Senior Security Engineer I, Product Security

Oscar Health

Confirmed live 2 days ago High trust
Remote

Quick summary

Work type
Remote
Location
San Francisco, CA
Posted
8 days ago
Freshness
Confirmed live 2 days ago

Market check

Salary context

How this pay compares to similar roles

Similar $182k
$127k most similar roles pay here $230k

This listing doesn't post a salary. Most similar roles pay $151,475–$212,125.

Based on 240 similar postings.

Employer

About Oscar Health

Oscar Health is a technology-driven health insurance company offering individual, family, and small business health plans.

Oscar Health currently has 70 open roles on FindRole.

Listed pay typically runs $149,040–$195,615 across 65 roles with salary data.

Most-posted roles

View all roles at Oscar Health

At a glance

TL;DR · Senior Security Engineer I, Product Security

The Senior Security Engineer I, Product Security joins the Security Team to serve as a key technical resource leading the security of the software development life cycle from design to completion. This role involves architecting, building, testing, and deploying application security systems while integrating security reviews into AI-driven workflows and agent processes. Day-to-day responsibilities include managing the vulnerability lifecycle through SAST and DAST tools, performing manual analysis, conducting source code reviews, writing production-quality code, and mentoring junior engineers. The candidate will develop risk assessment frameworks and provide technical guidance to engineering teams for remediation. Required skills include experience in software development and information security, building complex standalone systems, and using AI models integrated via the Model Context Protocol. The role addresses security challenges within a health insurance platform by securing paved roads for development.

What does a Security Engineer earn in California?

Median $196000 from 31 postings across 16 companies.

See salary data

What you'll do

  • Manage the full vulnerability lifecycle from automated identification to manual analysis and remediation tracking.
  • Design security measures for AI-driven workflows and integrate security reviews into AI agent processes.
  • Architect, build, test, and deploy application security systems and processes across the SDLC.
  • Conduct source code reviews of internal and third-party software while writing production-quality code and libraries.
  • Build risk assessment frameworks and create actionable plans to manage identified security risks.
  • Provide technical guidance and training to engineering teams regarding vulnerability remediation and migration.
  • Mentor junior engineers by providing technical guidance and developing functional workflows.

What we're looking for

  • 4+ years of combined career experience in software development and information security.
  • Proven experience across all areas of the Secure Software Development Life Cycle (SDLC).
  • Experience building moderate to complex standalone systems or major new features.
  • Hands-on experience using AI models and integrating them with internal systems via protocols like Model Context Protocol (MCP).
  • Ability to conduct source code reviews and write production-quality code and libraries.
  • Ability to manage the vulnerability management lifecycle including SAST, DAST, and manual analysis.
  • A Bachelor's degree or four years of equivalent experience.
  • Experience with security challenges specific to the healthcare or health insurance industries is preferred.

More like this

Similar roles

Senior Security Engineer I, Product Security

Oscar Health

Los Angeles, CA 8 days ago
Application Security SAST DAST Vulnerability Management AI Integration Model Context Protocol (MCP) Source Code Review Risk Assessment Software Development
4+ yrs exp Hybrid

Senior Security Engineer I, Product Security

Oscar Health

Tempe, AZ 8 days ago
SAST DAST SDLC Vulnerability Management Code Review AI Integration Model Context Protocol (MCP) Software Development Risk Assessment Source Code Review
4+ yrs exp Hybrid

Senior Product Security Engineer I

Oscar Health

New York, NY 58 days ago
Application Security SAST DAST Vulnerability Management AI Integration Model Context Protocol (MCP) Code Review Risk Assessment Software Development
4+ yrs exp Hybrid

Senior Product Security Engineer

Adobe

San Jose, CA 7 days ago $180,600$261,450
OWASP Top 10 CVSS v3.1 Burp Suite Python PowerBI JIRA REST API OAuth2 AWS Lambda API Gateway SQL Injection XSS SSRF IDOR SOAR Webhooks curl DevTools
5+ yrs exp

Senior Product Security Engineer

Cloudflare, Inc

Austin, TX 51 days ago
Product Security Application Security AI LLM Threat Modeling STRIDE Vulnerability Management SAST Fuzzing Penetration Testing Bug Bounty JIRA Agile SaaS Distributed Systems
Hybrid

Staff Product Security Engineer

Reddit

Remote 135 days ago $217,000$303,900
Go Python CI/CD LLM Authentication Authorization Cloud-Native Platforms Product Security Application Security Software Engineering
8+ yrs exp Remote