Product Security Engineer
Listed on 2025-12-01
-
IT/Tech
Cybersecurity, Systems Engineer
Company
Pay Pal has been revolutionizing commerce globally for more than 25 years. We create innovative experiences that make moving money, selling, and shopping simple, personalized, and secure. Our global network connects hundreds of millions of merchants and consumers, enabling transactions online or in person. We offer proprietary payment solutions, flexible account usage, and a range of funding sources, including bank accounts, credit cards, debit cards, cryptocurrencies, and gift cards.
We empower merchants with end‑to‑end payment solutions, authorization, settlement, and risk management tools, while supporting consumers in cross‑border shopping.
As a Staff Product Security Engineer at Pay Pal, you will help secure 434 M accounts and $1.6 T annual payment volume. You will embed security throughout the software development lifecycle (SDLC) by shaping architecture decisions, influencing roadmaps, and scaling impact through automation, tooling, and mentorship. You will also perform in‑depth design, architecture, and code reviews, working directly with developers and product teams to ensure products are secure by design.
EssentialResponsibilities
- Leverage specialized security expertise to identify and resolve complex security issues, recommending best practices and determining new approaches that impact broader security operations.
- Partner across teams and stakeholders to drive security initiatives, leading complex projects and programs to strengthen overall security posture.
- Apply advanced analytical skills and sound judgment to solve security challenges, considering diverse perspectives and innovative solutions.
- Directly contribute to improvements within the security domain and occasionally beyond, ensuring decisions lead to meaningful enhancements in security practices.
- Leverage relationships across teams, both within and outside of security, to influence initiatives and integrate feedback into security processes.
Preferred Qualifications
- Lead and conduct security design, architecture, and code reviews, working directly with developers and product teams.
- Influence product architecture and roadmap decisions to ensure security is a core design element.
- Drive adoption of security standards and best practices across product lines by mentoring engineers and providing scalable guidance.
- Guide the secure design and integration of AI and large language models (LLMs) in Pay Pal products and internal security tooling.
- Identify systemic sources of security debt and drive initiatives to remediate and prevent recurrence.
- Provide technical leadership in cross‑functional initiatives, shaping architecture, tooling, and processes to raise overall security levels.
- Scale security impact by developing automation and self‑service tooling that enables teams to address security needs efficiently.
- Deliver targeted training and coaching that empowers teams to build securely at scale.
- Remain ahead of emerging threats and technologies, integrating learnings into threat models and product designs.
- Champion a culture of security by empowering teams to own and improve the security of their code and environments.
- 5+ years relevant experience and a Bachelor’s degree OR an equivalent combination of education and experience.
- Expertise in application security vulnerabilities (e.g., OWASP Top 10) and secure coding practices.
- Track record of partnering to remediate vulnerabilities and implement robust security controls.
- Strong written and verbal communication skills, able to influence both technical and executive audiences.
- Experience mentoring and developing engineers.
- Experience with application security tools (SAST, DAST, SCA, WAF, Burp Suite).
- Strong programming experience in at least one language such as Ruby, Java, Python, JavaScript, or Swift.
- Knowledge of Kubernetes, Terraform, and version control systems such as Git.
- Hands‑on experience with at least one major cloud vendor (AWS, Azure, GCP).
- Strong understanding of authentication and authorization protocols (OAuth 2.0, SAML).
In the Pay Pal Cyber & Information…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).