation to prevent and detect security flaws in all phases of development • Conduct design reviews and manual security assessments • Lead training and awareness sessions • Define and implement metrics to provide visibility into the impact of your work • Define, lead, and influence processes to secure products and services • Identify and advocate for new and novel uses of Yubico’s technology • Ability to travel to Yubico’s other offices two times per year
Job Requirements
- 3+ years in a product security role
- 3+ years of software development
- Proficiency in threat modeling
- Proficiency in C
- Knowledge of common vulnerability classes
- Experience in static code analysis
Benefits
- Health coverage. We’ve got you covered with top of the line health plans, including dental and vision. We pay 100% of your premium and 85% for your family.
- Retirement plan. Our retirement plan includes a 401K dollar per dollar match up to 6% with a cap of $6K/year. Immediate vesting.
- Wellness reimbursement. We offer $1,200.00 in wellness earnings (prorated based on start date) that you can use on your gym membership, a massage, or your favorite online fitness classes. This is a taxable benefit if you choose to participate.
- Learning and development. We encourage your professional growth and offer a yearly development stipend of $3,000 and mentorship program.
- Time off. We offer a total of 15 vacation days plus 10 holidays, and 7 sick days a year.
- Paid parental leave. We love welcoming new family members to our YubiTeam! All parents receive 8 weeks of paid leave. Birthing parents receive an additional 8 weeks of paid leave (16 weeks total).
- Commuter Benefits. If you need to commute to the office, we offer commuter benefits.
- Strong mission & company values. We’re a global team on a global mission to make the internet more secure for everyone. We believe that every person’s work matters. That you should always be nice, stay humble, and have fun, and never take yourself too seriously.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
VP, Chief Information Security Officer (CISO)
NateraWe are a global leader in cell-free DNA (cfDNA) testing, dedicated to oncology, women’s health, and organ health.
• Own and operate the end-to-end enterprise cybersecurity program, including strategy, architecture, operations, governance, and compliance. • Establish a multi-year security roadmap aligned with business priorities, technology evolution, and regulatory requirements. • Drive program maturity, ensuring continuous improvement across all domains of cybersecurity. Ensure security is integrated into enterprise planning, product development, and operational execution. • Develop and maintain a risk-based cybersecurity investment framework to prioritize initiatives and allocate resources effectively. • Lead architectural decisions across: identity and access systems, data protection and encryption strategies, network and zero-trust architectures, secure platform design for clinical and genomic systems and for agentic workflows. • Present regular updates to executive leadership on cyber risk posture, threat landscape, program maturity, incident readiness and response. Lead Board-level discussions on cybersecurity strategy, risk tolerance, and investment priorities. • Define and execute a strategy for AI-assisted cybersecurity operations, leveraging machine learning, automation, and advanced analytics to enhance detection and response capabilities. • Build a highly automated, intelligence-driven SecOps function that minimizes manual intervention and improves speed and accuracy of threat identification and remediation. • Drive adoption and optimization of modern security platforms, including: Next-generation SIEM/SOAR, CNAPP / CSPM, EDR/XDR, Identity intelligence platforms. Leverage AI/ML to improve signal-to-noise ratio in security alerts, detect anomalous behavior across security domains, and automate triage, investigation, and response workflows • Integrate AI capabilities into threat intelligence, vulnerability management, and risk analysis processes. Continuously evaluate emerging AI security tools and capabilities, balancing innovation, risk, and operational value. • Oversee enterprise security operations including monitoring, detection, and response. Lead incident response and crisis management, ensuring rapid containment and recovery. • Own compliance strategy across frameworks including SOC 2, ISO 27001, and NIST. Ensure alignment with healthcare and global data protection regulations (HIPAA, GDPR, CCPA).
Staff Technical Program Manager, Security
GoFundMe.orgGoFundMe.org is a registered 501(c)(3) nonprofit organization that works closely with GoFundMe.
• Drive execution of security programs by developing structured plans, tracking deliverables, and ensuring alignment across stakeholders. • Develop and maintain security roadmaps that align security initiatives with business objectives, engineering priorities, and regulatory requirements. • Establish and refine security metrics to track program effectiveness, measure risk reduction, and provide visibility to leadership. • Facilitate cross-functional collaboration between security, engineering, IT, and product teams to embed security into business processes and the software development lifecycle. • Identify risks and roadblocks, proactively working with teams to resolve dependencies, optimize resources, and ensure timely execution of security initiatives. • Own security program reporting, providing executive summaries, dashboards, and presentations to senior leadership, including the CISO and executive team. • Standardize program management processes for security initiatives, ensuring consistent execution and communication across the organization. • Evangelize security best practices by fostering a culture of security awareness and accountability across teams.
Technical Leader – Digital Systems, Software, Cyber Security
Switzerland Global EnterpriseWe support Swiss SMEs in their international business and help innovative foreign companies to establish in Switzerland.
