Staff Product Security Engineer

September 10

Apply Now
Logo of Databricks

Databricks

Artificial Intelligence • Enterprise • SaaS

Databricks is a data and AI company that provides a unified platform for data engineering, machine learning, and analytics. It focuses on optimizing big data processing and helps organizations leverage Apache Spark to deliver deeper insights and powerful data-driven applications. Databricks also offers robust tools and seamless integration for machine learning operations.

1001 - 5000 employees

Founded 2013

🤖 Artificial Intelligence

🏢 Enterprise

☁️ SaaS

💰 $1.6G Series H on 2021-08

📋 Description

• Manage SDLC functions for features and products within Databricks, including security design reviews, threat models, manual code reviews, exploit writing and exploit chain creation. • Full SDLC support for new product features being developed in ENG and non-ENG teams (Threat Modeling, Design Review, Manual Code Review, Exploit writing). • Work with other security teams to provide support for Incident Response and Vulnerability Response programs. • Work with the results of SAST tools to help evaluate and identify false positives and file defects for real issues. • Work on DAST tools and related automation for auto-assessment and defect filing. • Maintain the automation framework and add new features as needed to support different security compliances (FedRamp, PCI, HIPPA). • Prioritize security from a risk management perspective rather than an absolute textbook version. • Help develop and implement security processes to improve the overall productivity of the product security organization and the SDLC process in general. • Collaborate with a global team spread across the US and EMEA.

🎯 Requirements

• 5-10 years Experience with the Threat Modeling process and ability to find design problems based on a block diagram of data flow. • Solid understanding on at least two of the following domains - Web Security, Cloud Security, Systems Security and Applied Cryptography. • Proficient with one or more of Programming languages ( Python/Java/Scala/JavaScript) and ability to read code to identify security defects. • Strong skills on scripting and automation on exploits. • Fuzzing skills are good to have. • Exploit writing skills is a positive and greatly required.

🏖️ Benefits

• At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region, please visit https://www.mybenefitsnow.com/databricks

Apply Now

Similar Jobs

July 16

Appspace

201 - 500

🏢 Enterprise

⚡ Productivity

☁️ SaaS

Join Appspace to lead cloud security initiatives and transform client security practices.

🇬🇧 United Kingdom – Remote

💰 Private Equity Round on 2019-12

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

🇬🇧 UK Skilled Worker Visa Sponsor

June 23

Dark Matter Labs

51 - 200

🔒 Cybersecurity

🤖 Artificial Intelligence

🏢 Enterprise

Join Matter Labs as Head of Infrastructure Security for zkSync, focusing on security strategy

🇬🇧 United Kingdom – Remote

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

Developed by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or support@remoterocketship.com