Taro Logo

Staff Product Security Engineer

Databricks is the data and AI company that helps organizations unify and democratize data, analytics and AI, serving over 10,000 organizations worldwide including 50% of Fortune 500.
Security
Staff Software Engineer
In-Person
5,000+ Employees
5+ years of experience
Cybersecurity · Enterprise SaaS

Description For Staff Product Security Engineer

Databricks is seeking a Staff Product Security Engineer to join their Product Security Team. This role focuses on implementing and managing Security Development Lifecycle (SDLC) processes across all Databricks code bases. The position involves conducting security design reviews, threat modeling, manual code reviews, and exploit development to enhance the security posture of Databricks' services.

As a key member of the global product security team, you'll work across US and EMEA locations to ensure security is built into products from the ground up. Your responsibilities will include comprehensive SDLC support, incident response, vulnerability management, and automation of security processes. You'll play a crucial role in maintaining security compliance standards like FedRamp, PCI, and HIPAA.

The ideal candidate brings 5-10 years of experience in threat modeling, strong programming skills in languages like Python/Java/Scala/JavaScript, and deep expertise in web security, cloud security, or applied cryptography. You'll need to demonstrate strong capabilities in exploit development, security automation, and risk-based security decision making.

At Databricks, you'll be part of a company that serves over 10,000 organizations worldwide, including 50% of the Fortune 500. The company offers comprehensive benefits and maintains a strong commitment to diversity and inclusion. This role offers an opportunity to make a significant impact on the security of a platform that's at the forefront of data and AI technology.

Last updated a day ago

Responsibilities For Staff Product Security Engineer

  • Full SDLC Support for new product features including Threat Modeling, Design Review, Manual Code Review, Exploit writing
  • Support Incident Response and Vulnerability Response
  • Work with SAST tools to evaluate and identify false positives and file defects
  • Work on DAST tools and related automation for auto-assessment and defect filing
  • Maintain automation framework and add features to support security compliances
  • Help develop and implement security processes to improve SDLC process

Requirements For Staff Product Security Engineer

Python
Java
JavaScript
Scala
  • 5-10 years Experience with Threat Modeling process
  • Solid understanding of Web Security, Cloud Security, Systems Security or Applied Cryptography
  • Proficient with Python/Java/Scala/JavaScript
  • Strong skills on scripting and automation on exploits
  • Fuzzing skills
  • Exploit writing skills

Benefits For Staff Product Security Engineer

Medical Insurance
Dental Insurance
Vision Insurance
  • Comprehensive benefits package

Interested in this job?

Jobs Related To Databricks Staff Product Security Engineer