Staff Product Security Engineer, Reviews
Okta
1 day ago
Bengaluru, India
Staff+
H1B Sponsor
Responsibilities
- Conduct security reviews, including design reviews, threat modeling, and penetration testing of new features.
- Perform manual secure code reviews across multiple programming languages.
- Identify and mitigate security vulnerabilities, providing guidance to engineering teams.
- Lead product security incidents, assess risks, and drive remediation efforts.
- Develop security tools and automation to improve vulnerability detection.
- Mentor junior engineers and guide non-security staff on secure development practices.
- Represent Okta externally through security research, conference talks, and publications.
Requirements
- Expertise in identifying OWASP Top 10 / CWE Top 25 vulnerabilities through manual code review.
- Strong experience in penetration testing and secure development practices.
- Proficiency in multiple programming languages (e.g., Java, Go, Python, C/C++).
- Deep understanding of authentication and authorization protocols (OIDC, SAML, OAuth).
- Strong communication skills to explain risks and remediation to developers and leadership.
- Ability to automate security testing using LLMs and scripting (Python, Bash, etc.).
- Experience leading security incidents and risk assessments.
Benefits
- Comprehensive benefits package.
- Opportunities for social impact through community initiatives.
- Support for talent development and fostering connections within the company.
Tech Stack
BashCC++GoJavaPython
Categories
Security