Resume and JobRESUME AND JOB
IBM logo

Sr. Product Security Engineer II

IBM

Software and Technology Jobs

Sr. Product Security Engineer II

full-timePosted: Dec 12, 2025

Job Description

Sr. Product Security Engineer II

📋 Job Overview

The Senior Product Security Engineer II at IBM will contribute to the secure architecture and design of HashiCorp products, work across R&D teams to prioritize security features, and monitor threats and vulnerabilities. This role involves acting as a subject matter expert in various security areas, executing security assessments, and contributing to security solutions across the product lifecycle.

📍 Location: Multiple Locations (Remote/Hybrid)

💼 Career Level: Professional

🎯 Key Responsibilities

  • Contribute to secure architecture and design of HashiCorp products, across our cloud, self-managed, and community product portfolio
  • Work across various R&D teams to prioritize security features and bugs, and ensure implementation and mitigations
  • Monitor threats and vulnerabilities impacting HashiCorp products and services; triage reported vulnerabilities, identify mitigations and assess/communicate associated risk
  • Act as SME on multiple information security areas (e.g. security architecture, application security, threat modeling, etc.)
  • Plan & execute security assessments (dynamic testing, static testing, code review, etc) and threat modeling of HashiCorp’s products, services, and associated cloud infrastructure
  • Assist in execution of 3rd-party audits, penetration tests, and bug bounty programs
  • Contribute to the development of security solutions across the product life-cycle, such as standalone security tools, CI/CD pipeline integrations, product security features/fixes, etc
  • Contribute to the creation and delivery of security training
  • Research emerging attack vectors and techniques

✅ Required Qualifications

  • 8-10+ Years of Security experience
  • Secure development practices, and integration into broader engineering activities
  • Security design / architecture and threat modeling
  • Product and service architectures in modern, multi-tenant cloud environments (IaaS, SaaS, PaaS)
  • Amazon Web Services (AWS), Microsoft Azure, and/or Google Cloud Platform (GCP)
  • Secure operations practices, specifically in cloud environments
  • Authentication and Identity management (e.g. SAML, SSO, OIDC, SCIM, etc) security best practices
  • Application and infrastructure security testing methodologies and tools
  • Vulnerabilities (old and new), and options for defense / mitigation
  • Product vulnerability management lifecycle
  • Working with and/or supporting product engineering teams
  • Security audits, penetration tests, and/or bug bounty programs
  • Cryptography and cryptographic primitives
  • Strong written and verbal communication skills

⭐ Preferred Qualifications

  • Modern engineering practices, processes, and tools, particularly related to the Go programming language and ecosystem
  • Knowledge of application security topics, a pragmatic approach to security, and the ability to empathize with engineers and product managers across the company

🛠️ Required Skills

  • Secure development practices
  • Security design / architecture
  • Threat modeling
  • Product and service architectures
  • Amazon Web Services (AWS)
  • Microsoft Azure
  • Google Cloud Platform (GCP)
  • Secure operations practices
  • Authentication and Identity management
  • SAML
  • SSO
  • OIDC
  • SCIM
  • Application and infrastructure security testing methodologies and tools
  • Vulnerabilities
  • Product vulnerability management lifecycle
  • Cryptography
  • Cryptographic primitives
  • Written and verbal communication
  • Modern engineering practices
  • Go programming language
  • Application security topics

🎁 Benefits & Perks

  • Opportunity to learn and develop career
  • Encouragement to be courageous and experiment everyday
  • Continuous trust and support in an environment where everyone can thrive
  • Growth minded culture, always staying curious, open to feedback and learning new information and skills
  • Trusted to provide on-going feedback to help other IBMers grow
  • Collaborative team focused approach
  • Equal-opportunity employment
  • Commitment to compliance with fair employment practices

Locations

  • Multiple Locations, India (Remote)

Salary

Estimated Salary Rangemedium confidence

2,500,000 - 4,200,000 INR / yearly

Source: ai estimated

* This is an estimated range based on market data and may vary based on experience and qualifications.

