Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Snyk

Senior Product Security Engineer

Snyk

. Threat model Snyk’s cloud infrastructure across GCP and AWS .

Posted 9/24/2026full-timeBoston • Massachusetts • United StatesSenior💰 $192,000 - $230,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates extensive experience in securing cloud infrastructure, particularly in GCP and AWS, with a strong focus on identity and access management, Kubernetes security, and DevSecOps practices. Proficient in using AI coding agents for infrastructure management and security enhancements, while effectively collaborating with platform teams to implement necessary changes.

Highest-signal resume keywords
Cloud Infrastructure SecurityGCP IAM ManagementKubernetes Security HardeningTerraform ProficiencyDevSecOps Practices

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Cloud Infrastructure SecurityGCP Security ServicesAWS Security KnowledgeKubernetes ExperienceTerraformCI/CD PipelinesGitOpsThreat ModelingContinuous MonitoringAI Coding Agents
Soft Skills
Consultative ExperienceNegotiation SkillsCritical Review Ability
Tools & Technologies
SnykCSPM ToolsMCP ServersCLI ToolsProvider APIs
Certifications & Qualifications
CIS Google Cloud Foundation BenchmarkISO 27001NIST 800-53
Industry Keywords
Infrastructure as CodeShift-Left TestingLeast Privilege DesignRBACAdmission Control

Tech Stack

Tools & technologies
AWSCloudGoogle Cloud PlatformKubernetesTerraform

About the role

Key responsibilities & impact
  • Threat model Snyk’s cloud infrastructure across GCP and AWS
  • Identify security requirements and negotiate changes with platform teams
  • Use AI coding agents to draft Terraform, Kubernetes, and pipeline security fixes
  • Raise infrastructure changes for owning teams to review and merge
  • Run agent-driven fixes across many repositories
  • Write and maintain agent guidance, prompts, instruction files, and security baselines
  • Connect agents to live cloud, CSPM, and ticketing data through MCP servers, CLI tools, and provider APIs
  • Review AI-generated infrastructure changes for invented resources, unsafe defaults, and excessive IAM permissions
  • Harden GCP and AWS identity and access management
  • Improve Kubernetes and container security, primarily on GKE
  • Add automated security testing and CSPM tooling to CI/CD and GitOps pipelines
  • Benchmark infrastructure against CIS Google Cloud Foundation Benchmark, ISO 27001, and NIST 800-53 controls
  • Limit risks introduced by AI agents, including prompt injection, excessive permissions, leaked secrets, and unreviewed changes
  • Measure and improve the effectiveness of agent-driven security fixes across teams

Requirements

What you’ll need
  • 5-8 years running or securing cloud infrastructure
  • Production platform experience on GCP or AWS
  • Deep, hands-on GCP knowledge, including security services
  • Good working knowledge of AWS
  • Strong grasp of GCP IAM, including resource hierarchy, IAM roles and conditions, service accounts, workload identity federation, organization policy constraints, and least privilege design
  • Practical Kubernetes and container experience, primarily GKE
  • Experience with cluster hardening, RBAC, admission control, workload identity, network policy, and secure container images
  • Comfort with Terraform or similar infrastructure as code
  • Experience with CI/CD pipelines and GitOps
  • Solid DevSecOps practice, including threat modeling, shift-left testing, and continuous monitoring
  • Confidence using AI coding agents such as Claude Code
  • Ability to write reliable agent guidance and prompts at scale
  • Ability to critically review AI-generated infrastructure output
  • Consultative experience influencing and negotiating changes with infrastructure-owning teams
  • Nice to have: application security knowledge or experience with Snyk or similar security testing tools
  • Candidates must be based in Boston, United States, or Ottawa, Canada, for the hybrid role

Benefits

Comp & perks
  • Flexible working hours
  • Work-from-home allowances
  • In-office perks
  • Time off for learning and self development
  • Generous vacation and wellness time off
  • Country-specific holidays
  • 100% paid parental leave for all caregivers
  • Health benefits
  • Employee assistance plans
  • Annual wellness allowance
  • Country-specific life insurance
  • Disability benefits
  • Retirement/pension programs
  • Mobile phone allowances
  • Education allowances
  • Employee resource groups
  • Global benefits supporting health, wellness, financial security, and work/life balance