Okta·Toronto, Ontario, Canada·4 дн назад
Staff Product Security Engineer, Reviews
141 000 – 193 000 $ в год
на 19% ниже медианы рынка
≈ 986,6 тыс.–1,4 млн ₽
🏢 ОфисSeniorПолная занятость
Вилки нет, про деньги придётся договариваться с нуля.
Вакансия на английскомПереведёт заголовок и описание вакансии на русский
Наша компания
Secure Every Identity, from AI to Human Identity is the key to unlocking the potential of AI. Okta secures AI by building the trusted, neutral infrastructure that enables organizations to safely embrace this new era. This work requires a relentless drive to solve complex challenges with real-world stakes. We are looking for builders and owners who operate with speed and urgency and execute with excellence.
О роли
This is an opportunity to do career-defining work. We're all in on this mission. If you are too, let's talk. The Staff Product Security Engineer Opportunity
Чем предстоит заниматься
Conduct security reviews, including design reviews, threat modeling, and penetration testing of new features and major changes
Perform manual secure code reviews across multiple programming languages
Identify and mitigate security vulnerabilities, providing clear guidance to engineering teams
Lead product security incidents, assess risks, and drive remediation efforts
Develop security tools and automation to improve vulnerability detection and assessment
Mentor junior engineers and provide guidance to non-security staff on secure development practices
Represent Okta externally through security research, conference talks, and publications
Supporting Your Well-Being
Driving Social Impact
Developing Talent and Fostering Connection + Community
We are intentional about connection. Our global community, spanning over 20 offices worldwide, is united by a drive to innovate. Your journey begins with an immersive, in-person onboarding experience designed to accelerate your impact and connect you to our mission and team from day one
Notice for New York City Applicants & Employees: Okta may use Automated Employment Decision Tools (AEDT), as defined by New York City Local Law 144, that use artificial intelligence, machine learning, or other automated processes to assist in our recruitment and hiring process. In accordance with NYC Local Law 144, if you are an applicant or employee residing in New York City, please click here to view our full NYC AEDT Notice
Наши требования
Expertise in identifying OWASP Top 10 / CWE Top 25 vulnerabilities through manual code review
Strong experience in penetration testing and secure development practices
Deep technical background in assessing Large Language Models (LLMs) and securing AI-integrated software architectures
Proficiency in multiple programming languages (e.g., Java, Go, Python, C/C++)
Deep understanding of authentication & authorization protocols (OIDC, SAML, OAuth)
Strong communication skills to explain risks and remediation to developers and leadership
Ability to automate security testing using LLMs and scripting (Python, Bash, etc.)
Experience leading security incidents and risk assessments
Experience in mobile (iOS/Android) and desktop (Windows/macOS) security testing
Familiarity with SAST, DAST, SCA, and fuzzing tools
Strong cryptographic knowledge and secure implementation practices
Experience analyzing network protocols and traffic security
Ability to develop proof-of-concept exploits to demonstrate vulnerabilities
P25768_3530395
Дополнительно
Below is the annual salary range for candidates located in Canada. Your actual salary will depend on factors such as your skills, qualifications, and experience. In addition, Okta offers equity (where applicable), bonus, and benefits, including health, dental, and vision insurance, RRSP with a match, healthcare spending, telemedicine, and paid leave (including PTO and parental leave) in accordance with our applicable plans and policies
The annual base salary range for this position for candidates located in Canada is between
$141,000—$193,000 USD