Senior Product Security Software Engineer in San Francisco
Role details
Job location
Tech stack
Job description
We're seeking a Senior Product Security Software Engineer who is first and foremost a skilled software engineer with AI expertise. You'll design secure systems, build security controls that integrate seamlessly into developer workflows, and help raise the security bar across our AI infrastructure and distributed systems, all while maintaining a pragmatic, delivery-focused mindset.
What You'll Be Working On
- Design and build secure frameworks and patterns for high-performance AI workflows, agents, and models to protect our clients
- Create reusable security patterns for product microservices, focusing on service-to-service authorization, API security, and multi-tenant data isolation that scales across product lines
- Create developer-facing tools and automation that catch security issues early in the development cycle without slowing teams down
- Perform security reviews, penetration tests, code reviews, and system design reviews for Crusoe's fleet of SaaS offerings.
Requirements
-
7+ years of experience shipping production software with strong system design skills
-
Deep expertise in Golang and Node.js/JavaScript, with experience building and debugging distributed systems Hands-on experience securing gRPC services, REST APIs, and microservice architectures
-
Strong background implementing authentication and authorization systems using OAuth2, OIDC, SAML, JWT, and RBAC/ABAC models
-
Production experience with application security tooling (SAST, DAST, SCA) and CI/CD integration (e.g., Semgrep, OWASP ZAP, Burp, GitLab)
-
Knowledge of runtime application security and observability tools
-
Solid understanding of cloud- and containerized environments (Docker, Kubernetes) and network security fundamentals
-
Strong grasp of OWASP Top 10, secure coding practices, cryptography, and secure design principles
Bonus Points
- Experience building reusable security frameworks or internal developer platforms
- Background in platform or infrastructure-adjacent security engineering
- Experience influencing security practices across multiple engineering teams
- Familiarity with supply chain security and dependency risk management
Benefits & conditions
- Competitive compensation
- Restricted Stock Units
- Paid time off & paid holidays
- Comprehensive health, dental & vision insurance
- Employer contributions to HSA account
- Paid parental leave
- Paid life insurance, short-term and long-term
- Professional development & tuition reimbursement
- Mental health & wellness support
- Commuter benefits (parking & transit)
- Cell phone stipend
- 401(k) Retirement plan with company match up to 4% of salary
- Volunteer time off
Compensation Range
Compensation will be paid in the range of up to $175,000 - $215,000 + Bonus. Restricted Stock Units are included in all offers. Compensation to be determined by the applicants knowledge, education, and abilities, as well as internal equity and alignment with market data.