Sr Product Security Engineer - HashiCorp Security jobs in United States
cer-icon
Apply on Employer Site
company-logo

IBM · 1 week ago

Sr Product Security Engineer - HashiCorp Security

IBM is a company that transforms customer challenges into industry-leading solutions, and they are seeking a Senior Product Security Engineer to enhance their product security function. The role involves collaborating with R&D teams to ensure security is integrated into HashiCorp's products and managing vulnerabilities across the product portfolio.

Business DevelopmentBusiness Information SystemsCRMData ManagementFoundational AISoftware
check
Growth Opportunities
check
H1B Sponsor Likelynote

Responsibilities

Contribute to secure architecture and design of HashiCorp products, across our cloud, self-managed, and community product portfolio
Work across various R&D teams to prioritize security features and bugs, and ensure implementation and mitigations
Monitor threats and vulnerabilities impacting HashiCorp products and services; triage reported vulnerabilities, identify mitigations and assess/communicate associated risk
Act as SME on multiple information security areas (e.g. security architecture, application security, threat modeling etc.)
Plan & execute security assessments (dynamic testing, static testing, code review, etc) and threat modeling of HashiCorp’s products, services, and associated cloud infrastructure
Assist in execution of 3rd-party audits, penetration tests, and bug bounty programs
Contribute to the development of security solutions across the product life-cycle, such as standalone security tools, CI/CD pipeline integrations, product security features/fixes, etc
Contribute to the creation and delivery of security training
Research emerging attack vectors and techniques

Qualification

Security architecture & designCloud security AWSCloud security AzureCloud security GCPApplication & infrastructure security testingVulnerability managementThreat modelingIdentityAuthentication managementSecure development practicesCryptography fundamentalsGo programming languageSecurity training development

Required

8–10+ years of security experience, preferably partnering with product/engineering teams
Strong security architecture & design, including threat modeling
Deep expertise in cloud security across AWS, Azure, and/or GCP (multi-tenant SaaS/IaaS/PaaS)
Solid understanding of secure development & operations practices in modern engineering workflows
Proficiency in application & infrastructure security testing, vulnerability management, and mitigation
Knowledge of identity and authentication management (SSO, SAML, OIDC, SCIM), and cryptography fundamentals

Preferred

Modern engineering practices, processes, and tools, particularly related to the Go programming language and ecosystem
Knowledge of application security topics, a pragmatic approach to security, and the ability to empathize with engineers and product managers across the company

Company

IBM is an IT technology and consulting firm providing computer hardware, software, infrastructure, and hosting services.

H1B Sponsorship

IBM has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (3032)
2024 (3301)
2023 (2160)
2022 (1809)
2021 (1157)
2020 (2669)

Funding

Current Stage
Public Company
Total Funding
unknown
2011-01-14IPO

Leadership Team

leader-logo
Alain Bénichou
Chief Executive Officer, IBM Greater China Group
linkedin
leader-logo
Alex Yang
CTO and Chief Architect
Company data provided by crunchbase