Senior Product Security Engineer | Ping Identity External Job Board | Remote (Europe)

Posted 2025-09-08
Remote, USA Full Time Immediate Start

<p>As a Senior Application Security Engineer working remotely from eastern US/Canada or remotely from the UK or in our Bristol, UK office where you will gain invaluable experience at a visionary identity security company. The position requires a passion for application security, solving both technical and organizational changes, with the ability to work in a fast moving, distributed and agile development environment, excellent communications skills, and attention to latest security best practices.&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>You will:&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>● &nbsp;&nbsp; Own multiple Security Engineering assignments working with Ping Identity products, processes and tooling&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>● &nbsp;&nbsp; Provide technical leadership and mentor other Product Security Engineers&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>● &nbsp;&nbsp; Assist in proposing, developing and improving Secure Software Development Lifecycle (SSDLC) practices alongside global, high-performance product engineering teams&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>● &nbsp;&nbsp; Work with the product teams to perform architectural, security design/code reviews, vulnerability assessment and management&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>● &nbsp;&nbsp; Perform security tasks including (but not limited to) threat modeling, developer training, static code analysis, dynamic runtime fuzzing, building custom tools and automation, and exploit development.&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>● &nbsp;&nbsp; Innovate in all aspects of automation of SSDLC tasks including use of Generative AI&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>● &nbsp;&nbsp; Assist the presales, support and customer success teams responding to prospect, customer and field questions related to product and industry security&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>● &nbsp;&nbsp; Engage with third-party security consultants for independent security assessments, bug bounties and penetration testing of the product&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>You have:&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>● &nbsp;&nbsp; 4+ years of proficiency in a mix of Enterprise Application Security, API Security, Web Application Security, and Mobile Application Security&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>● &nbsp;&nbsp; 4+ years of developing commercial or open-source products (experience in Java or Javascript preferred) or equivalent experience&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>● &nbsp;&nbsp; Exceptional problem-solving skills, curiosity about the inner workings of systems and showing attention to details and documentation&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>● &nbsp;&nbsp; Excellent written and oral communication skills&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>You have an advantage if you have:&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>● &nbsp;&nbsp; Experience with Linux environments, administration, security, internals&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>● &nbsp;&nbsp; Experience with identity management (OAuth 2.x, OpenID Connect, SAML, Active Directory, 2FA/MFA, LDAP, SCIM, FAPI, OpenBanking)&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>● &nbsp;&nbsp; Experience in securing machine learning or generative AI platforms&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>● &nbsp;&nbsp; Experience with CI/CD cloud deployment in Amazon AWS, Azure or Google Cloud Platform&nbsp;&nbsp;&nbsp;&nbsp;</p>



<p>● &nbsp;&nbsp; Security certifications such as CISSP, CSSLP, GIAC, OSCP&nbsp;&nbsp;&nbsp;&nbsp;</p>
Back to Job Board