Skills Required

  • Secure development practicesintermediate
  • Security design / architectureintermediate
  • Threat modelingintermediate
  • Product and service architecturesintermediate
  • Amazon Web Services (AWS)intermediate
  • Microsoft Azureintermediate
  • Google Cloud Platform (GCP)intermediate
  • Secure operations practicesintermediate
  • Authentication and Identity managementintermediate
  • SAMLintermediate
  • SSOintermediate
  • OIDCintermediate
  • SCIMintermediate
  • Application and infrastructure security testing methodologies and toolsintermediate
  • Vulnerabilitiesintermediate
  • Product vulnerability management lifecycleintermediate
  • Cryptographyintermediate
  • Cryptographic primitivesintermediate
  • Written and verbal communicationintermediate
  • Modern engineering practicesintermediate
  • Go programming languageintermediate
  • Application security topicsintermediate

Required Qualifications

  • 8-10+ Years of Security experience (experience)
  • Secure development practices, and integration into broader engineering activities (experience)
  • Security design / architecture and threat modeling (experience)
  • Product and service architectures in modern, multi-tenant cloud environments (IaaS, SaaS, PaaS) (experience)
  • Amazon Web Services (AWS), Microsoft Azure, and/or Google Cloud Platform (GCP) (experience)
  • Secure operations practices, specifically in cloud environments (experience)
  • Authentication and Identity management (e.g. SAML, SSO, OIDC, SCIM, etc) security best practices (experience)
  • Application and infrastructure security testing methodologies and tools (experience)
  • Vulnerabilities (old and new), and options for defense / mitigation (experience)
  • Product vulnerability management lifecycle (experience)
  • Working with and/or supporting product engineering teams (experience)
  • Security audits, penetration tests, and/or bug bounty programs (experience)
  • Cryptography and cryptographic primitives (experience)
  • Strong written and verbal communication skills (experience)

Preferred Qualifications

  • Modern engineering practices, processes, and tools, particularly related to the Go programming language and ecosystem (experience)
  • Knowledge of application security topics, a pragmatic approach to security, and the ability to empathize with engineers and product managers across the company (experience)

Responsibilities

  • Contribute to secure architecture and design of HashiCorp products, across our cloud, self-managed, and community product portfolio
  • Work across various R&D teams to prioritize security features and bugs, and ensure implementation and mitigations
  • Monitor threats and vulnerabilities impacting HashiCorp products and services; triage reported vulnerabilities, identify mitigations and assess/communicate associated risk
  • Act as SME on multiple information security areas (e.g. security architecture, application security, threat modeling, etc.)
  • Plan & execute security assessments (dynamic testing, static testing, code review, etc) and threat modeling of HashiCorp’s products, services, and associated cloud infrastructure
  • Assist in execution of 3rd-party audits, penetration tests, and bug bounty programs
  • Contribute to the development of security solutions across the product life-cycle, such as standalone security tools, CI/CD pipeline integrations, product security features/fixes, etc
  • Contribute to the creation and delivery of security training
  • Research emerging attack vectors and techniques

Benefits

  • general: Opportunity to learn and develop career
  • general: Encouragement to be courageous and experiment everyday
  • general: Continuous trust and support in an environment where everyone can thrive
  • general: Growth minded culture, always staying curious, open to feedback and learning new information and skills
  • general: Trusted to provide on-going feedback to help other IBMers grow
  • general: Collaborative team focused approach
  • general: Equal-opportunity employment
  • general: Commitment to compliance with fair employment practices

Target Your Resume for "Sr. Product Security Engineer II" , IBM

Get personalized recommendations to optimize your resume specifically for Sr. Product Security Engineer II. Takes only 15 seconds!

AI-powered keyword optimization
Skills matching & gap analysis
Experience alignment suggestions

Check Your ATS Score for "Sr. Product Security Engineer II" , IBM

Find out how well your resume matches this job's requirements. Get comprehensive analysis including ATS compatibility, keyword matching, skill gaps, and personalized recommendations.

ATS compatibility check
Keyword optimization analysis
Skill matching & gap identification
Format & readability score

Tags & Categories

SecuritySecurity

Answer 10 quick questions to check your fit for Sr. Product Security Engineer II @ IBM.

Quiz Challenge
10 Questions
~2 Minutes
Instant Score

Related Books and Jobs

No related jobs found at the moment.

IBM logo

Sr. Product Security Engineer II

IBM

Software and Technology Jobs

Sr. Product Security Engineer II

full-timePosted: Dec 12, 2025

Job Description

Sr. Product Security Engineer II

📋 Job Overview

The Senior Product Security Engineer II at IBM will contribute to the secure architecture and design of HashiCorp products, work across R&D teams to prioritize security features, and monitor threats and vulnerabilities. This role involves acting as a subject matter expert in various security areas, executing security assessments, and contributing to security solutions across the product lifecycle.

📍 Location: Multiple Locations (Remote/Hybrid)

💼 Career Level: Professional

🎯 Key Responsibilities

  • Contribute to secure architecture and design of HashiCorp products, across our cloud, self-managed, and community product portfolio
  • Work across various R&D teams to prioritize security features and bugs, and ensure implementation and mitigations
  • Monitor threats and vulnerabilities impacting HashiCorp products and services; triage reported vulnerabilities, identify mitigations and assess/communicate associated risk
  • Act as SME on multiple information security areas (e.g. security architecture, application security, threat modeling, etc.)
  • Plan & execute security assessments (dynamic testing, static testing, code review, etc) and threat modeling of HashiCorp’s products, services, and associated cloud infrastructure
  • Assist in execution of 3rd-party audits, penetration tests, and bug bounty programs
  • Contribute to the development of security solutions across the product life-cycle, such as standalone security tools, CI/CD pipeline integrations, product security features/fixes, etc
  • Contribute to the creation and delivery of security training
  • Research emerging attack vectors and techniques

✅ Required Qualifications

  • 8-10+ Years of Security experience
  • Secure development practices, and integration into broader engineering activities
  • Security design / architecture and threat modeling
  • Product and service architectures in modern, multi-tenant cloud environments (IaaS, SaaS, PaaS)
  • Amazon Web Services (AWS), Microsoft Azure, and/or Google Cloud Platform (GCP)
  • Secure operations practices, specifically in cloud environments
  • Authentication and Identity management (e.g. SAML, SSO, OIDC, SCIM, etc) security best practices
  • Application and infrastructure security testing methodologies and tools
  • Vulnerabilities (old and new), and options for defense / mitigation
  • Product vulnerability management lifecycle
  • Working with and/or supporting product engineering teams
  • Security audits, penetration tests, and/or bug bounty programs
  • Cryptography and cryptographic primitives
  • Strong written and verbal communication skills

⭐ Preferred Qualifications

  • Modern engineering practices, processes, and tools, particularly related to the Go programming language and ecosystem
  • Knowledge of application security topics, a pragmatic approach to security, and the ability to empathize with engineers and product managers across the company

🛠️ Required Skills

  • Secure development practices
  • Security design / architecture
  • Threat modeling
  • Product and service architectures
  • Amazon Web Services (AWS)
  • Microsoft Azure
  • Google Cloud Platform (GCP)
  • Secure operations practices
  • Authentication and Identity management
  • SAML
  • SSO
  • OIDC
  • SCIM
  • Application and infrastructure security testing methodologies and tools
  • Vulnerabilities
  • Product vulnerability management lifecycle
  • Cryptography
  • Cryptographic primitives
  • Written and verbal communication
  • Modern engineering practices
  • Go programming language
  • Application security topics

🎁 Benefits & Perks

  • Opportunity to learn and develop career
  • Encouragement to be courageous and experiment everyday
  • Continuous trust and support in an environment where everyone can thrive
  • Growth minded culture, always staying curious, open to feedback and learning new information and skills
  • Trusted to provide on-going feedback to help other IBMers grow
  • Collaborative team focused approach
  • Equal-opportunity employment
  • Commitment to compliance with fair employment practices

Locations

  • Multiple Locations, India (Remote)

Salary

Estimated Salary Rangemedium confidence

2,500,000 - 4,200,000 INR / yearly

Source: ai estimated

* This is an estimated range based on market data and may vary based on experience and qualifications.

Skills Required

  • Secure development practicesintermediate
  • Security design / architectureintermediate
  • Threat modelingintermediate
  • Product and service architecturesintermediate
  • Amazon Web Services (AWS)intermediate
  • Microsoft Azureintermediate
  • Google Cloud Platform (GCP)intermediate
  • Secure operations practicesintermediate
  • Authentication and Identity managementintermediate
  • SAMLintermediate
  • SSOintermediate
  • OIDCintermediate
  • SCIMintermediate
  • Application and infrastructure security testing methodologies and toolsintermediate
  • Vulnerabilitiesintermediate
  • Product vulnerability management lifecycleintermediate
  • Cryptographyintermediate
  • Cryptographic primitivesintermediate
  • Written and verbal communicationintermediate
  • Modern engineering practicesintermediate
  • Go programming languageintermediate
  • Application security topicsintermediate

Required Qualifications

  • 8-10+ Years of Security experience (experience)
  • Secure development practices, and integration into broader engineering activities (experience)
  • Security design / architecture and threat modeling (experience)
  • Product and service architectures in modern, multi-tenant cloud environments (IaaS, SaaS, PaaS) (experience)
  • Amazon Web Services (AWS), Microsoft Azure, and/or Google Cloud Platform (GCP) (experience)
  • Secure operations practices, specifically in cloud environments (experience)
  • Authentication and Identity management (e.g. SAML, SSO, OIDC, SCIM, etc) security best practices (experience)
  • Application and infrastructure security testing methodologies and tools (experience)
  • Vulnerabilities (old and new), and options for defense / mitigation (experience)
  • Product vulnerability management lifecycle (experience)
  • Working with and/or supporting product engineering teams (experience)
  • Security audits, penetration tests, and/or bug bounty programs (experience)
  • Cryptography and cryptographic primitives (experience)
  • Strong written and verbal communication skills (experience)

Preferred Qualifications

  • Modern engineering practices, processes, and tools, particularly related to the Go programming language and ecosystem (experience)
  • Knowledge of application security topics, a pragmatic approach to security, and the ability to empathize with engineers and product managers across the company (experience)

Responsibilities

  • Contribute to secure architecture and design of HashiCorp products, across our cloud, self-managed, and community product portfolio
  • Work across various R&D teams to prioritize security features and bugs, and ensure implementation and mitigations
  • Monitor threats and vulnerabilities impacting HashiCorp products and services; triage reported vulnerabilities, identify mitigations and assess/communicate associated risk
  • Act as SME on multiple information security areas (e.g. security architecture, application security, threat modeling, etc.)
  • Plan & execute security assessments (dynamic testing, static testing, code review, etc) and threat modeling of HashiCorp’s products, services, and associated cloud infrastructure
  • Assist in execution of 3rd-party audits, penetration tests, and bug bounty programs
  • Contribute to the development of security solutions across the product life-cycle, such as standalone security tools, CI/CD pipeline integrations, product security features/fixes, etc
  • Contribute to the creation and delivery of security training
  • Research emerging attack vectors and techniques

Benefits

  • general: Opportunity to learn and develop career
  • general: Encouragement to be courageous and experiment everyday
  • general: Continuous trust and support in an environment where everyone can thrive
  • general: Growth minded culture, always staying curious, open to feedback and learning new information and skills
  • general: Trusted to provide on-going feedback to help other IBMers grow
  • general: Collaborative team focused approach
  • general: Equal-opportunity employment
  • general: Commitment to compliance with fair employment practices

Target Your Resume for "Sr. Product Security Engineer II" , IBM

Get personalized recommendations to optimize your resume specifically for Sr. Product Security Engineer II. Takes only 15 seconds!

AI-powered keyword optimization
Skills matching & gap analysis
Experience alignment suggestions

Check Your ATS Score for "Sr. Product Security Engineer II" , IBM

Find out how well your resume matches this job's requirements. Get comprehensive analysis including ATS compatibility, keyword matching, skill gaps, and personalized recommendations.

ATS compatibility check
Keyword optimization analysis
Skill matching & gap identification
Format & readability score

Tags & Categories

SecuritySecurity

Answer 10 quick questions to check your fit for Sr. Product Security Engineer II @ IBM.

Quiz Challenge
10 Questions
~2 Minutes
Instant Score

Related Books and Jobs

No related jobs found at the moment.