Databricks is seeking a Staff Product Security Engineer to join their Product Security Team. This role focuses on implementing and managing Security Development Lifecycle (SDLC) processes across all Databricks code bases. The position involves conducting security design reviews, threat modeling, manual code reviews, and exploit development to enhance the security posture of Databricks' services.
As a key member of the global product security team, you'll work across US and EMEA locations to ensure security is built into products from the ground up. Your responsibilities will include comprehensive SDLC support, incident response, vulnerability management, and automation of security processes. You'll play a crucial role in maintaining security compliance standards like FedRamp, PCI, and HIPAA.
The ideal candidate brings 5-10 years of experience in threat modeling, strong programming skills in languages like Python/Java/Scala/JavaScript, and deep expertise in web security, cloud security, or applied cryptography. You'll need to demonstrate strong capabilities in exploit development, security automation, and risk-based security decision making.
At Databricks, you'll be part of a company that serves over 10,000 organizations worldwide, including 50% of the Fortune 500. The company offers comprehensive benefits and maintains a strong commitment to diversity and inclusion. This role offers an opportunity to make a significant impact on the security of a platform that's at the forefront of data and AI technology.