SlipstreamJobsFresh Startup & VC-Backed Jobs

Product Security Engineer

YipitData - Remote - Remote - posted 2026-08-26

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

YipitData is a unicorn-valued market research and analytics firm ($1B+ valuation, $475M Series C from Carlyle Group) that analyzes billions of alternative data points to deliver strategic intelligence across software, AI, cloud, e-commerce, ridesharing, and payments sectors. The company serves top investment funds and Fortune 500 companies globally with offices in the US, APAC, and India. You will join as a Product Security Engineer to embed security throughout the product development lifecycle. This is a hands-on role partnering closely with Engineering and Product teams from ideation through production. Key responsibilities include: - Lead threat modeling and security design reviews early in product development to identify and prevent vulnerabilities before they reach production - Analyze application architecture, APIs, authentication, authorization, data flows, cloud services, and third-party integrations to understand attack surfaces - Discover, validate, and prioritize vulnerabilities, distinguishing genuine risks from false positives - Collaborate with engineers to design practical remediation plans that balance security with development velocity - Own and improve security tooling across the development pipeline (SAST, DAST, dependency scanning, secret scanning) - Tune security tools to reduce alert fatigue and deliver actionable findings - Build automation to scale Product Security as the company grows and adopts AI - Develop security standards, design patterns, coding guidance, and documentation that engineers will actually use - Lead incident response for product security issues, from investigation through root cause analysis and remediation - Serve as a trusted security partner to Engineering and Product leadership - Anticipate emerging risks in cloud and AI-enabled products The role is fully remote across the US with flexibility on work hours, though most team members work East Coast hours. Headquarters is in NYC. This is an individual contributor role for someone with deep application security expertise and the ability to influence engineering practices through collaboration rather than mandate.

Similar roles