Senior Product Security Engineer

Chainalysis

$120K — $145K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of application security engineering experience
  • Proficient in Java, TypeScript/JavaScript, Python, or Go for deep code reviews
  • Experience in building security automation within CI/CD pipelines
  • Hands-on experience with penetration testing of SaaS applications
  • Ability to identify and remediate OWASP Top 10 vulnerabilities
  • Familiarity with securing AI/LLM platforms and coding agents

Responsibilities

  • Build Product Security for Chainalysis SaaS offerings, collaborating with engineering teams
  • Drive security code reviews for new product launches with custom penetration tests
  • Provide security oversight for internal AI platforms and coding agents
  • Create threat models and perform secure design reviews
  • Implement security automation in CI/CD processes
  • Share on-call duties for handling high-severity production security incidents

Benefits

  • Work with cutting-edge AI and blockchain technologies
  • Collaborative and innovative team environment
  • Opportunity to drive impactful security initiatives
  • Engage in diverse product security challenges
  • Potential for professional growth and development opportunities
Full Job Description
As a Senior Product Security Engineer, you'll be hands on coding our product security across one or more product areas. You'll run security reviews, perform hands-on pentests, ship code and fixes directly into product repos, and drive SOC2 and risk-framework work across R&D - Engineering. This is an outstanding opportunity to work with AI Powered products at the intersection of blockchain data, AI and Security. Product Security at Chainalysis keeps our SaaS platform - used by governments, banks, and crypto exchanges to investigate financial crime - secure by design. We partner directly with product and platform engineering on threat modeling, design reviews, penetration testing, and remediation of findings across our AWS and Kubernetes estate. In this role, you'll: • Build Product Security across Chainalysis' SaaS offerings, partnering with product and platform engineering teams on design, code, and remediation • Drive Security Code Reviews for new product launches - including custom penetration tests • Provide security review and guardrails for internal AI platforms and coding agents (LLM gateways, prompt/response controls) • Create threat modeling, secure design reviews, and static/dynamic code analysis across the SDLC • Build security automation into our CI/CD pipelines • Participate in a shared on-call rotation for high-severity production security incidents We're looking for candidates who have: • 5+ years of application security engineering experience • Strong production coding ability in at least one of Java (preferred), TypeScript/JavaScript, Python, or Go - enough to perform deep code review, write proof-of-concept exploits, and contribute fixes directly into product repos • Building security automation into CI/CD pipelines • Hands-on penetration testing of production SaaS applications, including custom tests scoped to new product launches • Identifying and remediating common web application vulnerabilities (OWASP Top 10) • Experience securing internal AI/LLM platforms and coding agents (model gateways, prompt/response controls, agent permissioning) Nice to have experience: • Experience in Web3, Blockchain or Digital Assets • Experience building AI workflows, agents, and guardrailing Technologies we use: • Cloud and containers: AWS, GCP, Kubernetes (EKS/GKE) • Infrastructure-as-Code: Terraform • Security tooling: Wiz, SonarCloud, Burp, Cloudflare • CI/CD and source control: GitHub, GitHub Actions, Artifactory and related build/deploy tooling • Languages and scripting: Java, JavaScript, Python, Go • AI Coding Agents, Tooling, Systems

Similar Jobs

More Jobs at Chainalysis

More Information Technology Jobs

Find similar Senior Product Security Engineer jobs: