Staff Product Security Engineer

September 7

Apply Now
Logo of Databricks

Databricks

Artificial Intelligence • Enterprise • SaaS

Databricks is a data and AI company that provides a unified platform for data engineering, machine learning, and analytics. It focuses on optimizing big data processing and helps organizations leverage Apache Spark to deliver deeper insights and powerful data-driven applications. Databricks also offers robust tools and seamless integration for machine learning operations.

1001 - 5000 employees

Founded 2013

🤖 Artificial Intelligence

🏢 Enterprise

☁️ SaaS

💰 $1.6G Series H on 2021-08

📋 Description

• Full SDLC Support for new product features being developed in ENG and non-ENG teams. This would include Threat Modeling, Design Review, Manual Code Review, Exploit writing, etc. • Work with other security teams to provide support for Incident Response and Vulnerability Response as and when needed. • Work with the results of SAST tools to help evaluate and identify false positives and file defects for real issues. • Work on DAST tools and related automation for auto-assessment and defect filing. • Maintain the automation framework and add new features as needed to support different security compliances that Databricks may want to get into – FedRamp, PCI, HIPPA, etc. • Prioritize security from a risk management perspective, rather than an absolute textbook version. • Help develop and implement security processes to improve the overall productivity of the product security organization and the SDLC process in general

🎯 Requirements

• 3-10 years Experience with the Threat Modeling process and ability to find design problems based on a block diagram of data flow. • Solid understanding on at least two of the following domains - Web Security, Cloud Security, Systems Security and Applied Cryptography. • Proficient with one or more of Programming languages ( Python/Java/Scala/JavaScript) and ability to read code to identify security defects. • Strong skills on scripting and automation on exploits • Fuzzing skills are good to have. • Exploit writing skills is a positive and greatly required.

🏖️ Benefits

• At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region, please visit https://www.mybenefitsnow.com/databricks

Apply Now

Similar Jobs

September 6

Synack, Inc.

201 - 500

Lead information security compliance for Synack’s PTaaS platform; maintain FedRAMP SSPs, audits, POAMs, and collaborate with engineering on DevSecOps.

Azure

Cloud

SDLC

September 3

Enterprise Security Architect designing and implementing secure architectures for Coupa's spend-management AI platform. Leading security assessments, standards, and fraud-prevention efforts.

AWS

Azure

Cloud

Cyber Security

DNS

Firewalls

Google Cloud Platform

TCP/IP

September 3

IR Incident Commander leading major cyber incident response at Sophos, the MDR provider. Coordinating customers and internal teams to restore operations quickly.

Cloud

Cyber Security

September 2

Principal Consultant leading large security engineering projects for TEECOM, a building technology consulting firm. Mentoring staff, managing clients, and delivering multi-discipline designs.

C++

PMP

September 2

Principal Product Manager shaping LastPass identity and security products and secure access experiences. Driving strategy, cross-functional execution, and customer-focused roadmap.

Cyber Security

Built by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or support@remoterocketship.com