FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Senior Product Security Engineer
Salesforce. Provide expert security advisory for large-scale cloud initiatives .
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in security advisory for cloud initiatives, with a strong focus on risk mitigation, threat modeling, and secure software development lifecycle practices. Proficient in evaluating security risks and communicating effectively with both technical and non-technical stakeholders.
Highest-signal resume keywords
Security EngineeringCloud SecurityThreat ModelingRisk MitigationSecure Software Development Lifecycle
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Security ArchitectureSecurity AssuranceCloud Service ModelsOWASP Top 10CWE Top 25OAuth/OIDCSAMLTCP/IPEncryption StandardsPenetration Testing
Soft Skills
Strong Communication SkillsRelationship Building
Tools & Technologies
Amazon Web ServicesGoogle Cloud PlatformMicrosoft AzureKubernetesDockerIstioCSPM ToolsVulnerability Scanning ToolsSASTInfrastructure-as-Code Security
Industry Keywords
Security PostureRisk-Based Security InitiativesSecurity Design ReviewsService-to-Service AuthenticationSecrets Management
Tech Stack
Tools & technologiesAWSAzureCloudDockerGoogle Cloud PlatformJavaKubernetesPythonSDLCTCP/IPGo
About the role
Key responsibilities & impact- Provide expert security advisory for large-scale cloud initiatives
- Offer strategic guidance to engineering teams on complex enterprise architectures across the application and infrastructure stack
- Drive proactive security through architecture and threat modeling
- Partner with engineering teams to identify vulnerabilities and develop risk mitigation plans throughout the SDLC
- Collaborate with product teams to recommend secure design solutions balancing functional goals with security requirements
- Work with Product BISOs to curate and prioritize risk-based security initiatives
- Analyze risk signals and emerging threats to shape security roadmaps
- Serve as the primary security point of contact for engineering partners and leadership
- Cultivate strong relationships and deliver critical security recommendations
- Shape and enhance the security posture of core infrastructure platforms
- Champion secure software development lifecycle best practices
Requirements
What you’ll need- 5-8 years of experience in a security engineering, security architecture, or security assurance role
- Experience securing products and infrastructure across one or more public cloud environments, including Amazon Web Services, Google Cloud Platform, Microsoft Azure, Alibaba Cloud, or equivalent
- Understanding of cloud service models, shared responsibility boundaries, and identity primitives at scale
- Experience conducting structured security design reviews and threat modeling across infrastructure and application security domains
- Familiarity with OWASP Top 10 and CWE Top 25
- Ability to evaluate and communicate security risk to technical and non-technical audiences
- Understanding of OAuth/OIDC, SAML, service-to-service authentication, and API authorization models
- Understanding of TCP/IP, TLS, network segmentation, key management, certificate lifecycles, secrets handling, and encryption standards
- Strong written and verbal communication skills
- Familiarity with penetration testing methodologies or offensive security techniques is a plus
- Experience participating in or driving improvements to a secure development lifecycle, security review process, or security advisory program is a plus
- Ability to work with structured data, identify patterns across a broad service portfolio, and propose root-cause mitigations is a plus
- Ability to read and reason about code in Java, Go, or Python is a plus
- Hands-on familiarity with Kubernetes, Docker, service mesh such as Istio, secrets/key management and PKI tooling, CSPM and vulnerability scanning tools, or SAST and infrastructure-as-code security scanning is a plus
Benefits
Comp & perks- Time off programs
- Medical insurance
- Dental insurance
- Vision insurance
- Mental health support
- Paid parental leave
- Life insurance
- Disability insurance
- 401(k)
- Employee stock purchasing program
- Incentive compensation may be available for certain roles
- Equity may be available for certain roles
- Benefits may be available for certain roles