Product Security Engineer Jobs
Product Security Engineer jobs are open across fintech, healthtech, enterprise software, and defense contracting, from new-grad associate to principal and staff levels, with specializations in threat modeling, vulnerability management, and secure SDLC. Find a role that fits from the openings below and apply directly.
Find JobsLooking for remote work? View remote product security engineer jobs →Overview
Showing 5 of 248+ Product Security Engineer jobs











At Bose Corporation, we believe sound is the most powerful force on earth — and for over 60 years, we have been a company built on innovation, excellence, and independence. Privately owned, fiercely customer-focused, and driven by our values, we continue to lead industries and transform lives through sound.
Today, Bose Corporation is entering an exciting new era. Across multiple global Business Units and Global Functions, we are shaping the future of audio technology, automotive, luxury, and premium experiences. We invite you to join us in this transformation.
Job Description
Join the future of product security at Bose
At Bose, security and stability are the two pillars of our product innovation. We are seeking a Security Engineer to support the product security initiatives of our growing Audio Technology business. You will play a central role in securing Bose's proprietary audio technologies. As Bose continues to innovate, there is a constant need to protect our intellectual property and embed security throughout the development lifecycle. The ideal candidate has extensive experience in secure software development within a fast-paced, agile product environment. Join our Product Security team to help power the next wave of innovation at Bose.
Principal Duties and Responsibilities
As a Security Engineer, you will work as an integral part of the Product Security team to embed security practices into every aspect of the secure development pipeline from concept through release of licensed IP. Our development philosophy is to enable developers to write secure code faster.
Responsibilities for this job include:
Architecting and implementing protections for intellectual property, including anti-reverse engineering, secure firmware distribution, and debug interface lockdown
Collaborating with cross-functional teams including product firmware, Audio Technology, DevOps, cloud engineering, manufacturing, and program management
Architecting and designing products to guarantee secure practices, data confidentiality, and system integrity
Engineering and implementing ARM TrustZone secure applets, implementing a cryptographic IoT device identity and root of trust
Streamlining secrets, key management, cryptography, and credential management
Defining security requirements and conducting security assessments
Implementing firmware and intellectual property (IP) protection mechanisms to safeguard proprietary software and embedded technologies
Performing obfuscation of firmware and algorithm binaries to protect against reverse engineering and unauthorized modification
Integrating firmware encryption, digital signing, and integrity verification into embedded software and secure update processes
Ensure compliance with applicable security regulations and standards (e.g., EU CRA, ETSI EN 303 645, NIST) and support audits and certifications
Advising engineering peers on security matters in the form of architectural guidance, code/design reviews, and solution development
Improving vulnerability discovery, patching processes, and leading responses to external security threats
Performing security testing on products and supporting security fix implementations
Designing and maintaining private X.509 and JWK chains of trust used for validating the authenticity of portable audio devices
Stay up-to-date on security news, relevant technologies, user groups, industry trends, and emerging security opportunities
Be a stakeholder on interdisciplinary teams advocating for security
Qualifications
Experience delivering licensed software that runs on customer products and systems where you do not trust the system it runs on.
Hands-on experience implementing firmware protection mechanisms, including secure boot, firmware encryption, digital signing, secure firmware distribution, and anti-tamper controls
Experience implementing binary obfuscation and anti-reverse engineering techniques for embedded firmware or proprietary algorithm binaries
Experience implementing IP protection and anti-tamper mechanisms in embedded systems, including secure boot enforcement, firmware encryption, and hardware debug port protection
Experience developing for embedded systems and Linux platforms in C/C++.
Strong knowledge of cryptographic theory and engineering, including encryption, hashing, signing, digital certificates, and hardware security modules (HSMs)
Experience collaborating with cross-functional engineering teams to integrate security controls into embedded products throughout the development lifecycle
Bachelor's degree in Computer Science or equivalent. A master's degree is beneficial
6 or more years of industry experience working in firmware development with a focus on security. An advanced degree can contribute toward experience
Optional Qualifications that would be Nice to Have
Experience aligning embedded product security practices with regulatory and compliance requirements (EU CRA, NIST, ISO 27001, IEC 62443, or similar frameworks)
Building internal security applications with cryptographic guarantees such as firmware encryption and signing, custom developer enablement tools, secure asset provisioning, etc
Experience developing for mobile applications (IOS or Android)
Experience mitigating dependency or code-level defects including memory management issues, input validation, timing attacks, broken authentication, and side-channel attacks
What you can expect at Bose
Working with wicked smart, super cool people
A business commitment to security, stability, and quality
Competitive salary, benefits, and pension
A culture of excellence, respect, opportunity and passion for innovation
Product Security Engineer Jobs by Experience Level
Top Cities Hiring Product Security Engineers
Explore product security engineer openings in the cities hiring most right now.
