Product Security Engineer

New York City

Squarespace

Create a customizable website or online store with an all-in-one solution from Squarespace. Choose a website template and start your free trial today.

View company page

Squarespace is looking for a self-driven engineer to come on board and contribute to our security initiatives. In this role, you’ll partner closely with product leaders across the organization as an expert on all things Product Security. You will work closely with teams across the organization to build programs and processes that secure the platform powering millions of websites.

All Squarespace employees are working remotely at this time. We are closely monitoring the status of COVID-19 as we continue our work to build a return-to-work plan that ensures a safe return to our offices and provides flexibility for our employees.

 

RESPONSIBILITIES

  • Work closely with engineering teams to augment Squarespace’s security features
  • Disclosure of security vulnerabilities, how to reproduce them, and how to remediate them to both technical and nontechnical audiences
  • Architect, design, implement, support and evaluate security-focused tools and services
  • Manage and advocate Secure SDLC practices including threat modeling, secure code training, static analysis, dynamic analysis, bug bounty programs, and vulnerability management
  • Evangelize a culture of security within Squarespace
  • Evaluate and recommend new and emerging security products and technologies

QUALIFICATIONS

  • 2+ years experience working in a Product Security team, software development team, or equivalent function
  • Strong communication skills; ability to work with diverse company partners
  • Proficient in one or more programming languages (Python, Java, JavaScript/React, and Go preferred)
  • Experience protecting against and mitigating real world attacks (DDoS, XSS, session-hijacking, SQL injection, CSRF, etc)
  • Intimate understanding of OWASP Top 10 Application security vulnerabilities.
  • Strong Linux fundamentals and ability to analyze data with security tool sets
  • Fluency in common web technologies and engineering workflows
  • Basic understanding of data models, machine learning, and artificial intelligence

About Squarespace

 

Squarespace makes beautiful products to help people with creative ideas succeed. By blending elegant design and sophisticated engineering, we empower millions of people — from individuals and local artists to entrepreneurs shaping the world’s most iconic businesses — to share their stories with the world. Squarespace’s team of more than 1,200 is headquartered in downtown New York City, with offices in Dublin, Los Angeles and Portland. For more information, visit www.squarespace.com/about.

 

Benefits & Perks

  • Health insurance with 100% premium covered for you and your dependent children
  • Flexible vacation & paid time off
  • Up to 20 weeks of paid family leave
  • Equity plan for all employees
  • Retirement benefits with employer match
  • Fertility and adoption benefits
  • Free lunch and snacks at all offices
  • Education reimbursement
  • Dog-friendly workplace in New York office
  • Commuter benefit in the form of reduced tax (Ireland) and pretax (US)

 

Today, more than a million people around the globe use Squarespace to share different perspectives and experiences with the world. Not only do we embrace and celebrate the diversity of our customer base, but we also strive for the same in our employees. At Squarespace, we are committed to equal employment opportunity regardless of race, color, ethnicity, ancestry, religion, national origin, gender, sex, gender identity or expression, sexual orientation, age, citizenship, marital or parental status, disability, veteran status, or other class protected by applicable law. We are proud to be an equal opportunity workplace.



* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Application security Artificial Intelligence CSRF DDoS Java JavaScript Linux Machine Learning Monitoring OWASP Product security Python SDLC SQL SQL injection Vulnerabilities Vulnerability management XSS

Perks/benefits: Career development Fertility benefits Flex hours Flex vacation Health care Insurance Parental leave Pet friendly

Region: North America
Country: United States
Job stats:  7  1  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.