Red Hat Logo

Red Hat

Senior Product Security Engineer

Posted Yesterday
Be an Early Applicant
Remote
Hiring Remotely in NC
131K-217K Annually
Senior level
Remote
Hiring Remotely in NC
131K-217K Annually
Senior level
The Senior Product Security Engineer will enhance security practices in product development, perform security assessments, and promote secure architecture across Red Hat's offerings.
The summary above was generated by AI

At Red Hat, we connect an innovative community of customers, partners, and contributors to deliver an open source stack of trusted, high-performing solutions. We offer cloud, Linux, storage, and virtualization technologies, together with award-winning global customer support, consulting, and implementation services. Red Hat is a rapidly growing company supporting more than 90% of Fortune 500 companies.

Job Summary

Red Hat Product Security is looking for a Senior Product Security Engineer to join our global Resilient Development team. Red Hat's Resilient Development Team focuses on Secure Development and improving proactively the security posture of our Products and Services portfolio and their build pipelines. You will perform security architecture reviews and security assessments of those offerings throughout their development life cycle, in collaboration with Engineering and other Product Security teams, to make sure the expectations of our Secure Software Development Framework implementation are met. This process includes analyzing and documenting architecture from a security point of view, questioning security assumptions, finding potential problems, proposing improvements, performing code reviews, defining testing expectations, and promoting secure development best practices from our offerings through to their related open source communities. As a Senior Product Security Engineer, you will represent the security needs of our customers to our Engineering teams, advocating and planning for a solid foundation of security architecture across the open source ecosystem. 

Successful applicants must reside in a state where Red Hat is registered to do business. 

What you will do :
  • Engage with engineering teams to promote security-aware development of Red Hat technologies/solutions.

  • Understand current and emerging threats in the enterprise product and service space.

  • Analyze complex software systems and identify potential weaknesses in their architecture.

  • Plan and carry out threat modeling activities, and realistic threat simulations across our offerings.

  • Consult with software developers and product teams on improved security architecture.

  • Ensure that product roadmaps and new features mitigate risk, adhere to security policies, and provide customers with minimal security risk.

  • Contribute to customer facing security documentation, reference, and other data as used by the common vulnerabilities and exposures (CVE) pages.

  • Promote Red Hat Product Security efforts within the community and the greater public. 

What you will bring :
  • Bachelor's degree in computer science/engineering or equivalent/relevant work experience.

  • Strong understanding of common security vulnerabilities, (e.g. OWASP Top Ten) including how to detect, demonstrate, mitigate and resolve them.

  • Good understanding of Linux security technologies and product security experience; for example: 

- POSIX Permissions, ACL, SELinux; 

- Seccomp, Linux namespaces and cgroups;

- Linux administrations related to security: secure boot, TPMs, trusted execution environment, Linux boot chain, virtualization, containers and hypervisor security.  

  • Experience with one or more programming languages like Go, Python, C/C++,  and a willingness to learn new ones.

  • Knowledge and experience with modern container orchestration systems: Kubernetes, Openshift; comfortable with container technologies.

  • Ability to work with minimal supervision, in a fast-paced environment with a multicultural team distributed across multiple countries and time zones.  

  • Solid communication and negotiation skills. Excellent collaboration skills and dedication as a teammate.

The following will be considered a plus:

  • Familiarity with open source software and open source as a business model.

  • Linux-specific and/or security-related certifications (e.g. RHCSA, RHCE, RHCA, CISSP, CISM, CSSLP, CISA, etc.)

  • Work experience and/or certifications with cloud providers and cloud-related technologies (AWS, Azure, GCP, Tekton, Jenkins, etc.)

  • Experience or familiarity with AI-enabled products, services, or workflows is considered beneficial.

The salary range for this position is $131,420.00 - $216,870.00. Actual offer will be based on your qualifications.

