Principal Product Security Engineer

SoundCloud Ltd

New York, United States
On-site
8+ years product or application security experience
Secure architecture design expertise
Threat modeling and secure code reviews
This role offers a unique opportunity to play a direct, pivotal role in safeguarding SoundCloud's platform against emerging cyber threats

Job Summary

  • This role offers a unique opportunity to play a direct, pivotal role in safeguarding SoundCloud's platform against emerging cyber threats.
  • The successful candidate will collaborate cross-functionally with engineering teams to identify anti-patterns and drive systemic security improvements.
  • Key responsibilities include guiding the safe use of agentic AI in products and automating security within the SDLC and CI/CD pipelines.

Matching Summary

This role offers a unique opportunity to play a direct, pivotal role in safeguarding SoundCloud's platform against emerging cyber threats.

Skills & Requirements

Must-have

  • 8+ years product or application security experience
  • Secure architecture design expertise
  • Threat modeling and secure code reviews
  • DevSecOps tool configuration SAST SCA
  • AWS GCP infrastructure security
  • Bug bounty program management

Nice-to-have

  • Generative AI security knowledge EU AI Act
  • Data governance experience
  • SQL data analysis for vulnerability scope
  • GDPR CCPA SOC2 NIS2 framework familiarity
  • Internal tooling improvement initiatives

Key Requirements

  • 8+ years of product or application security experience
  • Deep expertise in designing secure architecture
  • Experience managing bug bounty programs
  • Familiarity with AWS, GCP, Terraform, and CloudFormation

Work Rights

Not specified

Tailored Resume

Cover Letter