Staff Security Engineer
Job Description
Delinea is seeking an experienced Principal/Staff-level Product Security Engineer to lead Product Security Program strategy and execution.
Responsibilities
- Provide strong leadership and serve as a security thought leader across Delinea product offerings
- Assess the current product security program state and partner to define future state and multi-year roadmaps
- Drive strategic security direction and influence security architecture adoption in product strategy and roadmap
- Advise on secure design for Delinea products and services using product security best practices and industry trends
- Conduct end-to-end security architecture reviews and leverage AI capabilities to augment team coverage
- Perform threat modeling and assess/document product risks and application designs
- Participate in expanding and maturing the S-SDLC program
- Stay current on the threat landscape, technologies, security compliance requirements, standards, and industry trends
- Develop baseline cloud, container, application, and infrastructure security standards and integrate them into CI/CD
- Automate operational activities that maintain product and cloud security infrastructure
- Respond to security incidents and, when appropriate, resolve or escalate
- Mentor and guide Product Security team members
- Implement organizational policies and standards for product and cloud security
- Partner with other teams to integrate cloud security best practices
- Participate in security audits, discuss application and cloud security, and support responses to customer security inquiries
Requirements
- Bachelor’s degree in Computer Science, Information Security, or similar related field (or equivalent experience)
- 12 years of professional work experience in cybersecurity
- 7+ years in a Product Security role including Security Architecture, Threat Modeling, Secure Design, AppSec tooling, and related work
- Strong knowledge of the current Product Security threat landscape and industry best practices
- Experience performing Threat Modeling and Product Security design reviews, integrated into SSDLC processes
- Experience with Cloud Security
- Experience with Cryptography
- Experience with Secure Design reviews and Threat Modeling
- Experience with SaaS multi-tenant product architecture
- Experience with REST APIs
- Experience with Containers (Docker, Kubernetes, or similar)
- Experience integrating security testing tools into development pipelines
- Experience with defect tracking (Jira, Bugzilla, ServiceNow, or similar)
- Experience with source code management (ADO, GitLab, GitHub, or similar)
- Experience with application security testing tools (SAST, DAST, IAST, SCA, or similar)
- Strong leadership, communication, and interpersonal skills; able to influence stakeholders at all levels
- Strong analytical skills to prioritize, manage competing demands, and meet deadlines
- Strong verbal and written communication skills, including explaining technical security issues in plain language
Technologies
- Cloud Security
- Cryptography
- SaaS multi-tenant product architecture
- REST APIs
- Docker
- Kubernetes
- Jira
- Bugzilla
- ServiceNow
- ADO
- GitLab
- GitHub
- SAST
- DAST
- IAST
- SCA
- CI/CD
- S-SDLC
- SSDLC
- Azure
- AWS
Benefits
- Competitive salaries
- Meaningful bonus program
- Healthcare insurance
- Pension/retirement matching
- Comprehensive life insurance
- Employee assistance program
- Time off plans
- Paid company holidays
- Excellent benefits
We’d Love to See
- Experience leveraging AI capabilities to automate and augment Product Security tasks such as Threat Modeling and Secure Design reviews
- Strong understanding of cybersecurity frameworks, risk management principles, and industry standards (e.g., NIST, ISO 27001, CIS, GDPR)
- Solid understanding of cloud security technologies including container security, serverless security, network and application security, and access management
- Software engineering and/or development experience
- Cybersecurity certifications (e.g., CISSP, CSSLP, CISM, or similar)
- Proficiency with Azure and AWS
Location and Compensation
- Location: Redwood City, CA (remote)
- Salary: USD 170,000 - 200,000 per year
Company Context
- Core focus on protecting human and machine identities
- Emphasis on smart, self-motivated, collaborative people and meaningful work
Core Values
- Spirited
- Trust
- Respect
- Ownership
- Nimble
- Global