Staff Product Security Engineer

Reposted 24 Days Ago
Be an Early Applicant
2 Locations
In-Office
141K-211K Annually
Senior level
Cloud
The Role
As a Staff Product Security Engineer, you'll enhance application security, manage DevSecOps tools, automate security checks, and ensure timely remediation of vulnerabilities.
Summary Generated by Built In

Get to know Okta
Okta is The World’s Identity Company. We free everyone to safely use any technology, anywhere, on any device or app. Our flexible and neutral products, Okta Platform and Auth0 Platform, provide secure access, authentication, and automation, placing identity at the core of business security and growth.
At Okta, we celebrate a variety of perspectives and experiences. We are not looking for someone who checks every single box - we’re looking for lifelong learners and people who can make us better with their unique experiences. 
Join our team! We’re building a world where Identity belongs to you.

Staff Product Security Engineer 

We are looking for a talented Staff Security Engineer to join our Product Security Team and help us enhance our application security program. As a Product Security Engineer, you will contribute to the security of various aspects of Okta's DevSecOps Security posture, implement services, and define processes that mitigate risk in this space.

The ideal candidate has strong Application Security knowledge, alongside a hands–on experience with automation through custom code.

Your main responsibilities will include:

  • Architect, implement, and manage DevSecOps tools, automating security checks and embedding SAST, DAST, IaC, and secret scanning into CI/CD pipelines.
  • Build and maintain AWS-based secure infrastructure and automation pipelines using EC2, Step Functions, and Lambda, leveraging native security controls.
  • Support Engineering through weekly rotations, assisting with triage, prioritisation, and remediation of findings to ensure timely remediation of vulnerabilities.
  • Develop automation for internal systems to meet Okta-specific requirements for vulnerability identification, tracking, and reporting.
  • Drive the definition and refinement of internal processes to accelerate secure software delivery.
  • Contribute to security strategy, risk prioritization, and planning to strengthen Okta product security. 

To be considered for this role, you should have:

  • At least 5 years of experience in Application Security, with a strong focus on security automation and building secure systems at scale.
  • A deep understanding of modern web application vulnerabilities and remediation techniques (OWASP Top 10, CWE Top 25).
  • Proven ability to perform security code reviews in at least one major programming language (Python, Go, Java, or C#). You should be able to read code, identify vulnerabilities, and propose effective remediation strategies.
  • Significant software development experience in Python, or a similar language, with a strong interest in learning Python.
  • A proven track record of automating and streamlining security processes, including hands-on experience implementing and managing commercial or open-source DevSecOps tools and hardening CI/CD pipelines.

Additional skills we're looking for include:

  • Knowledge of at least one of AWS, GCP, Azure, etc.
  • Experience with CI/CD pipelines, either on-prem or cloud.

Qualifications:

  • Bachelor's degree in Computer Science, Computer Engineering, or equivalent experience.
  • Industry certifications related to Application and Network Security, are a plus.

At our company, we value collaboration, teamwork, and innovation. This role will report to the Manager of Software Supply Chain Security, and will work closely with other members of the DevSecOps team. We are passionate about what we do and strive to create an inclusive and diverse workplace where everyone can thrive. If you are excited about this opportunity and meet the qualifications listed above, we encourage you to apply. We look forward to hearing from you.

#LI-REMOTE 

#LI-JB2 

P16239_3249501

What you can look forward to as a Full-Time Okta employee!

  • Amazing Benefits
  • Making Social Impact
  • Developing Talent and Fostering Connection + Community at Okta

Okta cultivates a dynamic work environment, providing the best tools, technology and benefits to empower our employees to work productively in a setting that best and uniquely suits their needs. Each organization is unique in the degree of flexibility and mobility in which they work so that all employees are enabled to be their most creative and successful versions of themselves, regardless of where they live. Find your place at Okta today! https://www.okta.com/company/careers/.
Some roles may require travel to one of our office locations for in-person onboarding.

Okta is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, marital status, age, physical or mental disability, or status as a protected veteran. We also consider for employment qualified applicants with arrest and convictions records, consistent with applicable laws.
If reasonable accommodation is needed to complete any part of the job application, interview process, or onboarding please use this Form to request an accommodation.
Okta is committed to complying with applicable data privacy and security laws and regulations. For more information, please see our Personnel and Job Candidate Privacy Notice at https://www.okta.com/legal/personnel-policy/.

Top Skills

AWS
Ci/Cd
Dast
Devsecops
Iac
Python
Sast
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: San Francisco, CA
6,000 Employees
Year Founded: 2009

What We Do

Okta is the leading independent identity provider. The Okta Identity Cloud enables organizations to securely connect the right people to the right technologies at the right time. With more than 7,000 pre-built integrations to applications and infrastructure providers, Okta provides simple and secure access to people and organizations everywhere, giving them the confidence to reach their full potential. More than 10,000 organizations, including JetBlue, Nordstrom, Siemens, Slack, T-Mobile, Takeda, Teach for America, and Twilio, trust Okta to help protect the identities of their workforces and customers.

Similar Jobs

Remote or Hybrid
Spain
850 Employees

BlackRock Logo BlackRock

Relationship Manager, Associate

Fintech • Information Technology • Financial Services
In-Office
Madrid, Comunidad de Madrid, ESP
25000 Employees

Pfizer Logo Pfizer

Sr. Director, Oncology Scientific Communications

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Remote or Hybrid
35 Locations
121990 Employees
184K-341K Annually

Celonis Logo Celonis

Senior Workday HCM Engineer

Big Data • Information Technology • Productivity • Software • Analytics • Business Intelligence • Consulting
Hybrid
Madrid, Comunidad de Madrid, ESP
3000 Employees

Similar Companies Hiring

Toro TMS Thumbnail
Transportation • Software • Sales • Enterprise Web • Cloud
Chicago, IL
64 Employees
Yooz Thumbnail
Software • Machine Learning • Fintech • Financial Services • Cloud • Automation • Artificial Intelligence
Aimargues, FR
470 Employees
Amplify Platform Thumbnail
Fintech • Financial Services • Consulting • Cloud • Business Intelligence • Big Data Analytics
Scottsdale, AZ
62 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account