- Company Name
- Glocomms
- Job Title
- Product Security Engineer
- Job Description
-
Job title: Product Security Engineer
Role Summary: Integrate security across the entire technology stack—applications, infrastructure, and development pipelines—for a leading Bitcoin-focused FinTech. Collaborate with engineering, product, and DevOps teams to embed security controls, conduct threat modeling, and enforce secure coding practices.
Expactations: • 3+ years of application and cloud security experience
• Proficient in code reviews, threat modeling, and secure design patterns
• Hands‑on with CI/CD automation (Jenkins, GitHub Actions) and IaC security
• Expertise in vulnerability scanning tools (Snyk, Qualys, Nessus)
• Strong analytical, problem‑solving, and communication skills
• Team‑oriented, proactive learning mindset, and passion for cybersecurity
Key Responsibilities: • Perform code reviews, design assessments, and threat modeling to mitigate product risks.
• Secure cloud configurations and IaC deployments across AWS, Azure, and GCP.
• Implement automated security controls in CI/CD pipelines.
• Conduct regular vulnerability scans, analyze findings, and lead remediation initiatives.
• Apply static and dynamic analysis tools and validate security controls.
• Partner with engineering, product, and operations to promote a security‑first culture.
Required Skills: • Application security (static/dynamic analysis, secure coding)
• Cloud security and IaC best practices
• CI/CD pipeline security and automation
• Vulnerability scanning (Snyk, Qualys, Nessus)
• Threat modeling and risk assessment
• Familiarity with Jenkins, GitHub Actions, AWS, Azure, GCP
• Strong analytical, problem‑solving, and communication abilities
Required Education & Certifications: • Bachelor’s degree in Computer Science, Cybersecurity, or related field (or equivalent experience).
• Preferred certifications: CISSP, CEH, AWS Security Specialty, Azure Security Engineer Associate, GCP Security Engineer.