Senior Product Security Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

Bose Corporation ยท 10 hours ago

Senior Product Security Engineer

Bose Corporation is a globally recognized brand synonymous with premium audio experiences and innovation in sound technology. They are seeking a Senior Product Security Engineer to join their global product security team, where the primary focus will be on integrating security into every stage of the product lifecycle, collaborating with various stakeholders to ensure the security and resilience of their devices and ecosystems.

Consumer Electronics
check
H1B Sponsor Likelynote

Responsibilities

Conduct threat modeling, security architecture reviews, and secure code/design assessments across hardware and software platforms including embedded, mobile and cloud
Drive adoption of secure product development practices in collaboration with engineering teams
Coordinate penetration tests by helping define scope, working with external testers, and managing the findings. Use CVSS and professional expertise to determine and guide fixes
Support coordinated vulnerability disclosure and product security incident response
Create, contribute to, and enforce security standards for firmware updates, device provisioning, authentication, and secure boot
Collaborate with partners and vendors to ensure secure technology integration, licensing, and intellectual property protection
Champion cryptographic best practices, key management processes, and IP protection mechanisms throughout the product development lifecycle
Participate in regulatory compliance initiatives (e.g., TISAX, ISO, NIST/CISA guidance) and customer assurance activities
Share knowledge through mentoring, documentation, and internal training on secure software development and product design

Qualification

Product security experienceSecure product development lifecycleThreat modelingSecure codingPenetration testingIoT devices familiaritySAST/DAST toolsLinux environmentsModern cryptographyInterpersonal skillsCommunication skills

Required

5+ years of experience in product or application security, preferably in embedded systems, consumer electronics, or connected devices
Solid understanding of secure product development lifecycle (SPDLC), threat modeling, and software/hardware security principles
Proficiency in secure coding and architecture review, with the ability to guide teams in implementing mitigations
Skilled at assessing penetration test and scan reports, scoring findings, and collaborating with engineering teams to deliver fixes
Familiarity with IoT or smart home devices, mobile platforms (Android/iOS), and cloud service integrations
Hands-on experience with SAST/DAST, SBOM tools, and secure firmware update mechanisms
Strong understanding of Linux environments, command-line tools, and automation such as CI/CD pipelines, Dockerized workflows, and scripting
Practical knowledge of modern cryptography, key management, and secure provisioning techniques
Strong interpersonal and communication skills with the ability to influence across engineering and non-engineering teams

Preferred

Experience with hardware interfaces (I2C, SPI, UART), embedded Linux, or RTOS platforms
Experience with secure product manufacturing processes and OTA updates
Knowledge of licensing implications of 3rd-party software, open source, and technology IP

Benefits

Bonus programs
Comprehensive health and welfare benefits
A 401(k) plan
Exclusive perks designed to support your wellbeing
A generous employee discount

Company

Bose Corporation

company-logo
Bose Corporation is a privately held company that designs and manufactures audio equipment.

H1B Sponsorship

Bose Corporation has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (29)
2024 (38)
2023 (35)
2022 (46)
2021 (38)
2020 (68)

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
John Brosnahan, CFA
Chief Financial Officer
linkedin
leader-logo
Kevin Manzolini
SVP and Chief Engineering Officer
linkedin
Company data provided by crunchbase