Supabase

Security

ProductSecurityEngineer

Remote FULL TIME Remote Friendly
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Mid+ candidates.

The Brief

“Product Security Engineer at Supabase. Skills: Product security, Application security, Security engineering. Identify and close gaps. Conduct threat modeling”

What You'll Achieve.

Strengthen security built into products; Strengthen security built into platform; Strengthen security built into engineering workflows; Proactively reduce risk; Ship securely by default; Improve security posture without becoming a blocker; Scale to millions

Industry & Context.

Security
Problems you'll solve

Solving real-world problems; Navigating ambiguity

Eligibility Requirements

Participate in security on-call rotations

What They're Looking For.

Must Have

Product security experience, Application security experience, Security engineering experience, Experience with vulnerability triage, Experience with bug bounty programs, Experience with responsible disclosure, Experience with security incident response, Experience participating in security on-call rotation

Nice to Have

Experience with cloud-native products, Experience with developer tools, Experience with SaaS products, Experience with platform products, Experience with infrastructure products, Experience with Postgres, Experience with Kubernetes, Interest in building security guardrails

What You'll Do.

Identify and close gaps

Conduct threat modeling

Conduct secure design reviews

Provide product-focused security expertise

Shape a modern security program

Mature security thinking

Prioritize security efforts

Improve security posture

Support security incident response

Help triage incidents

Investigate incidents

Coordinate remediation

Participate in security on-call

Respond to urgent events

Manage bug bounty programs

Mature vulnerability disclosure processes

How You'll Work.

Team & Collaboration

Work closely with software engineers; Work closely with infrastructure teams; Work closely with technical leadership; Partner closely with engineering teams; Coordinate with engineering teams

Communication Scope

Communicate clearly across technical and non-technical audiences; Written, asynchronous communication

Full Job Description

ABOUT THE ROLE We’re looking for a Product Security Engineer to join our team and help strengthen how security is built into Supabase’s products, platform, and engineering workflows as we continue to scale. You’ll work closely with software engineers, infrastructure teams, and technical leadership, helping us proactively reduce risk earlier in the development lifecycle and ship securely by default. This role is ideal for someone who thrives in async, fast-paced environments and is excited about building developer tools that scale to millions. Success in this role means improving the security posture of the product without becoming a blocker to speed, autonomy, or builder velocity. WHAT YOU’LL BE RESPONSIBLE FOR In this role, you’ll: - Identify and close gaps across application security, secure design review, and vulnerability management. - Conduct threat modeling, secure design reviews, and code reviews to identify practical remediation paths. - Partner closely with engineering teams to provide product-focused security expertise and shape a modern security program. - Mature how we think about security in a developer-first environment, balancing pragmatism with strong technical judgment. - Distinguish between theoretical risk and material business risk to prioritize security efforts effectively. - Improve security posture through scalable mechanisms like tooling, automation, secure defaults, and developer-friendly guardrails. - Support security incident response by helping triage, investigate, and coordinate remediation for product and platform security issues. - Participate in security on-call rotations, helping respond to urgent security events with clear judgment and calm execution. - Help manage and mature our bug bounty and vulnerability disclosure processes, including triage, validation, prioritization, and coordination with engineering teams. YOU MIGHT BE A GOOD FIT IF YOU - Have strong experience in product security, application security, or security engineer

Free ATS check

Applying for this Product Security Engineer role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Ashby

  • Ashby is a fast modern ATS — most applications take under 3 minutes.
  • The resume parser is strong; verify parsed experience dates and job titles.
  • Custom screening questions are often scored algorithmically — answer completely.
  • Location field affects geo-based screening; use your actual metro area.

ANONYMOUS · UNFILTERED

What do employees actually say about Supabase?

Real rants from real employees. Read before you apply.

Read Company Rants →