Tines is looking for a Senior Product Security Engineer passionate about building and scaling robust security programs in an AI-forward engineering environment. Reporting to the Head of IT Operations & Information Security, this role leads efforts to mature product security initiatives as the product expands, ensuring security keeps pace with AI-assisted development workflows. This position can be based remotely in the United States.
Key Responsibilities
- Partner with product and engineering teams to integrate security throughout the development lifecycle
- Leverage AI and automation to scale product security coverage across engineering
- Design and implement security controls and architecture that scale with product portfolio growth
- Conduct comprehensive security reviews and threat modeling to identify vulnerabilities, including risks from AI-generated code
- Contribute to vulnerability management, including triaging bug bounty reports and driving remediation
- Develop automated security testing, monitoring, and response capabilities
- Serve as incident responder during security events and lead post-incident reviews
- Champion security awareness and provide technical guidance on secure AI-assisted development
Qualifications
- 8+ years in application or product security roles with cloud-native application expertise
- Strong understanding of modern application security principles, OWASP Top 10, and secure SDLC
- Experience leveraging AI and automation to scale security programs
- Cloud security expertise (AWS preferred) and containerized environment experience
- Proficiency in modern programming languages; Ruby, TypeScript, and/or Rust highly desirable
- Knowledge of security testing methodologies (SAST, DAST, SCA) and CI/CD security integration
- Strong incident response skills and on-call rotation experience
Nice to Haves
- Experience securing AI/ML systems and LLM-powered features, including LLM red-teaming and AI threat modeling
- Hands-on agentic or automated security workflow building
- Open-source security contributions or security research participation
- Bug bounty triage or VDP/bug bounty program management
- Multi-tenant SaaS security or FedRAMP/DoD Impact Level environment experience
Target Annual Compensation: $218,000 - $235,000 + equity
Applicants for this opportunity must be authorized to work for any employer in the U.S. Tines is unable to sponsor or take over sponsorship of an employment visa at this time.