SlipstreamJobsFresh Startup & VC-Backed Jobs

Product Security Engineer

WorkOS - Remote - Remote - posted 2026-09-23

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

WorkOS is a $2B Series C-funded developer platform that provides enterprise-ready authentication, SSO, directory sync, and identity infrastructure. The company powers critical security features for leading AI companies including OpenAI, Cursor, and Perplexity. The Security team is responsible for protecting the data and identities of hundreds of millions of users and operates with a strong engineering mindset, combining hands-on system attack/defense experience with modern security practices. As a Product Security Engineer, you will lead secure design efforts across the engineering organization, partnering with teams on secure design reviews and code audits to identify and prioritize risks early in the product lifecycle. You'll develop "paved paths" that systematically reduce risk and make secure development the easiest path for engineers. You will conduct penetration tests and code audits on new and existing products from an adversarial perspective, and improve security tooling by integrating and enhancing static analysis, supply chain security, and vulnerability management capabilities across engineering pipelines. Additional responsibilities include operating the responsible disclosure program (automation, validation, remediation coordination), writing and shipping code to remediate vulnerabilities in production systems, and directly engaging with customers on security-related questions and concerns. The role emphasizes pragmatic risk prioritization, deep product understanding, and building trust with engineering teams by making security frictionless. You will leverage AI and automation to scale security efforts and reduce toil. REQUIREMENTS: - 5+ years of experience in security engineering or security-focused software engineering roles - Ability to execute across a wide range of security functions (assessments, penetration testing, responsible disclosure, tooling integration, etc.) - Familiarity with and experience using common industry security tooling - Proven ability to identify vulnerabilities in software, demonstrated through CVEs, bug bounty disclosures, blog posts, or prior work experience - Strong written and verbal communication skills, particularly in partnering with engineering teams - Comfortable reading and writing code; able to effectively leverage AI during development - Bonus: Experience in authentication and identity domain - Bonus: Experience writing production-level code, especially developing security features

About WorkOS

SaaS / Enterprise Software — developer platform for enterprise-ready authentication, SSO, and directory sync.

Similar roles