More jobs:
Senior Product Security Engineer
Job in
Raleigh, Wake County, North Carolina, 27601, USA
Listed on 2026-08-09
Listing for:
Husprey (acq. by Collibra)
Full Time
position Listed on 2026-08-09
Job specializations:
-
IT/Tech
Cybersecurity
Job Description & How to Apply Below
Joining Collibra’s Product Security team
Collibra is seeking a Senior Product Security Engineer to join our high-impact team. You will be a key individual responsible for identifying vulnerabilities and providing expert remediation consulting for our global product development teams. This role provides critical technical leadership and oversight, ensuring Collibra continues to deliver secure, resilient products and services to our customers. You will act as an application security evangelist, partnering with engineers to accelerate secure time-to-value while leveraging cutting‑edge AI and MCP to create context‑aware security automation.
ProductSecurity Engineers at Collibra are responsible for
- Application Penetration Testing (Web-app, API, Thick Client)
- Network Penetration Testing (Internal, External)
- Cloud Service penetration testing tradecraft and methodologies across multiple service providers (AWS, Azure, GCP)
- Threat Modeling
- Source-Code Reviews
- Ensure quality reports and services are delivered efficiently and on time
- Collaborate with cross‑functional teams to ensure that security best practices are integrated into the development process
- Enable remediation of discovered vulnerabilities through the building of relationships with engineering teams
- Continue to develop professional skills with relevant industry specific certifications or training
- Assist with triaging Code Security findings identified by SAST, SCA, IAST, DAST, where necessary.
- Leverage AI and MCP to create intelligent, context‑aware security guidance and automation.
- 5+ years of relevant Penetration Testing, Product Security, and Application Security experience.
- 2+ years securing Java, Python, and/or JavaScript web applications.
- Experience with advanced security tools and techniques for simulating real‑world attacks.
- Familiarity with Open‑Source Security Testing Methodology Manual (OSSTMM), Open Web Application Security Project (OWASP), Software Assurance Maturity Model (SAMM), National Institute of Standards and Technology (NIST) Special Publications, and PTES (Penetration Testing Execution Standard).
- Experience testing against compliance frameworks such as PCI, FISMA, HIPAA, FedRAMP, or HITRUST.
- Strong working knowledge of at least two programming or scripting languages.
- Familiarity with best practices for securing the SDLC and Dev Ops processes.
- Ability to triage security incidents when needed.
- Experience with AI security tooling and context‑aware SSDLC automation.
- Understanding of AI privacy and governance in developer workflows.
- Experience using and building collaborative agentic AI systems.
- Demonstrated proficiency in leveraging AI tools (e.g., Claude, Gemini, ChatGPT, Copilot) to solve real‑world business challenges, drive measurable outcomes, or streamline workflows.
- A Bachelor’s degree or equivalent certification and experience.
- Demonstrated proficiency in leveraging AI tools (e.g., Claude, Gemini, ChatGPT, Copilot) to solve real‑world business challenges, drive measurable outcomes, or streamline workflows.
- A bachelor’s degree or equivalent related working experience is required
- This position is not eligible for visa sponsorship
- Grounded in security principles, policies, and industry best practices.
- An excellent verbal and written communicator, able to produce assessment reports, presentations, and operating procedures.
- A developing or established leader who matures security practices and mentors junior teammates.
- An advocate for the remediation of application security risk and, simultaneously, the associated development/engineering teams.
- Relevant security certifications strongly preferred (e.g. OSCP, OSWE, CRTP)
- Red/Purple team operations
- Possess a working knowledge of Python, Java, and/or JavaScript software development languages
- Experienced in performing security assessments against containerized cloud environments.
- Familiarity with AI standards and regulations, EU AI Act, SAIF and ISO 42001.
- Within your first month, you will build foundational knowledge of Collibra’s processes, tools, and SDLC. You will use that knowledge to design and implement repeatable penetration‑testing methodologies…
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×