Senior Product Security Engineer

Careers Thomsonreuters

Hybrid (2-3 days a week in the office)
Secure-by-design architectures
Secure software development lifecycle
Threat modeling and code reviews
Thomson Reuters is seeking a Senior Product Security Engineer to enhance their Secure Software Development Lifecycle (S-SDLC) by promoting secure architectures and implementing security best practices. The role requires collaboration with cross-functional teams and expertise in threat modeling, security tools, and secure coding across various technologies

Job Summary

  • Promote secure-by-design architectures and implementations across all phases of our S-SDLC.
  • Develop new security capabilities, patterns and automation to integrate security throughout our development practices.
  • We offer comprehensive benefit plans to include flexible vacation, two company-wide Mental Health Days off, access to the Headspace app, retirement savings, tuition reimbursement, employee incentive programs, and resources for mental, physical, and financial wellbeing.

Matching Summary

Match Score: 85

Thomson Reuters is seeking a Senior Product Security Engineer to enhance their Secure Software Development Lifecycle (S-SDLC) by promoting secure architectures and implementing security best practices. The role requires collaboration with cross-functional teams and expertise in threat modeling, security tools, and secure coding across various technologies.

Skills & Requirements

Must-have

  • Secure-by-design architectures
  • Secure Software Development Lifecycle
  • Threat modeling and code reviews
  • SAST, SCA, DAST tools
  • Cryptography, authentication, authorization
  • Web, desktop, mobile, API security
  • Python, GoLang, Java proficiency

Nice-to-have

  • AI-based systems security
  • Cloud provider experience
  • Infrastructure as Code
  • Containerized applications
  • Industry security frameworks
  • Open-source security contributions
  • Security research and publications

Key Requirements

  • Bachelor's degree in computer science or equivalent
  • Experience conducting security-focused threat modeling
  • Experience with security tools and analyzing findings
  • Experience with a major cloud provider
  • Experience with Infrastructure as Code
  • Experience securing AI systems
  • Experience with common authentication standards
  • Experience with container orchestration

Work Rights

Not specified

Tailored Resume

Cover Letter