See All 248+ Product Security Engineer Jobs
Find roles that match your experience and apply in just a few clicks.
Find JobsProduct Security Engineer Job Market
Who's Hiring



Top Industries Hiring
- Technology & Software60
- Banking & Financial Services8
- Artificial Intelligence6
- Electronics & Hardware5
- Agriculture & Farming4
What Employers Look For
The qualifications that appear most often in product security engineer jobs.
- Bachelor's degree in computer science, information security, or a related technical field
- Hands-on experience with threat modeling frameworks such as STRIDE or PASTA
- Proficiency in at least one scripting or programming language, commonly Python or Go
- Familiarity with OWASP Top 10, secure SDLC practices, and code review processes
- Experience with cloud security controls across AWS, Azure, or Google Cloud Platform
- Relevant certification such as CISSP, CSSLP, CEH, or an Offensive Security credential
Tips for Your Product Security Engineer Job Search
Align your resume to the product lifecycle
Recruiters for product security engineers scan for where you fit in development: design reviews, code audits, or post-release vulnerability triage. Label each role on your resume with the lifecycle stage you owned, not just the tools you used.
Certify before targeting enterprise roles
Large financial and healthcare employers filter applicants by certifications before a human reads the resume. CSSLP or OSCP on your profile moves you past automated screens for roles that list them as preferred rather than required.
Apply early to roles that fit
Migrate Mate lists product security engineer openings from across the United States in one place, so you can find roles that match and apply directly to each listing.
Target job descriptions with your exact stack
Search for openings that name the languages and frameworks you've actually tested or reviewed: Kubernetes misconfigurations, iOS entitlements, or GraphQL injection surfaces. Specific stack alignment gets interviews that generic 'application security' searches miss.
Prepare a threat model walkthrough for interviews
Most product security engineer technical screens include a live threat modeling exercise on a system diagram. Practice narrating a STRIDE or attack tree analysis on a simple web app so your reasoning is audible, not just written on a whiteboard.
Negotiate scope, not just salary
After an offer, ask what percentage of time goes to proactive design reviews versus reactive incident response. Roles skewed heavily toward incident triage burn out quickly. Clarifying this before you accept shapes your day-to-day more than most other offer terms.
Product Security Engineer Jobs: Frequently Asked Questions
Which companies are hiring the most product security engineers?
The companies hiring the most product security engineers right now include Google, Boeing, and CrowdStrike, with the largest share of openings in California, New York, and Washington, based on current listings on Migrate Mate as of August 2026. Demand is highest at companies shipping consumer-facing software or handling regulated data at scale.
How many product security engineer jobs are remote?
About 70% of product security engineer openings are fully remote or hybrid as of August 2026, making it one of the more location-flexible security disciplines. Roles focused on code review, vulnerability program management, and security tooling are most commonly offered remotely, while those tied to hardware or on-site development environments tend to require in-person presence.
How do you become a product security engineer?
Start by building a foundation in software development alongside security concepts, since the role requires reading and reasoning about code. Develop hands-on skills in threat modeling and common vulnerability classes through personal projects or bug bounty programs. Earning a security certification and contributing to open-source security tooling strengthens your profile before applying to entry-level or associate roles.
Can you get a product security engineer job with little experience?
Yes, associate and junior product security engineer roles exist specifically for candidates transitioning from software development or general security operations. Employers at this level look for demonstrated understanding of secure coding principles, a completed threat model on a personal project, and familiarity with at least one major vulnerability scanner, rather than years of direct product security experience.
What does the product security engineer interview process look like?
Most processes include a recruiter screen, a technical phone interview covering vulnerability classes and secure design principles, and a live exercise where you threat model a provided system or review a short code sample for security flaws. A final round typically involves a panel with engineering and security leadership focused on how you communicate risk to non-security stakeholders and prioritize remediation.
Where can I find and apply to product security engineer jobs?
You can find and apply to product security engineer jobs on Migrate Mate, which lists current openings from companies across the United States. Search the listings to find roles that match your experience and specialization, then apply directly to each one that fits.
See All 248+ Product Security Engineer Jobs
Find roles that match your experience and apply in just a few clicks.
Find Jobs