Product Security Engineer
New York City
Applications have closed
Squarespace
Create a customizable website or online store with an all-in-one solution from Squarespace. Choose a website template and start your free trial today.Squarespace is looking for a self-driven engineer to come on board and contribute to our security initiatives. In this role, you’ll partner closely with product leaders across the organization as an expert on all things Product Security. You will work closely with teams across the organization to build programs and processes that secure the platform powering millions of websites.
All Squarespace employees are working remotely at this time. We are closely monitoring the status of COVID-19 as we continue our work to build a return-to-work plan that ensures a safe return to our offices and provides flexibility for our employees.
RESPONSIBILITIES
- Work closely with engineering teams to augment Squarespace’s security features
- Disclosure of security vulnerabilities, how to reproduce them, and how to remediate them to both technical and nontechnical audiences
- Architect, design, implement, support and evaluate security-focused tools and services
- Manage and advocate Secure SDLC practices including threat modeling, secure code training, static analysis, dynamic analysis, bug bounty programs, and vulnerability management
- Evangelize a culture of security within Squarespace
- Evaluate and recommend new and emerging security products and technologies
QUALIFICATIONS
- 2+ years experience working in a Product Security team, software development team, or equivalent function
- Strong communication skills; ability to work with diverse company partners
- Proficient in one or more programming languages (Python, Java, JavaScript/React, and Go preferred)
- Experience protecting against and mitigating real world attacks (DDoS, XSS, session-hijacking, SQL injection, CSRF, etc)
- Intimate understanding of OWASP Top 10 Application security vulnerabilities.
- Strong Linux fundamentals and ability to analyze data with security tool sets
- Fluency in common web technologies and engineering workflows
- Basic understanding of data models, machine learning, and artificial intelligence
About Squarespace
Squarespace makes beautiful products to help people with creative ideas succeed. By blending elegant design and sophisticated engineering, we empower millions of people — from individuals and local artists to entrepreneurs shaping the world’s most iconic businesses — to share their stories with the world. Squarespace’s team of more than 1,200 is headquartered in downtown New York City, with offices in Dublin, Los Angeles and Portland. For more information, visit www.squarespace.com/about.
Benefits & Perks
- Health insurance with 100% premium covered for you and your dependent children
- Flexible vacation & paid time off
- Up to 20 weeks of paid family leave
- Equity plan for all employees
- Retirement benefits with employer match
- Fertility and adoption benefits
- Free lunch and snacks at all offices
- Education reimbursement
- Dog-friendly workplace in New York office
- Commuter benefit in the form of reduced tax (Ireland) and pretax (US)
Today, more than a million people around the globe use Squarespace to share different perspectives and experiences with the world. Not only do we embrace and celebrate the diversity of our customer base, but we also strive for the same in our employees. At Squarespace, we are committed to equal employment opportunity regardless of race, color, ethnicity, ancestry, religion, national origin, gender, sex, gender identity or expression, sexual orientation, age, citizenship, marital or parental status, disability, veteran status, or other class protected by applicable law. We are proud to be an equal opportunity workplace.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Application security Artificial Intelligence CSRF DDoS Java JavaScript Linux Machine Learning Monitoring OWASP Product security Python SDLC SQL SQL injection Vulnerabilities Vulnerability management XSS
Perks/benefits: Career development Fertility benefits Flex hours Flex vacation Health care Insurance Parental leave Pet friendly
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Ethical hacker / Pentester H/F jobs
- Open Information Security Specialist jobs
- Open Staff Security Engineer jobs
- Open Manager Pentest H/F jobs
- Open Cyber Security Architect jobs
- Open Senior Information Security Analyst jobs
- Open Senior Cyber Security Engineer jobs
- Open Cyber Security Specialist jobs
- Open Product Security Engineer jobs
- Open Principal Security Engineer jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open IT Security Analyst jobs
- Open Cybersecurity Analyst jobs
- Open Chief Information Security Officer jobs
- Open Cybersecurity Consultant jobs
- Open Senior Information Security Engineer jobs
- Open Consultant SOC / CERT H/F jobs
- Open Security Specialist jobs
- Open Cybersecurity Specialist jobs
- Open Senior Penetration Tester jobs
- Open Sr. Security Engineer jobs
- Open Security Researcher jobs
- Open Senior Security Architect jobs
- Open Senior Cyber Security Specialist jobs
- Open Clearance-related jobs
- Open ISO 27001-related jobs
- Open Application security-related jobs
- Open Network security-related jobs
- Open Windows-related jobs
- Open Agile-related jobs
- Open Pentesting-related jobs
- Open Vulnerability management-related jobs
- Open GCP-related jobs
- Open Analytics-related jobs
- Open SaaS-related jobs
- Open CISA-related jobs
- Open IAM-related jobs
- Open Threat intelligence-related jobs
- Open APIs-related jobs
- Open Java-related jobs
- Open Security assessment-related jobs
- Open DevOps-related jobs
- Open Kubernetes-related jobs
- Open Malware-related jobs
- Open Security Clearance-related jobs
- Open CI/CD-related jobs
- Open IDS-related jobs
- Open CEH-related jobs
- Open EDR-related jobs