Senior Product Security Engineer

Anyscale
San Francisco, India
Full timeUSD 180,000 - 210,000 annuallyFunction: CybersecurityExperience: 8+ yearsSkills: ["Communication","Mentorship","Stakeholder management","Prioritization","Ownership"]

Own and operate a scalable secure software development lifecycle (SSDL) for a product security team supporting Anyscale’s Ray ecosystem. Partner with engineering to build secure-by-design features, review initiatives, and drive vulnerabilities to resolution against SLAs. Lead vulnerability management, software composition analysis, secret scanning, and SAST across repositories, and provide on-demand security posture reporting while mentoring engineers to raise the org’s security bar.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Anyscale
Anyscale
1 day ago

Senior Product Security Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 3 hours agoStatus: Live

Job Summary

Own and operate a scalable secure software development lifecycle (SSDL) for a product security team supporting Anyscale’s Ray ecosystem. Partner with engineering to build secure-by-design features, review initiatives, and drive vulnerabilities to resolution against SLAs. Lead vulnerability management, software composition analysis, secret scanning, and SAST across repositories, and provide on-demand security posture reporting while mentoring engineers to raise the org’s security bar.
Location: San Francisco, India
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Own and operate a scalable SSDL, including threat modeling, security requirements, secure design practices, and engineering-adoptable scanning.
  • •Partner with engineering on security features and secure-by-design architecture from early design through implementation.
  • •Review security of existing systems and new initiatives, turning findings into prioritized, actionable work.
  • •Own vulnerability management: enumerate components, map known vulnerabilities, and produce on-demand vulnerability posture reporting.
  • •Drive vulnerabilities to resolution with engineering against defined SLAs, and mentor engineers to raise the security bar.

Pay and Benefits

Salary: USD 180,000 - 210,000 annually
Equity and Bonus:Equity

Key Requirements

  • •8+ years in product or application security with senior-level depth, ideally at a high-growth startup.
  • •Demonstrated ownership of a secure software development lifecycle at scale, including threat modeling and secure design review.
  • •Hands-on experience partnering with engineering on security features and architecture (not just reporting).
  • •Deep experience with software composition analysis, secret scanning, and SAST or secure-development tooling in real repositories.
  • •Experience triaging vulnerabilities using CVSS and business context, and driving them to resolution with engineering.
Experience:8+ yearsProduct securityApplication securityHigh-growth startups
Skills:CommunicationMentorshipStakeholder managementPrioritizationOwnership
Tech Stack:RaySecure software development lifecycle (SSDL)Threat modelingSASTSoftware composition analysisSecret scanningCVSSSBOMSecure-by-design architecture

Company Brief

Anyscale
Provides a managed platform and developer tooling built on the Ray open-source project to scale Python and AI applications across clouds, simplifying distributed training, inference and production deployment for engineering teams.
Industry: Developer Tools
Company Size: Large (251 to 1,000 employees)
Growth: Scaleup
Valuation: Unicorn (USD 1B+)
Funding: Series C
Headquarters: San Francisco, United States
Founded: 2019
Glassdoor
Glassdoor: 4.3
WebsiteLinkedInGlassdoor