Astranis

Senior Product Security Engineer (Applications)

$180K–$285KFull-time · San Francisco
✓ Verified live on the employer's own system · added 136 days ago
Save search
Mid-level · 5+ yrs exp

Requirements

Experience: 5+ years

Skills & tools

SecurityEmbeddedCode ReviewPythonProgrammingC Plus PlusWeb DevelopmentCommunications

Benefits — mentioned in this posting

Remote / flexible
Apply on company site ↗ See your fit → free

Full job description

As a Senior Product Security Engineer, you will help secure both the software and embedded components that power our systems. This hybrid role focuses primarily on product/application security while contributing to embedded security reviews where software and hardware intersect. You will guide secure design, evaluate critical components, and partner closely with engineering teams across the stack to ensure our products are secure by default.

This role does not expect deep hardware hacking but requires a broad security mindset to provide expertise where embedded systems and software meet.

  • Lead threat modeling, architecture reviews, and design-level risk assessments for both application and embedded system components.
  • Conduct secure code reviews for critical modules in Python and C/C++, supporting secure coding practices across all engineering teams.
  • Evaluate cryptographic usage, authentication/authorization flows, and protocol security across the stack.
  • Identify and prioritize vulnerabilities in software and firmware; partner with developers on remediation and mitigation strategies.
  • Participate in security assessments of embedded devices, especially where software interfaces with hardware.
  • Provide security input on high-level aspects of secure boot, firmware update integrity, and device identity mechanisms.
  • Partner with software, firmware, hardware, and systems teams to implement consistent, secure solutions.
  • 5+ years of experience in software engineering with a focus on security.
  • Strong investigative, analytical problem-solving skills and attention to detail.
  • Experience with secure architecture design and threat modeling for complex systems (including both web services and IoT/embedded devices).
  • Software development and security expertise in both high-level languages (e.g., Python) and low-level languages (e.g., C, C++).
  • Experience with security best practices for web applications (OWASP Top 10) and familiarity with embedded security concepts (e.g., secure boot, JTAG, UART).
  • Proven ability in auditing code for security flaws across different technology stacks.
  • Strong knowledge of security best practices, applied cryptography, and security frameworks.
  • Strong communication skills, with the ability to discuss security with both software and hardware engineers.
  • Ability to work collaboratively within a multi-disciplinary team environment.

More jobs at Astranis

Similar jobs near San Francisco

Tell me when more Senior Security Engineer, Enterprise Security jobs post near San Francisco We re-check every listing against the employer’s own board — no résumé needed.

Search Senior Product Security Engineer (Applications) jobs near San Francisco → Browse all live jobs

This posting was published by Astranis on their own careers system and is shown here with a direct link to apply there. Employers: for corrections or removal, contact jobs@veritahire.com.