> Markdown version of [/jobs/ext/100550-staff-product-security-engineer](https://www.wearedevelopers.com/jobs/ext/100550-staff-product-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Staff Product Security Engineer - **Company:** FanDuel Inc - **Location:** Atlanta, GA, United States - **Salary:** $184,000.0 - $241,500.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, Build Automation, Microsoft Azure, Code Review, Cyber Security, Continuous Integration, Integrated Development Environments, Python (Programming Language), Open Web Application Security, Software Engineering, Large Language Models, Software Security, Mitre Att&ck, Software Coding, Programming Languages - **Published:** May 31, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=a7c4f45011142527 ## About the Role Do you have experience in Tooling?, * Deep, hands-on security engineering experience embedded in the software development lifecycle - from design and code review through CI/CD, deployment, and production. * A demonstrated track record of defining and delivering multi-year security strategy in ambiguous, fast-moving environments. * Hands-on AI/LLM security experience - you understand how these systems work, where they fail, and you've formed strong opinions on how to secure them. * A track record of building automation and tooling that scales security capabilities and reduces toil. * Familiarity with modern cloud infrastructure (AWS, GCP, or Azure), CI/CD pipelines, and software development environments at scale. * Strong experience building and scaling reusable security patterns and assets across an engineering organization. * Solid coding skills in at least one modern programming language (Python, Go, or similar). * Command of industry frameworks (NIST, ISO 27001, OWASP, MITRE ATT&CK, SOC 2) and a pragmatic view on how and when to apply them. * Experience mentoring senior engineers and shaping technical culture across an organization. ## Description As a Staff Security Engineer on our Product Security team, you'll define and deliver multi-year security initiatives and set the direction for how FanDuel engineers build securely by default at scale. Working across the engineering organization, you'll identify risk before it surfaces and shape the technical and organizational capabilities the team needs to stay ahead. You'll define both the what and the how, mentor the next generation of security talent, and step into whatever gap is keeping the program from moving forward. In addition to the specific responsibilities outlined above, employees may be required to perform other such duties as assigned by the Company. This ensures operational flexibility and allows the Company to meet evolving business needs. THE GAME PLAN Everyone on our team has a part to play * Define the multi-year vision and strategy for how Security engages with engineering, and set the standards that make secure design the path of least resistance across FanDuel. * Partner with leadership across the business to shape direction, work through trade-offs, and make sure security is a first-class input into our engineering strategy. * Set the direction for AI/LLM security architecture across FanDuel by defining the controls, patterns, assessment frameworks, and governance models that let us ship AI-powered products safely and at speed. * Build automation and tooling that shifts our efforts into scalable, repeatable, build-secure-by-default systems. * Mentor other engineers, shape technical culture, and help grow the next generation of security leaders across the organization. * Adapt your role to fill technical or organizational gaps as the program evolves. * Other duties as required. ## Related Videos - [Automated Security for the Entire SDLC](https://www.wearedevelopers.com/videos/100323-automated-security-for-the-entire-sdlc) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Are Code Reviews Worth It? Insights from 16 Years of Review Data](https://www.wearedevelopers.com/videos/1135-are-code-reviews-worth-it-insights-from-16-years-of-review-data) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Build a CI/CD pipeline to automate code reviews and ensure code quality](https://www.wearedevelopers.com/videos/349-build-a-ci-cd-pipeline-to-automate-code-reviews-and-ensure-code-quality) ## Related Articles - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 132 - Binging WADFlix?](https://www.wearedevelopers.com/magazine/473-dev-digest-132-binging-wadflix) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)