Red Hat · 1 week ago
Senior Product Security Engineer
Red Hat is a rapidly growing company supporting more than 90% of Fortune 500 companies. The Senior Product Security Engineer will join the global Resilient Development team, focusing on secure development and improving the security posture of Red Hat's products and services. Responsibilities include conducting security architecture reviews, threat modeling, and collaborating with engineering teams to enhance security practices.
Enterprise SoftwareInsurTechLinuxOpen SourceOperating SystemsSoftware
Responsibilities
Engage with engineering teams to promote security-aware development of Red Hat technologies/solutions
Understand current and emerging threats in the enterprise product and service space
Analyze complex software systems and identify potential weaknesses in their architecture
Plan and carry out threat modeling activities, and realistic threat simulations across our offerings
Consult with software developers and product teams on improved security architecture
Ensure that product roadmaps and new features mitigate risk, adhere to security policies, and provide customers with minimal security risk
Contribute to customer facing security documentation, reference, and other data as used by the common vulnerabilities and exposures (CVE) pages
Promote Red Hat Product Security efforts within the community and the greater public
Qualification
Required
Bachelor's degree in computer science/engineering or equivalent/relevant work experience
Strong understanding of common security vulnerabilities, (e.g. OWASP Top Ten) including how to detect, demonstrate, mitigate and resolve them
Good understanding of Linux security technologies and product security experience; for example: POSIX Permissions, ACL, SELinux; Seccomp, Linux namespaces and cgroups; Linux administrations related to security: secure boot, TPMs, trusted execution environment, Linux boot chain, virtualization, containers and hypervisor security
Experience with one or more programming languages like Go, Python, C/C++, and a willingness to learn new ones
Familiarity with CI/CD pipeline security (e.g. Tekton, Jenkins, GitHub Actions) and artifact signing
Knowledge and experience with modern container orchestration systems: Kubernetes, Openshift; comfortable with container technologies
Ability to work with minimal supervision, in a fast-paced environment with a multicultural team distributed across multiple countries and time zones
Solid communication and negotiation skills. Excellent collaboration skills and dedication as a teammate
Preferred
Familiarity with open source software and open source as a business model
Linux-specific and/or security-related certifications (e.g. RHCSA, RHCE, RHCA, CISSP, CISM, CSSLP, CISA, etc.)
Work experience and/or certifications with cloud providers and cloud-related technologies (AWS, Azure, GCP, Tekton, Jenkins, etc.)
Experience or familiarity with AI-enabled products, services, or workflows is considered beneficial
Benefits
Comprehensive medical, dental, and vision coverage
Flexible Spending Account - healthcare and dependent care
Health Savings Account - high deductible medical plan
Retirement 401(k) with employer match
Paid time off and holidays
Paid parental leave plans for all new parents
Leave benefits including disability, paid family medical leave, and paid military leave
Additional benefits including employee stock purchase plan, family planning reimbursement, tuition reimbursement, transportation expense account, employee assistance program, and more!
Company
Red Hat
Red Hat is a software company that offers enterprise open-source software solutions. It is a sub-organization of IBM.
H1B Sponsorship
Red Hat has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (159)
2024 (148)
2023 (156)
2022 (181)
2021 (154)
2020 (106)
Funding
Current Stage
Public CompanyTotal Funding
unknown2018-10-28Acquired
1999-08-20IPO
1999-03-09Corporate Round
Leadership Team
Recent News
Company data provided by crunchbase