Senior Product Security Engineer

Chainalysis

$135K — $160K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of application security engineering experience
  • Proficient in Java, TypeScript/JavaScript, Python, or Go for deep code review and fixes
  • Experience building security automation into CI/CD pipelines
  • Hands-on penetration testing experience for SaaS applications
  • Ability to identify and remediate OWASP Top 10 vulnerabilities
  • Experience securing internal AI/LLM platforms

Responsibilities

  • Build product security across Chainalysis' SaaS offerings
  • Drive security code reviews for new product launches
  • Provide security review for internal AI platforms and coding agents
  • Create threat modeling and secure design reviews
  • Build security automation into CI/CD pipelines
  • Participate in on-call rotation for high-severity incidents

Benefits

  • Collaboration with cutting-edge AI and blockchain technologies
  • Opportunity to work with a global client base including governments and financial institutions
  • Impactful work in securing products used to combat financial crime
  • Engaging environment focused on innovation and security best practices
  • Professional development opportunities in a rapidly evolving sector
Full Job Description
As a Senior Product Security Engineer, you'll be hands on coding our product security across one or more product areas. You'll run security reviews, perform hands-on pentests, ship code and fixes directly into product repos, and drive SOC2 and risk-framework work across R&D - Engineering. This is an outstanding opportunity to work with AI Powered products at the intersection of blockchain data, AI and Security. Product Security at Chainalysis keeps our SaaS platform - used by governments, banks, and crypto exchanges to investigate financial crime - secure by design. We partner directly with product and platform engineering on threat modeling, design reviews, penetration testing, and remediation of findings across our AWS and Kubernetes estate. In this role, you'll: • Build Product Security across Chainalysis' SaaS offerings, partnering with product and platform engineering teams on design, code, and remediation • Drive Security Code Reviews for new product launches - including custom penetration tests • Provide security review and guardrails for internal AI platforms and coding agents (LLM gateways, prompt/response controls) • Create threat modeling, secure design reviews, and static/dynamic code analysis across the SDLC • Build security automation into our CI/CD pipelines • Participate in a shared on-call rotation for high-severity production security incidents We're looking for candidates who have: • 5+ years of application security engineering experience • Strong production coding ability in at least one of Java (preferred), TypeScript/JavaScript, Python, or Go - enough to perform deep code review, write proof-of-concept exploits, and contribute fixes directly into product repos • Building security automation into CI/CD pipelines • Hands-on penetration testing of production SaaS applications, including custom tests scoped to new product launches • Identifying and remediating common web application vulnerabilities (OWASP Top 10) • Experience securing internal AI/LLM platforms and coding agents (model gateways, prompt/response controls, agent permissioning) Nice to have experience: • Experience in Web3, Blockchain or Digital Assets • Experience building AI workflows, agents, and guardrailing Technologies we use: • Cloud and containers: AWS, GCP, Kubernetes (EKS/GKE) • Infrastructure-as-Code: Terraform • Security tooling: Wiz, SonarCloud, Burp, Cloudflare • CI/CD and source control: GitHub, GitHub Actions, Artifactory and related build/deploy tooling • Languages and scripting: Java, JavaScript, Python, Go • AI Coding Agents, Tooling, Systems

Similar Jobs

More Jobs at Chainalysis

More Information Technology Jobs

Find similar Senior Product Security Engineer jobs: