Senior Product Security Engineer

Navan

Quick summary

Work type
On-site
Location
Redwood City, CA
Posted
57 days ago

Market check

Salary context

How this pay compares to similar roles

Similar $182k
$137k most similar roles pay here $228k

This listing doesn't post a salary. Most similar roles pay $151,475–$213,375.

Based on 240 similar postings.

Employer

About Navan

Navan (formerly TripActions) is a travel and expense management platform that provides corporate travel booking, expense management, and card solutions to simplify business travel for enterprises. Industry: Travel Management & Financial Technology

Navan currently has 17 open roles on FindRole.

Listed pay typically runs $113,400–$252,000 across 6 roles with salary data.

Most-posted roles

View all roles at Navan

At a glance

TL;DR · Senior Product Security Engineer

The Senior Product Security Engineer will join the Director of Product Security and Trust’s team to secure Navan products by identifying risks early in the SDLC and developing application security tooling. This role involves integrating security into the development process, conducting assessments, and providing training to ensure continuous product security. Key responsibilities include acting as a tech lead for high-priority initiatives, expanding the S-SDLC program, reviewing designs for security defects, and recommending remediations. The ideal candidate has 6-8 years of experience in SSDLC tooling, automation, and threat modeling, with expertise in cloud environments like AWS, application security testing tools, infrastructure as code, Java Spring Framework, JavaScript/CSS, Angular, Docker, Kubernetes, Jenkins, GitHub, Jira, and continuous integration. Knowledge of common protocols, cryptographic primitives, and secure SaaS architecture is essential.

What you'll do

  • Lead high-priority product security initiatives to ensure timely delivery.
  • Expand and mature the Secure Software Development Lifecycle (S-SDLC) program.
  • Review product designs for security defects, perform threat modeling, and recommend remediations.
  • Develop custom automated security solutions and integrate them into CI pipelines.
  • Provide training and guidance on security best practices early in the SDLC to development teams.
  • Cultivate a culture of security ownership within engineering and product teams.

What we're looking for

  • 6-8 years of experience in Technical Product Security related to SSDLC tooling and automation.
  • Proven ability to perform threat modeling, architecture reviews, and penetration testing for complex applications.
  • Strong background in delivering critical product security initiatives at an organizational level.
  • Expertise in cloud environments (AWS), application security testing tools, and infrastructure as code technologies.
  • Deep knowledge of common application & network protocols, cryptographic primitives, and secure SaaS architecture.
  • Experience working in Agile development with continuous integration and source code management systems.
  • Ability to provide pragmatic security advice for web applications, mobile apps, and cloud software.

More like this

Similar roles

Senior Product Security Engineer

Navan

Redwood City, CA 57 days ago $113,400$252,000
AWS Terraform Java Spring Framework Hibernate JavaScript Angular Docker Kubernetes Jenkins GitHub SAST DAST IAST SCA Jira CI/CD PostgreSQL Agile PCI DSS SOC2 HIPAA FedRAMP

Senior Product Security Engineer

Navan

Redwood City, CA 57 days ago $113,400$252,000
AWS Terraform Java Spring Framework Hibernate JavaScript Angular Docker Kubernetes Jenkins GitHub SAST DAST IAST SCA Jira CI/CD PostgreSQL Agile PCI DSS SOC2 HIPAA FedRAMP

Senior Product Security Engineer

Adobe

San Francisco +4 42 days ago $180,600$261,450
GitHub Actions Jenkins Kubernetes Terraform CI/CD Python Go Bash GitOps Secure SDLC Supply Chain Security Threat Modeling Cloud Native Systems Containerized Workloads Artifact Signing Open Source Risk Management

Senior Product Security Engineer - Software

Rockwell Automation

Remote (United States Of America Milwaukee (South 2Nd Street), US) 93 days ago
C# Java PHP .NET Core React Docker Kubernetes Go SQL HTML CSS JavaScript CI/CD SAST DAST SCA SonarQube Blackduck JFrog XRay PrismaCloud TCP/IP UDP HTTP HTTPS GitHub Mercurial Subversion AWS Azure GCP
Remote

Senior Product Security Engineer

Plaid

New York City 70 days ago $204,156$281,196
Python Django React PostgreSQL AWS RDS S3 Lambda CI/CD GitHub Kubernetes Terraform Docker GitLab Jenkins