The OpportunityWe seek a Staff Product Security Engineer to act as a Security Partner for our most valuable products. In this position, you will develop deep product and business insight. You will analyze signals from the security ecosystem and focus them into a few clear priorities. You will convert security capabilities into practical guidance that product and engineering teams can follow. You will operate with significant autonomy, own the security narrative for your portfolio end to end, and grow your influence across the Security organization and the product teams you partner with. This is an outstanding chance to create a meaningful impact!
What you'll DoServe as the single point of contact for a portfolio of Adobe's most complex and highest-value products, owning evaluation and communication of the product's security posture.
Build and maintain deep context on each product's architecture, roadmap, and business drivers. Partner with your Technical Security Portfolio Manager (TSPM) to track assets, ownership, and open findings. Stay focused on the highest-leverage decisions!
Lead security design reviews and threat modeling for major releases, platform-level development, and new products or services, identifying, analyzing, and prioritizing security gaps across architecture, trust boundaries, data flows, and threat actor behavior.
Synthesize security signals, including threat models, vulnerability findings, and customer-identified concerns, into a curated set of top security priorities per product.
Direct the security activities needed for a successful release. These include threat modeling, penetration testing, vulnerability remediation, and paved-road onboarding. Integrate security into the existing release readiness process instead of treating it as a final gate.
Identify systemic risk patterns across your portfolio, build mitigations, paved roads, and reusable security frameworks that address whole classes of risk at scale.
Provide technical leadership and mentor engineers on your team. Share knowledge beyond your portfolio through tech talks, blogs, white papers, and conferences.
Contribute to the Security organization's roadmap through research and proof-of-concepts, and share expertise on emerging threats in AI/ML and agentic systems.
What you need to succeed10+ years in Application or Product Security and a Bachelor’s degree or equivalent experience in Computer Science, Engineering, Cybersecurity, or a related field.
A demonstrable history of building end-to-end security solutions that were adopted across multiple engineering teams, and of translating product context into prioritized, actionable security guidance.
Proven ability to threat model complex, distributed, and AI/ML systems, and to make and defend risk-based decisions under uncertainty.
Solid knowledge of application architectures, cloud infrastructure (AWS, Azure, GCP), containerized environments (Docker, Kubernetes), and secure SDLC practices.
Broad knowledge of vulnerability classes (OWASP Top 10, SANS) and authentication mechanisms (SAML, OAuth/OIDC, zero-trust).
A background in security code review across multiple languages and stacks.
Hands-on experience with standard security tooling (Burp Suite, Kali Linux) and the ability to build or customize tools when needed.
A track record of external technical communication, alongside clear and confident communication with senior leadership and non-technical audiences.
A collaborative approach to working across globally distributed teams and a genuine interest in helping developers ship features securely.
Expected Pay Range:Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets. The U.S. pay range for this positionis $168,200$310,100 annually. Paywithin this range varies by work locationand may also depend on job-related knowledge, skills,and experience. Your recruiter can share more about the specific salary range for the job location during the hiring process.
In New York, the pay range for this position is $214,100 - $310,100
At Adobe, for sales roles starting salaries are expressed as total target compensation (TTC = base + commission), and short-term incentives are in the form of sales commission plans. Non-sales roles starting salaries are expressed as base salary and short-term incentives are in the form of the Annual Incentive Plan (AIP).
In addition, certain roles may be eligible for long-term incentives in the form of a new hire equity award.