657,845open jobs
38,355companies
93,289added this week
Browse all
Salary
$33k – $74k per year (Estimated)
Location
Remote/Hybrid (Bengaluru, India)
Seniority
Senior · 5+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Greenlight is a family finance company headquartered in Atlanta, Georgia, and founded in 2014. The company issues a debit card and app for children and teenagers that parents control, with allowance automation, spending limits, savings goals, investing, and location sharing. It distributes both directly to families and through partnerships with banks and employers, and pairs the accounts with financial literacy content.

We are seeking a Senior Product Security Engineer to join our growing security team. This role will be critical in ensuring the security of our products across the entire software development lifecycle (SDLC) and provide support on different security initiatives. You will work closely with engineering, product, and operations teams to embed security best practices from design through to deployment. You will play a critical role in shaping our security posture, embedding security into our development lifecycle, and protecting our customers' data.

Technologies we use:

  • Backend: Node.js, Kotlin, Java, Go
  • Frontend: React, Redux, Swift, Kotlin
  • REST, gRPC, graphQL
  • AWS
  • MySQL, DynamoDB, Redis
  • Kubernetes, Ambassador, Helm, Rancher

What you will be doing:

  • Support in executing a comprehensive product security strategy that aligns with the company's goals and risk appetite.
  • You will work hands on across code, infrastructure, and CI/CD to create agents, services and pipelines that detect, prevent and remediate risks leveraging AI where it adds value.
  • Design, build and operate security automation for the SDLC (code scanning, dependency risk management, secrets detection, policy-as-code) integrated into CI/CD.
  • Perform Manual Design and Implementation Reviews of Greenlight products and services from a security perspective.
  • Establish and enforce secure development standards (i.e. API security, Security patterns, IaC, etc.) and best practices across the organization.
  • Serve as SME on the practical security of our AI and LLM ecosystem. Lead threat modeling exercises for novel AI systems applying advanced security and privacy best practices.
  • Leverage automations and tools to continuously test, fuzz and validate products and platform components for security issues.
  • Perform Penetration testing and retesting to validate fixes.
  • Responsible for triaging findings from security researchers and leading incident response for PSIRT.
  • OnCall support for incident response and lead product-related security events and vulnerabilities.
  • Partner with engineering, product, and platform teams to embed security by design patterns, drive threat modeling and land pragmatic guardrails that unblock developers.
  • Provide guidance and education to developers that help prevent the authoring of vulnerabilities.
  • Partner closely with engineering, product, and platform teams to prioritize and remediate security vulnerabilities in a timely and efficient manner.
  • Develop and maintain software supply chain protections including SBOM generation/verification, artifact signing/attestation, and provenance enforcement.
  • Build automation for static and dynamic analysis and frameworks that enable Greenlight to scale consistently across all our products.
  • Use data and telemetry to measure control effectiveness, build dashboards and alerts that turn signals into action.
  • Document runbacks and API, mentor engineers and champion secure engineering practices.
  • Foster a culture of security awareness and ownership across the Engineering and Product organizations.
  • Stay current with the latest security threats, vulnerabilities, and industry best practices to continuously evolve our security controls and processes.

What you should bring

  • 5+ years of experience finding security vulnerabilities, security code reviews and knowledge of secure code development for the technology stack at Greenlight.
  • 2-4 years experience with the threat modeling process and ability to find design problems based on technical architecture and data flow diagrams.
  • Experience with exploiting common security vulnerabilities
  • Deep technical knowledge of web and mobile application security, common vulnerabilities, secure coding practices, common exploit mitigations and secure architecture patterns.
  • Experience integrating or building AI-powered tools to assist with vulnerability detection, code review or threat modeling.
  • Experience creating software that enables security processes especially those leveraging AI/ML for automation or augmentation.
  • End to end experience on implementing and managing tools for Product Security (i.e. API Security, Mobile Protection, SAST, runtime scanning, etc.)
  • Experience with software development and automation that enables security processes. Deep technical knowledge of CI/CD pipelines and relevant tools for web and mobile applications.
  • Hands-on experience with security tools for SAST, DAST, IAST, and penetration testing. Fuzzing skills are good to have.
  • Skilled in scripting, automation and exploit writing.
  • Strong understanding of cloud security principles in AWS environments.
  • Strong communication skills with the ability to articulate complex security concepts to both technical and non-technical audiences.
  • Strong product sense for rapid iteration and refinement based on data, combined with a collaborative mindset to work closely with engineers, product managers, and security analysts in a fast-paced environment.

