Senior Product Security Engineer

Chainalysis
New York, New Jersey, Massachusetts, Connecticut, Pennsylvania, New Hampshire
Workplace: HybridFull timeUSD 130,000 - 247,000 annuallyFunction: CybersecurityExperience: 5+ yearsSkills: ["Collaboration","Ownership"]

Build and secure Chainalysis product offerings by performing security code reviews, custom penetration tests, and remediation directly in product repositories. Partner with product and platform engineering on threat modeling and secure design reviews across the SDLC, including static/dynamic analysis. Extend security guardrails to internal AI platforms and coding agents, add security automation to CI/CD, and support a shared on-call rotation for high-severity incidents.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Chainalysis
Chainalysis
2 days ago

Senior Product Security Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 3 hours agoStatus: Live

Job Summary

Build and secure Chainalysis product offerings by performing security code reviews, custom penetration tests, and remediation directly in product repositories. Partner with product and platform engineering on threat modeling and secure design reviews across the SDLC, including static/dynamic analysis. Extend security guardrails to internal AI platforms and coding agents, add security automation to CI/CD, and support a shared on-call rotation for high-severity incidents.
Location: New York, New Jersey, Massachusetts, Connecticut, Pennsylvania, New Hampshire
Workplace: Hybrid
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Build product security across Chainalysis SaaS offerings by partnering with product and platform engineering on design, code, and remediation.
  • •Drive security code reviews for new product launches, including custom penetration tests.
  • •Provide security review and guardrails for internal AI platforms and coding agents, including LLM gateway and prompt/response controls.
  • •Create threat modeling, secure design reviews, and static/dynamic code analysis across the SDLC.
  • •Build security automation into CI/CD pipelines and participate in a shared on-call rotation for high-severity production security incidents.

Pay and Benefits

Salary: USD 130,000 - 247,000 annually
Equity and Bonus:Equity

Key Requirements

  • •5+ years of application security engineering experience.
  • •Strong production coding ability in at least one of Java (preferred), TypeScript/JavaScript, Python, or Go to perform deep code review and contribute fixes into product repos.
  • •Hands-on penetration testing experience for production SaaS applications, including custom tests for new product launches.
  • •Ability to identify and remediate common web application vulnerabilities (OWASP Top 10).
  • •Experience securing internal AI/LLM platforms and coding agents, including model gateways and prompt/response controls.
Experience:5+ yearsSaaSApplication securityWeb securityAI
Skills:CollaborationOwnership
Tech Stack:AWSGCPKubernetesEKSGKETerraformWizSonarCloudBurpCloudflareGitHubGitHub ActionsArtifactoryJavaJavaScriptTypeScriptPythonGoCI/CDLLM gateways

Company Brief

Chainalysis
Provides blockchain data, analytics, and investigation software to law enforcement, regulators, financial institutions, and crypto businesses to detect illicit activity, ensure compliance, and build trust in digital asset ecosystems.
Industry: RegTech
Company Size: Large (251 to 1,000 employees)
Growth: Scaleup
Valuation: Unicorn (USD 1B+)
Funding: Series F
Headquarters: New York, United States
Founded: 2014
Glassdoor
Glassdoor: 2.8
WebsiteLinkedInGlassdoor