LaunchDarkly
Product Security Engineer
Remote - US West · Director · Full-time
Sponsorship not specified$136k-$187kDetected 5 days ago
TypeScriptPythonGoDevOpsRESTCybersecurityCadenceLeadershipCommunication
About the role
- Our security team keeps it safe for the global systems that depend on us.
- You'll spend most of your time on threat modeling and cloud security posture, with rotating exposure to the rest of the ProdSec surface area.
Responsibilities
- Lead threat modeling engagements on the features and services where the risk warrants it.
- Partner with the ProdSec lead to evolve the practice from on-request to repeatable, with clear criteria for when an engagement is worth running.
- Own day-to-day triage of CNAPP findings end to end. Investigate, prioritize, route to service owners, and close the loop. Look for patterns that point to systemic fixes instead of one-off cleanup.
- Partner with product engineering teams as a trusted reviewer. Catch issues early, explain the why, propose paths forward. Say no when needed, with reasons and alternatives.
- Bring AI to your work. Use it to accelerate triage, summarize findings, draft threat models, scan code, and reduce toil. Help the team build durable patterns for safe and effective use, not one-off prompts.
- You're a good partner. You're helpful and direct, you say no with reasons and alternatives, and you don't mistake gatekeeping for rigor.
- Slow, inefficient development cycles, costly outages, and fragmented customer experiences are preventing developers from building their best software.
- Maximizing the business impact of every feature through the ability to experiment and optimize
- We're building a team that is humble, open, collaborative, respectful and kind.
Requirements
- Experience participating in or leading threat modeling exercises.
- Hands-on experience applying AI tooling to security or engineering work.
- You can point to specific examples where it changed how you operated.
- Experience with developer tools, SaaS platforms, or feature management
- Familiarity with Go, Python, or TypeScript
- 2 to 4 years of full-time experience in a security-focused role. AppSec, ProdSec, or cloud security preferred.
- Comfortable reading and critiquing pull requests in a modern stack. You don't need to ship production services, but you should follow the code, ask sharp questions, and write small tools when it helps.
- Experience participating in or leading threat modeling exercises. Familiar with at least one structured approach (STRIDE, attack trees, or equivalent).
- Working knowledge of cloud security posture. Exposure to a CNAPP is a strong plus.
- Strong fundamentals: OWASP Top 10, authentication and authorization patterns, secrets management, and common cloud misconfigurations.
- Hands-on experience applying AI tooling to security or engineering work. You can point to specific examples where it changed how you operated.
- Nice to Haves:
- Bug bounty triage experience (HackerOne, Bugcrowd)
- Contributions to internal security tooling or open-source security projects
- Target pay ranges based on Geographic Zones* for Level 2:
Nice to have
- 2 to 4 years of full-time experience in a security-focused role.
- AppSec, ProdSec, or cloud security preferred.
- Working knowledge of cloud security posture.
- Exposure to a CNAPP is a strong plus.
Skills
- LaunchDarkly is critical infrastructure.
Compensation
- Target pay ranges based on Geographic Zones* for Level 2:
- Zone 1: San Francisco/Bay Area or NYC Metropolitan Area, Boston, Seattle - $ 136,000 - $187,000 **
- Zone 2: Irvine, LA, Monterey, Santa Barbara, Santa Rosa, Austin, Portland, Philadelphia, Chicago - $ 122,000 - $168,000 **
- Zone 3: All other US locations - $ 116,000 - $159,000 **
- LaunchDarkly operates from a place of high trust and transparency; we are happy to state the pay range for our open roles to best align with your needs.
- Exact compensation may vary based on skills, experience, and location.
Benefits
- Restricted Stock Units (RSUs), health, vision, and dental insurance, and mental health benefits in addition to salary.
- We do not discriminate on the basis of race, religion, color, national origin, gender, gender identity, sexual orientation, age, marital status, veteran status, or disability status.
Company info
- You treat AI as part of the toolkit. You're skeptical where you should be, aggressive where it pays off, and you want to work somewhere that's serious about both.
Equal opportunity
- We are an equal opportunity employer and value diversity at our company.
- LD invites any applicant to review our written Affirmative Action Plan.
- Do you need a disability accommodation?
Apply directly at LaunchDarkly →Create a free account for alerts like thisView LaunchDarkly immigration profile
This listing is sourced directly from LaunchDarkly's careers page and normalized into a canonical job model.