Product Security Engineer at Supabase focusing on integrating security in developer workflows. Collaborating with teams to enhance product security without hindering development speed.
Responsibilities
Identify and close gaps across application security, secure design review, and vulnerability management.
Conduct threat modeling, secure design reviews, and code reviews to identify practical remediation paths.
Partner closely with engineering teams to provide product-focused security expertise and shape a modern security program.
Mature how we think about security in a developer-first environment, balancing pragmatism with strong technical judgment.
Distinguish between theoretical risk and material business risk to prioritize security efforts effectively.
Improve security posture through scalable mechanisms like tooling, automation, secure defaults, and developer-friendly guardrails.
Support security incident response by helping triage, investigate, and coordinate remediation for product and platform security issues.
Participate in security on-call rotations, helping respond to urgent security events with clear judgment and calm execution.
Help manage and mature our bug bounty and vulnerability disclosure processes, including triage, validation, prioritization, and coordination with engineering teams.
Requirements
Have strong experience in product security, application security, or security engineering.
Are comfortable working with cloud-native, developer tools, SaaS, platform, or infrastructure products.
Communicate clearly across both technical and non-technical audiences, especially in a written, asynchronous environment.
Are energized by solving real-world problems for developers and navigating ambiguity while moving quickly.
Possess a deep understanding of application security fundamentals, including auth, session management, APIs, and secrets handling.
Have experience with vulnerability triage, bug bounty programs, responsible disclosure, or security incident response.
Are comfortable participating in potential security on-call rotation and can balance urgency, risk, and practical remediation.
Have experience with or interest in Postgres, Kubernetes, or building security guardrails that enable rather than enforce.
Senior Cloud Security Developer at Nasdaq Verafin securing cloud applications and systems. Collaborate across teams to ensure robust protection in AWS cloud environment.
Specialist driving health, safety, and environmental standards at Hershey's Granby facility. Leading compliance initiatives, training managers, and promoting accident prevention tools.
Hershey recherche un Spécialiste en Santé, Sécurité et Environnement à Granby. Leader en sécurité, management des normes réglementaires et formation des équipes.
Conseiller expert sécurité informatique - gestion des vulnérabilités chez Beneva. Coordination des activités opérationnelles liées à la sécurité offensive et gestion des vulnérabilités.
Senior Manager overseeing Data Security Automation and Engineering team at RBC. Leading innovative solutions for cybersecurity challenges and ensuring team development.
AI Security Researcher leading threat research and vulnerability assessment in AI/ML security at RBC. Collaborating with business units and vendors to implement practical mitigations.
Principal AI Security Engineer leading adversarial testing in AI Red Team at enterprise scale. Focusing on governance, security architecture, and technical risk accountability.
Senior Physical Security professional at TC Energy supporting digital security platforms for facilities across North America. Responsible for technical maintenance and operational excellence in security systems.
Financial security advisor developing business relationships and selling life and health insurance products. Analyzing client needs and ensuring satisfaction in line with organizational standards.