Security Engineer, Product Security
ScaleSan Francisco, CA; Seattle, WA; New York, NYPosted 21 January 2026
Tech Stack
Job Description
<p>We are seeking a highly technical Security Engineer to join our Product Security team. This role is integral to ensuring the security and integrity of our products and services. You will conduct in-depth code reviews, implement security best practices, and influence the overall security strategy. Your expertise in TypeScript, Python, Kubernetes, CI/CD, SAST, DAST, and terraform orchestration will be crucial in identifying and mitigating potential security vulnerabilities. You will also structure complex problems, diagnose root causes independently, and clearly explain the mechanics and significance of security vulnerabilities, including their exploitability and potential impact.</p>
<p>You will:</p>
<ul>
<li>Conduct in-depth code reviews to identify and remediate security vulnerabilities.</li>
<li>Evaluate and enhance the security of our product offerings, through RFC and service review.</li>
<li>Implement and maintain CI/CD pipelines with a strong focus on security.</li>
<li>Perform Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) to identify vulnerabilities in production code.</li>
<li>Utilize terraform orchestration to ensure secure and efficient infrastructure management.</li>
<li>Guide engineering teams to build robust long-term solutions that consider security and privacy.&nbsp;</li>
<li>Clearly explain the mechanics and significance of security vulnerabilities, including their exploitability and potential impact.</li>
<li>Influence the security strategy and direction of the team, advocating for best practices and continuous improvement.</li>
</ul>
<p>Ideally, you’d have:</p>
<ul>
<li>Proven experience as a Security Engineer with a focus on product security.</li>
<li>Proficiency in NodeJS, TypeScript, Python, and/or Kubernetes.</li>
<li>Strong understanding of modern Javascript application design.</li>
<li>Production experience with Kubernetes backed services</li>
<li>Hands-on experience with SAST and DAST tools and methodologies.</li>
<li>Familiarity with terraform orchestration for infrastructure management.</li>
<li>You can structure complex problems and diagnose root causes independently, providing actionable insights without requiring manager input.</li>
<li>Excellent communication skills, with the ability to clearly present technical concepts and their implications to both technical and non-technical stakeholders.</li>
<li>Demonstrated ability to influence security strategies and drive improvements within a team.</li>
<li>Relevant security certifications (e.g., CISSP, CEH, OSCP) are a plus.</li>
</ul>
<p>&nbsp;</p><div class="content-pay-transparency"><div class="pay-input"><div class="description"><p><em>Compensation packages at Scale for eligible roles include base salary, equity, and benefits. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position, determined by work location and additional factors, including job-related skills, experience, interview performance, and relevant education or training. Scale employees in eligible roles are also granted equity based compensation, subject to Board of Director approval. Your recruiter can share more about the specific salary range for your preferred location during the hiring process, and confirm whether the hired role will be eligible for equity grant. You’ll also receive benefits including, but not limited to: Comprehensive health, dental and vision coverage, retirement benefits, a learning and development stipend, and generous PTO. Additionally, this role may be eligible for additional benefits such as a commu ... (truncated, view full listing at source)
Apply Now
Direct link to company career page
More jobs at Scale
See all →More JavaScript jobs
See all →Solutions Architect
Fastly · Billings, MT; Boise, ID; Cheyenne, WY; Denver, CO; Los Angeles, CA; Portland, OR; Sacramento, CA; Salt Lake City, UT; San Diego, CA; San Francisco, CA; San Jose, CA; Seattle, WA
Software Engineer (c)
Dropbox · US: SF, California
Senior Automation Engineering Manager
Toast · Bengaluru , Karnataka, India
Software Engineer, Frontend (Hybrid)
Homebase · Toronto