{"schemaVersion":"jobsearcher.job.v1","id":"9ad0d63e097fc5260ef623ab","url":"https://jobsearcher.com/jobs/9ad0d63e097fc5260ef623ab","canonicalUrl":"https://jobsearcher.com/jobs/9ad0d63e097fc5260ef623ab","title":"Product Security Engineer","description":"About the Job:\nLaunchDarkly's Product Security team is hiring a Product Security Engineer to strengthen how we secure the platform engineers build with every day. You'll bring depth in security fundamentals and program design as a member of a small, high-leverage team with strong engineering instincts.\nLaunchDarkly is critical infrastructure. Our security team keeps it safe for the global systems that depend on us. You'll spend most of your time on threat modeling and cloud security posture, with rotating exposure to the rest of the ProdSec surface area. Your work will help developers move fast without sacrificing security, through automation, guidance, and the kind of partnership that makes the secure path the easy one.\nYou'll report to the Director of Security and work closely with software engineers, product managers, and other security engineers. We expect you to bring a sharp point of view on where AI can take work off the team's plate and make our coverage deeper.\nResponsibilities:\nLead threat modeling engagements on the features and services where the risk warrants it.\nPartner with the ProdSec lead to evolve the practice from on-request to repeatable, with clear criteria for when an engagement is worth running.\nOwn day-to-day triage of CNAPP findings end to end. Investigate, prioritize, route to service owners, and close the loop. Look for patterns that point to systemic fixes instead of one-off cleanup.\nContribute to SDLC tooling, SAST/SCA workflows, and bug bounty triage as the team's work demands.\nPartner with product engineering teams as a trusted reviewer. Catch issues early, explain the why, propose paths forward. Say no when needed, with reasons and alternatives.\nBring AI to your work. Use it to accelerate triage, summarize findings, draft threat models, scan code, and reduce toil. Help the team build durable patterns for safe and effective use, not one-off prompts.\nPush the security floor up over time through documentation, office hours, small tooling improvements, and the kind of compounding work that prevents incidents rather than responds to them.\nAbout You:\nYou're proactive by default. You'd rather spot drift early and fix the cause than chase symptoms after an incident.\nYou believe security is a craft of habits and systems. Small consistent improvements beat heroic one-offs.\nYou invest in relationships with the engineering, product, and leadership teams you work with.\nYou know security work moves at the speed of trust.\nYou're a good partner. You're helpful and direct, you say no with reasons and alternatives, and you don't mistake gatekeeping for rigor.\nYou're security-first by background but engineering-curious by nature. You want to understand how the systems work, not just what's wrong with them.\nYou treat AI as part of the toolkit. You're skeptical where you should be, aggressive where it pays off, and you want to work somewhere that's serious about both.\nQualifications:\n2 to 4 years of full-time experience in a security-focused role. AppSec, ProdSec, or cloud security preferred.\nComfortable reading and critiquing pull requests in a modern stack. You don't need to ship production services, but you should follow the code, ask sharp questions, and write small tools when it helps.\nExperience participating in or leading threat modeling exercises. Familiar with at least one structured approach (STRIDE, attack trees, or equivalent).\nWorking knowledge of cloud security posture. Exposure to a CNAPP is a strong plus.\nStrong fundamentals: OWASP Top 10, authentication and authorization patterns, secrets management, and common cloud misconfigurations.\nHands-on experience applying AI tooling to security or engineering work. You can point to specific examples where it changed how you operated.\nNice to Haves:\nExperience with developer tools, SaaS platforms, or feature management\nBug bounty triage experience (HackerOne, Bugcrowd)\nFamiliarity with Go, Python, or TypeScript\nContributions to internal security tooling or open-source security projects\nPay:\nTarget pay ranges based on Geographic Zones* for Level 2:\nZone 1: San Francisco/Bay Area or NYC Metropolitan Area, Boston, Seattle - $136,000 - $187,000**\nZone 2: Irvine, LA, Monterey, Santa Barbara, Santa Rosa, Austin, Portland, Philadelphia, Chicago - $122,000 - $168,000**\nZone 3: All other US locations - $116,000 - $159,000**\nLaunchDarkly operates from a place of high trust and transparency; we are happy to state the pay range for our open roles to best align with your needs. Exact compensation may vary based on skills, experience, and location.