DigitalOcean is looking for a Staff Product Security Engineer to join their team. The ideal candidate will be passionate about partnering with engineers to assess the security risk of new products and features and build secure-by-default paved roads.
Requirements
- Experience leading architectural changes or complex cross team efforts to mitigate security vulnerabilities.
- Ability to clearly communicate security topics and vulnerability classes (e.g. OWASP Top Ten) and ability to provide actionable direction to product teams.
- A record of partnering with internal engineering teams to tackle security problems across an entire stack with empathy and creativity.
- Strong knowledge of modern development concepts (virtualized environments, containerization, continuous integration + delivery).
- 6+ years experience guiding software teams on secure architecture design.
- 5+ years of experience in software engineering projects, ideally with a security focus.
- Experience building or reviewing threat models and ability to craft malicious user, attacker, and abuse/misuse cases.
- Working knowledge of hardware and software supply chain security.
- Familiarity with technologies such as gRPC, Docker, Prometheus, Kubernetes, HashiCorp Vault, and GitHub Actions.
Benefits
- Competitive array of benefits
- Flexible time off policy
- Employee Assistance Program
- Local Employee Meetups
- Reimbursement for relevant conferences, training, and education
- Access to LinkedIn Learning's 10,000+ courses