Applied Methods
~The MetaEngineeringProduct Security Engineer

Product Security Engineer

Product Security Engineers at AI companies sit within engineering organizations and own security across the software development lifecycle—threat modeling, secure code review, vulnerability management, and the security-relevant tooling that engineers depend on. In practice at AI companies, the role frequently extends past pure application security into the surrounding infrastructure and identity layers: securing CI/CD pipelines, designing IAM and secrets management for application access, and reviewing the cloud architecture the application runs on. The boundary with the infrastructure-side security role is genuinely blurry across the population, with most engineers in this slug doing both. AI-specific surfaces—LLM input handling, agent and tool-use boundaries, model-pipeline integrity—are emerging as a meaningful part of the work but sit alongside, not in place of, classical product security. These roles typically sit within security or product engineering organizations, partnering directly with developers to embed security into the build.

$ titles --canonical
Software Engineer, SecuritySecurity Software EngineerProduct Security EngineerStaff Product Security Engineer
Open Jobs50
Companies Hiring26
$02

Skills

What companies are looking for in this role.

$ skills --core

Designing and implementing security controls for infrastructure, compute, and identity systems across cloud platforms

95%

Conducting threat modeling and security architecture assessments for complex systems and applications

92%

Integrating security controls into CI/CD pipelines and infrastructure-as-code workflows

90%

Implementing vulnerability scanning and remediation workflows including static and dynamic analysis tools

90%

Conducting in-depth security code reviews and identifying exploitable vulnerabilities

88%

Building and maintaining scalable data pipelines for security telemetry, logs, and observability

88%

Architecting secure-by-default infrastructure using kernel-level security mechanisms and runtime policies

85%

Designing and operationalizing secure software development lifecycle practices and processes

85%

Building detection and response systems for identifying and remediating security threats at scale

82%

Managing software supply chain security including artifact signing, provenance tracking, and dependency analysis

78%

Designing and implementing abuse detection systems and automated enforcement mechanisms

75%

Establishing and operating penetration testing programs and red team exercises

72%

Building endpoint detection and response systems including kernel-based sensors

70%

Conducting digital forensics investigations and supporting incident response workflows

65%

Designing privacy-preserving systems and implementing data anonymization frameworks

62%
$ skills --emerging

Designing and implementing security controls for AI and machine learning systems and agents

88%

Building guardrails and detection mechanisms for large language models and AI-generated content

80%

Architecting agent security frameworks including sandboxing, permissioning, and execution boundaries

78%

Implementing security controls for AI model artifact storage, data lineage, and model signing

75%

Developing threat models and security strategies specific to machine learning pipelines and model training

72%

Building security systems for agentic workflows including input validation and output monitoring

70%

Designing attestation verification systems and consuming trust primitives from hardware

62%
$ skills --soft

Collaborating with cross-functional engineering and product teams to embed security into systems from design phase

93%

Translating complex security requirements and regulatory constraints into scalable technical solutions

82%

Communicating security vulnerabilities and architectural risks clearly to technical and non-technical stakeholders

80%

Mentoring engineers and driving security adoption across organizations

80%

Building and rolling out security programs from inception including tooling, standards, and policies

78%

Driving multi-month security initiatives independently from problem definition through execution

75%

Evaluating and assessing third-party security tools, vendors, and platforms

68%
$04

Open Jobs

50 open Product Security Engineer jobs across 26 companies.

Replit21h
Staff Software Engineer, Fraud
Foster City, CA·Engineering
Replit21h
Staff Software Engineer, Risk
Foster City, CA·Engineering
Replit21h
Senior Software Engineer, Fraud
Foster City, CA·Engineering
Replit21h
Senior Software Engineer, Risk
Foster City, CA·Engineering
Lovable5d
Staff / Principal Software Engineer, Security
Stockholm·Engineering
Lambda1w
Security Engineering Intern - Summer 2026
San Francisco Office (Fremont St)·Engineering
Replit2w
Product Security Architect
Foster City, CA·Engineering
Glean2w
Software Engineer, Platform Security
Remote - US·Engineering
Anthropic3w
Security Software Engineer, Platform Integration
New York City, NY; San Francisco, CA; Seattle, WA·Engineering
ElevenLabs3w
Compliance Engineer - EU
London·Engineering
Harvey3w
Staff Product Security Engineer
San Francisco·Engineering
Harvey3w
Staff Product Security Engineer
New York·Engineering
CoreWeave3w
Staff AI Security Engineer
Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA·Engineering
Reflection3w
Member of Technical Staff - Security Engineer
San Francisco·Engineering
Anthropic1mo
Senior Security Software Engineer, Linux Kernel Security - Nodes & Sensors
Zürich, CH·Engineering
Replit1mo
Staff Software Engineer, Anti-Abuse & Security
Foster City, CA·Engineering
Gong1mo
Senior Product Security Engineer
Tel Aviv·Engineering
Gong1mo
Senior Product Security Architect
Tel Aviv·Engineering
Scale AI1mo
Security Engineer, Product Security
New York, NY; San Francisco, CA; Seattle, WA; Washington, DC·Engineering
OpenAI1mo
Software Engineer, Security Observability
San Francisco·Engineering