\nWithin the United States, our geographic pay zones are defined by counties surrounding major metropolitan areas.\n**Restricted Stock Units (RSUs), health, vision, and dental insurance, and mental health benefits in addition to salary.\nAbout LaunchDarkly:\nModern software delivery was supposed to be the foundation for a thriving digital business but reality has proven otherwise. Slow, inefficient development cycles, costly outages, and fragmented customer experiences are preventing developers from building their best software. The LaunchDarkly platform helps developers innovate on new features faster while protecting them with a safety valve to instantly rewind when things go wrong. Developers can target product experiences to any customer segment and maximize the business impact of every feature. And by gradually rolling out new application components, they escape nightmare \"big-bang\" technology migrations.\nThe LaunchDarkly platform was built to guide engineers to the next frontier of DevOps by:\nImproving the velocity and stability of software releases, without the fear of end customer outages\nDelivering targeted experiences by easily personalizing features to customer cohorts\nMaximizing the business impact of every feature through the ability to experiment and optimize\nCoordinating the release and optimization of software to provide consistent experiences across mobile platforms and device types\nImproving the effectiveness and productivity of engineering teams, by providing insights into engineering cadence and stability\nAt LaunchDarkly, we believe in the power of teams. We're building a team that is humble, open, collaborative, respectful and kind. We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, gender identity, sexual orientation, age, marital status, veteran status, or disability status. LD invites any applicant to review our written Affirmative Action Plan. To do so, contact People Ops at hr@launchdarkly.com.","company":"Launchdarkly","rawCompany":"launchdarkly","city":"West","state":"TX","isRemote":false,"isActive":false,"createdAt":"2026-08-05T12:13:05.612Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"},{"code":"15-1299.04","title":"Penetration Testers","slug":"penetration-testers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Product Security Engineer","description":"About the Job:\nLaunchDarkly's Product Security team is hiring a Product Security Engineer to strengthen how we secure the platform engineers build with every day. You'll bring depth in security fundamentals and program design as a member of a small, high-leverage team with strong engineering instincts.\nLaunchDarkly is critical infrastructure. Our security team keeps it safe for the global systems that depend on us. You'll spend most of your time on threat modeling and cloud security posture, with rotating exposure to the rest of the ProdSec surface area. Your work will help developers move fast without sacrificing security, through automation, guidance, and the kind of partnership that makes the secure path the easy one.\nYou'll report to the Director of Security and work closely with software engineers, product managers, and other security engineers. We expect you to bring a sharp point of view on where AI can take work off the team's plate and make our coverage deeper.\nResponsibilities:\nLead threat modeling engagements on the features and services where the risk warrants it.\nPartner with the ProdSec lead to evolve the practice from on-request to repeatable, with clear criteria for when an engagement is worth running.\nOwn day-to-day triage of CNAPP findings end to end. Investigate, prioritize, route to service owners, and close the loop. Look for patterns that point to systemic fixes instead of one-off cleanup.\nContribute to SDLC tooling, SAST/SCA workflows, and bug bounty triage as the team's work demands.\nPartner with product engineering teams as a trusted reviewer. Catch issues early, explain the why, propose paths forward. Say no when needed, with reasons and alternatives.\nBring AI to your work. Use it to accelerate triage, summarize findings, draft threat models, scan code, and reduce toil. Help the team build durable patterns for safe and effective use, not one-off prompts.\nPush the security floor up over time through documentation, office hours, small tooling improvements, and the kind of compounding work that prevents incidents rather than responds to them.\nAbout You:\nYou're proactive by default. You'd rather spot drift early and fix the cause than chase symptoms after an incident.