Nice to have:

  • Strong at abstraction turning bespoke engagements into reusable patterns and reference implementation.
  • Security assessment of IoT hardware/firmware
  • Contribution to security community including public research, bug bounty, presentations, blogs, etc
  • Experience at Fintech or similar regulated companies
  • Startup Agility and stay curious mindset
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
657,845 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Bengaluru
Software Developer 2 days ago
$85k – $105k per year • In office • Full-Time • Bachelor's Degree • Piedmont
JavaScript
TypeScript
SQL
C#
C#
.NET
Databases
MS SQL
Frontend
React.js
DevOps
Azure
CI/CD
AWS
Docker
Cybersecurity
GDPR
Management
Agile
Apply
$62k – $156k per year (Estimated) • In office • Full-Time • 5+ years exp • Master's Degree • Luxembourg City
Python
Bash
DevOps
Terraform
Ansible
GitLab CI
CI/CD
Git
AWS
Docker
Apply
$37k – $80k per year (Estimated) • Remote/Hybrid • Full-Time • 3+ years exp • Moscow
Python
C#
C#
.NET
AI/ML
vLLM
TensorRT
LLM
RAG
DevOps
CI/CD
Kubernetes
Amazon S3
Management
n8n
Apply
$48k – $141k per year (Estimated) • In office • Internship • Master's Degree • Taipei
C++
DevOps
RTOS
Debian
CI/CD
Apply
$89k – $256k per year (Estimated) • In office • Internship • Bellevue
Python
Go
Python
Django
Databases
PostgreSQL
Redis
Memcached
Apache Kafka
DevOps
AWS
Kubernetes
Apply
Remote • Internship • Atlanta
Management
Google Workspace
Apply
$100k – $140k per year • Remote/Hybrid • Full-Time • 8+ years exp • Atlanta
DevOps
SLI/SLO/SLA
Apply
$21k – $48k per year (Estimated) • Remote/Hybrid • Full-Time • 4+ years exp • Bengaluru
Databases
Snowflake
DevOps
GitHub
Management
Asana
Confluence
Jira
UiPath
Agile
Apply
$132k – $270k per year (Estimated) • Remote/Hybrid • Full-Time • 8+ years exp • Atlanta
Python
JavaScript
Node JS
AI/ML
Red Teaming
DevOps
CI/CD
AWS
Kubernetes
Self-Healing
IAM
Apply
$85k – $171k per year (Estimated) • Remote/Hybrid • Full-Time • 7+ years exp • Atlanta
Databases
Snowflake
DevOps
GitHub
Management
Asana
Confluence
Jira
UiPath
Agile
Apply
$20k – $54k per year (Estimated) • In office • Full-Time • 3+ years exp • Bengaluru
Python
Java
PowerShell
DevOps
Terraform
Ansible
Azure DevOps
GitHub Actions
GitLab CI
Azure
CI/CD
Jenkins
AWS
QA
Pytest
Apply
$36k – $81k per year (Estimated) • In office • Full-Time • 8+ years exp • Bengaluru
Python
Java
C#
AI/ML
Copilot
Cursor
Claude
DevOps
Terraform
Ansible
CI/CD
Docker
Platform Engineering
GitHub
Apply
$27k – $63k per year (Estimated) • Remote/Hybrid • Full-Time • 8+ years exp • Bachelor's Degree • Bengaluru
JavaScript
TypeScript
SQL
C#
C++
C#
ASP.NET Core
Databases
PostgreSQL
Redis
RabbitMQ
Apache Kafka
OpenSearch
Frontend
Angular
DevOps
Self-Healing
Apply
$48k – $98k per year (Estimated) • Remote • Full-Time • 15+ years exp • Bengaluru
Go
Java
C#
Databases
Apache Kafka
Mobile
Push Notifications
DevOps
gRPC
GCP
Azure
AWS
Apply
SDE 3 6 hours ago
$25k – $57k per year (Estimated) • In office • 7+ years exp • Bengaluru
Python
JavaScript
Java
Python
Django
Databases
PostgreSQL
Frontend
React.js
DevOps
GCP
CI/CD
Apply
See all jobs
This is one of many
657,845 more open roles from verified company boards, updated every day.