• Lead and mentor team with a focus on work planning, technical approach, design assurance, and execution excellence from ITO through OTR on new build and modernization projects • Lead integrated approaches and solutions across the diverse plant disciplines or specialties of Instrumentation, Control, DCS, HFE, Simulation, Smart Plant Digital Tools and Electrical • Coordinate across matrixed Engineering teams to assess RFIs/RFPs, analyze plant system requirements, operations and maintenance goals, possible I&C and DCS architectures, equipment selection, phased implementations, develop list of clarifications and exceptions, prepare proposals with scope, conformance matrix and risk scorecard, work plans, cost estimates, and schedules • Support business and product line leaders in ITO commercial risk review process, marketing initiatives, bid proposals, RFQ evaluation, and technical recommendations • Lead preparation of high through low work planning, scheduling, and resource loading across lifecycle phases of Engineer-Procure-Construct or new product introduction using the applicable practices, guides, and tools • Support project engineering or manager with understanding execution metric and status, issues, risks, mitigation or recovering plans, and be extremely proactive to identify changes in scope • Drive compliance utilizing scope, level 5 work plan, budget, overall schedule, applicable design processes, and discipline specific practices and tools including design and technical reviews • Lead “day-to-day” operations and follow-up to ensure deliverables are produced and commitments met on-spec., on-budget, and on-schedule • Collaborate proactively and inclusively for overall team across other engineering disciplines to support integrated plant design objectives • Collaborate with project management, project engineering, support functions, and others to drive project completion • Identify, confirm, document, and lead resolution of technical, risk, other emergent issues • Provide technical oversight and mentorship to ensure system designs and deliverables comply with requirements throughout design release to manufacturing or supplier including production, validation, installation, and commission tests • Support strategy, plan, statement of work preparation, and implementation of resource loading and mobilization involving employees, staff augmentation contractors, suppliers and partners including other GE entities • Assist with hosting learning sessions, knowledge capture, and transfer initiatives • Champion conformance with regulations and guides, standard review plans, branch technical positions, interim staff guidance, information notices and summaries, bulletins, orders, applicable nuclear guidance, and industry standards • Remain current on nuclear regulatory issues and system, component, and equipment product knowledge • Use variety of tools for requirements, design, change, configuration, and document management • Support simplification, continuous process improvement, and cost-out • Champion nuclear safety culture; Ensure compliance with GEH policies, quality management system, and corrective action program • Deliver work with integrity, safety, security, quality, and on-time output • Responsible for processes, procedures and instructions (PPI) and is dedicated to continuous improvement by identifying opportunities and ways to improve the efficiency, effectiveness, and agility of processes • Implementing changes by using methodologies like Lean, Six Sigma, or Kaizen to make changes
• Lead and mentor team with a focus on work planning, technical approach, design assurance, and execution excellence from ITO through OTR on new build and modernization projects • Lead integrated approaches and solutions across the diverse plant disciplines or specialties of Instrumentation, Control, DCS, HFE, Simulation, Smart Plant Digital Tools and Electrical • Coordinate across matrixed Engineering teams to assess RFIs/RFPs, analyze plant system requirements, operations and maintenance goals, possible I&C and DCS architectures, equipment selection, phased implementations, develop list of clarifications and exceptions, prepare proposals with scope, conformance matrix and risk scorecard, work plans, cost estimates, and schedules • Support business and product line leaders in ITO commercial risk review process, marketing initiatives, bid proposals, RFQ evaluation, and technical recommendations • Lead preparation of high through low work planning, scheduling, and resource loading across lifecycle phases of Engineer-Procure-Construct or new product introduction using the applicable practices, guides, and tools • Support project engineering or manager with understanding execution metric and status, issues, risks, mitigation or recovering plans, and be extremely proactive to identify changes in scope • Drive compliance utilizing scope, level 5 work plan, budget, overall schedule, applicable design processes, and discipline specific practices and tools including design and technical reviews • Lead “day-to-day” operations and follow-up to ensure deliverables are produced and commitments met on-spec., on-budget, and on-schedule • Collaborate proactively and inclusively for overall team across other engineering disciplines to support integrated plant design objectives • Collaborate with project management, project engineering, support functions, and others to drive project completion • Identify, confirm, document, and lead resolution of technical, risk, other emergent issues • Provide technical oversight and mentorship to ensure system designs and deliverables comply with requirements throughout design release to manufacturing or supplier including production, validation, installation, and commission tests • Support strategy, plan, statement of work preparation, and implementation of resource loading and mobilization involving employees, staff augmentation contractors, suppliers and partners including other GE entities • Assist with hosting learning sessions, knowledge capture, and transfer initiatives • Champion conformance with regulations and guides, standard review plans, branch technical positions, interim staff guidance, information notices and summaries, bulletins, orders, applicable nuclear guidance, and industry standards • Remain current on nuclear regulatory issues and system, component, and equipment product knowledge • Use variety of tools for requirements, design, change, configuration, and document management • Support simplification, continuous process improvement, and cost-out • Champion nuclear safety culture; Ensure compliance with GEH policies, quality management system, and corrective action program • Deliver work with integrity, safety, security, quality, and on-time output • Responsible for processes, procedures and instructions (PPI) and is dedicated to continuous improvement by identifying opportunities and ways to improve the efficiency, effectiveness, and agility of processes • Implementing changes by using methodologies like Lean, Six Sigma, or Kaizen to make changes