\nYou believe security is a craft of habits and systems. Small consistent improvements beat heroic one-offs.\nYou invest in relationships with the engineering, product, and leadership teams you work with.\nYou know security work moves at the speed of trust.\nYou're a good partner. You're helpful and direct, you say no with reasons and alternatives, and you don't mistake gatekeeping for rigor.\nYou're security-first by background but engineering-curious by nature. You want to understand how the systems work, not just what's wrong with them.\nYou treat AI as part of the toolkit. You're skeptical where you should be, aggressive where it pays off, and you want to work somewhere that's serious about both.\nQualifications:\n2 to 4 years of full-time experience in a security-focused role. AppSec, ProdSec, or cloud security preferred.\nComfortable reading and critiquing pull requests in a modern stack. You don't need to ship production services, but you should follow the code, ask sharp questions, and write small tools when it helps.\nExperience participating in or leading threat modeling exercises. Familiar with at least one structured approach (STRIDE, attack trees, or equivalent).\nWorking knowledge of cloud security posture. Exposure to a CNAPP is a strong plus.\nStrong fundamentals: OWASP Top 10, authentication and authorization patterns, secrets management, and common cloud misconfigurations.\nHands-on experience applying AI tooling to security or engineering work. You can point to specific examples where it changed how you operated.\nNice to Haves:\nExperience with developer tools, SaaS platforms, or feature management\nBug bounty triage experience (HackerOne, Bugcrowd)\nFamiliarity with Go, Python, or TypeScript\nContributions to internal security tooling or open-source security projects\nPay:\nTarget pay ranges based on Geographic Zones* for Level 2:\nZone 1: San Francisco/Bay Area or NYC Metropolitan Area, Boston, Seattle - $136,000 - $187,000**\nZone 2: Irvine, LA, Monterey, Santa Barbara, Santa Rosa, Austin, Portland, Philadelphia, Chicago - $122,000 - $168,000**\nZone 3: All other US locations - $116,000 - $159,000**\nLaunchDarkly operates from a place of high trust and transparency; we are happy to state the pay range for our open roles to best align with your needs. Exact compensation may vary based on skills, experience, and location.\nWithin the United States, our geographic pay zones are defined by counties surrounding major metropolitan areas.\n**Restricted Stock Units (RSUs), health, vision, and dental insurance, and mental health benefits in addition to salary.\nAbout LaunchDarkly:\nModern software delivery was supposed to be the foundation for a thriving digital business but reality has proven otherwise. Slow, inefficient development cycles, costly outages, and fragmented customer experiences are preventing developers from building their best software. The LaunchDarkly platform helps developers innovate on new features faster while protecting them with a safety valve to instantly rewind when things go wrong. Developers can target product experiences to any customer segment and maximize the business impact of every feature. And by gradually rolling out new application components, they escape nightmare \"big-bang\" technology migrations.\nThe LaunchDarkly platform was built to guide engineers to the next frontier of DevOps by:\nImproving the velocity and stability of software releases, without the fear of end customer outages\nDelivering targeted experiences by easily personalizing features to customer cohorts\nMaximizing the business impact of every feature through the ability to experiment and optimize\nCoordinating the release and optimization of software to provide consistent experiences across mobile platforms and device types\nImproving the effectiveness and productivity of engineering teams, by providing insights into engineering cadence and stability\nAt LaunchDarkly, we believe in the power of teams. We're building a team that is humble, open, collaborative, respectful and kind. We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, gender identity, sexual orientation, age, marital status, veteran status, or disability status. LD invites any applicant to review our written Affirmative Action Plan. To do so, contact People Ops at hr@launchdarkly.com.","datePosted":"2026-08-05T12:13:05.612Z","dateModified":"2026-08-05T12:13:05.612Z","hiringOrganization":{"@type":"Organization","name":"Launchdarkly","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"West","addressRegion":"TX","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"9ad0d63e097fc5260ef623ab"},"url":"https://jobsearcher.com/jobs/9ad0d63e097fc5260ef623ab"}}