Pay Transparency

Red Hat determines compensation based on several factors including but not limited to job location, experience, applicable skills and training, external market value, and internal pay equity. Annual salary is one component of Red Hat’s compensation package. This position may also be eligible for bonus, commission, and/or equity. For positions with Remote-US locations, the actual salary range for the position may differ based on location but will be commensurate with job duties and relevant work experience. 

About Red Hat

Red Hat is the world’s leading provider of enterprise open source software solutions, using a community-powered approach to deliver high-performing Linux, cloud, container, and Kubernetes technologies. Spread across 40+ countries, our associates work flexibly across work environments, from in-office, to office-flex, to fully remote, depending on the requirements of their role. Red Hatters are encouraged to bring their best ideas, no matter their title or tenure. We're a leader in open source because of our open and inclusive environment. We hire creative, passionate people ready to contribute their ideas, help solve complex problems, and make an impact.

Benefits
●    Comprehensive medical, dental, and vision coverage
●    Flexible Spending Account - healthcare and dependent care
●    Health Savings Account - high deductible medical plan
●    Retirement 401(k) with employer match
●    Paid time off and holidays
●    Paid parental leave plans for all new parents
●    Leave benefits including disability, paid family medical leave, and paid military leave
●    Additional benefits including employee stock purchase plan, family planning reimbursement, tuition reimbursement, transportation expense account, employee assistance program, and more! 

Note: These benefits are only applicable to full time, permanent associates at Red Hat located in the United States. 

Inclusion at Red Hat
Red Hat’s culture is built on the open source principles of transparency, collaboration, and inclusion, where the best ideas can come from anywhere and anyone. When this is realized, it empowers people from different backgrounds, perspectives, and experiences to come together to share ideas, challenge the status quo, and drive innovation. Our aspiration is that everyone experiences this culture with equal opportunity and access, and that all voices are not only heard but also celebrated. We hope you will join our celebration, and we welcome and encourage applicants from all the beautiful dimensions that compose our global village.

Equal Opportunity Policy (EEO)
Red Hat is proud to be an equal opportunity workplace and an affirmative action employer. We review applications for employment without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, citizenship, age, veteran status, genetic information, physical or mental disability, medical condition, marital status, or any other basis prohibited by law.


Red Hat does not seek or accept unsolicited resumes or CVs from recruitment agencies. We are not responsible for, and will not pay, any fees, commissions, or any other payment related to unsolicited resumes or CVs except as required in a written contract between Red Hat and the recruitment agency or party requesting payment of a fee.
Red Hat supports individuals with disabilities and provides reasonable accommodations to job applicants. If you need assistance completing our online job application, email [email protected]. General inquiries, such as those regarding the status of a job application, will not receive a reply. 

Top Skills

AWS
Azure
C/C++
GCP
Go
Jenkins
Kubernetes
Linux
Openshift
Python
Tekton

Red Hat Los Angeles, California, USA Office

811 Wilshire Blvd, Los Angeles, CA, United States, 90017

Similar Jobs

9 Days Ago
Easy Apply
Remote
United States
Easy Apply
135K-175K Annually
Senior level
135K-175K Annually
Senior level
Software
As a Senior Product Security Engineer, you will ensure product security, manage vulnerabilities, conduct security reviews, and provide guidance to development teams.
Top Skills: Application Security ToolingDynamic AnalysisGoJavaScriptSecurity LibrariesStatic Analysis
55 Minutes Ago
Remote or Hybrid
United States
122K-168K Annually
Mid level
122K-168K Annually
Mid level
Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
The Data Engineering Lead will oversee the global logging infrastructure, handle data log sources, collaborate with teams, and report to management on cybersecurity initiatives.
Top Skills: AWSCriblDatabahnElkLogscaleNgsiemNifiSplunk
An Hour Ago
Remote or Hybrid
United States
Junior
Junior
Fintech • Software
Act as a technical liaison between clients and production teams, managing accounts, addressing technical support issues, and ensuring compliance with regulations.
Top Skills: Arc SuiteArcfilingArcproArcreporting

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account