Taro Logo

Product Security Engineer

Databricks is the data and AI company that helps organizations unify and democratize data, analytics and AI.
$100,900 - $193,300
Security
Mid-Level Software Engineer
Remote
5,000+ Employees
2+ years of experience
Cybersecurity · Enterprise SaaS

Description For Product Security Engineer

Databricks is seeking a Product Security Engineer to join their team in a fully remote role across the United States. As part of the Product Security Team, you'll be instrumental in implementing and managing Security Development Lifecycle (SDLC) processes for all Databricks code. The role combines technical security expertise with practical risk management, focusing on preventing vulnerabilities in production systems.

The position involves conducting security design reviews, threat modeling, manual code reviews, and creating exploit chains. You'll work with a global team across the US and EMEA, supporting both engineering and non-engineering teams in securing product features. Key responsibilities include working with SAST and DAST tools, maintaining automation frameworks, and supporting incident response and vulnerability management programs.

Databricks offers a competitive compensation package with base salary ranging from $100,900 to $193,300 USD, depending on location zone. The company serves over 10,000 organizations worldwide, including major enterprises like Comcast, Condé Nast, and Grammarly, with a focus on unifying data, analytics, and AI.

The ideal candidate should have 2-4 years of experience in threat modeling, strong understanding of web security, cloud security, or applied cryptography, and proficiency in programming languages like Python, Java, Scala, or JavaScript. Skills in exploit writing, fuzzing, and security automation are highly valued.

This role offers an opportunity to impact product security at scale while working with cutting-edge technology in a rapidly growing company. The position combines hands-on technical work with strategic security planning, making it ideal for security professionals who want to shape security practices in a dynamic environment.

Last updated a day ago

Responsibilities For Product Security Engineer

  • Full SDLC Support for new product features including Threat Modeling, Design Review, Manual Code Review, Exploit writing
  • Support Incident Response and Vulnerability Response
  • Work with SAST tools to evaluate and identify false positives and file defects
  • Work on DAST tools and related automation for auto-assessment and defect filing
  • Maintain automation framework and add features to support security compliances
  • Help develop and implement security processes to improve SDLC process

Requirements For Product Security Engineer

Python
Java
JavaScript
  • 2-4 years Experience with Threat Modeling process
  • Understanding of Web Security, Cloud Security, Systems Security or Applied Cryptography
  • Proficient with Python/Java/Scala/JavaScript
  • Skilled in scripting and automation on exploits
  • Fuzzing skills
  • Exploit writing skills

Benefits For Product Security Engineer

Medical Insurance
Dental Insurance
Vision Insurance
  • Comprehensive benefits package
  • Medical Insurance
  • Dental Insurance
  • Vision Insurance

Interested in this job?

Jobs Related To Databricks Product Security Engineer