BeyondTrust

Cybersecurity

SrProductSecurityEngineer

CA$135–195k ~AI est. Toronto, Ontario, Canada
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Senior candidates.

The Brief

“Sr Product Security Engineer at BeyondTrust. Skills: Product Security, DevSecOps, Security Tooling, Automation. Build product security tooling pipeline. Maintain product security tooling pipeline”

What You'll Achieve.

Comprehensive security tooling coverage; Automated reviews handle majority; Decrease false positive rates; Fast, accurate, integrated tooling experience; Reusable automation adopted

Industry & Context.

Cybersecurity
Problems you'll solve

Troubleshooting; Root cause analysis

What They're Looking For.

Must Have

4+ years in Application Security, 4+ years in Product Security, 4+ years in DevSecOps, 4+ years in Security Engineering, Hands-on experience building security tooling, Hands-on experience operating security tooling, Experience implementing SAST tools, Experience implementing DAST tools, Experience implementing SCA tools, Experience implementing secret scanning tools, Experience tuning SAST tools, Experience tuning DAST tools, Experience tuning SCA tools, Experience tuning secret scanning tools, Experience with GitHub Advanced Security, Experience with CodeQL, Experience with Dependabot, Experience with AI-powered security tooling, Experience with Claude Code Security, Experience with Codex Security, Experience with LLM-based code analysis, Understanding CI/CD pipeline architecture, Experience building automation workflows, Experience with scripting, Experience with pipeline configuration, Experience with policy-as-code, Experience with webhook integrations, Experience with workflow orchestration, Familiarity with container security scanning tools, Familiarity with Wiz CLI, Familiarity with Trivy, Familiarity with Snyk Container, Familiarity with cloud security fundamentals, Understand common vulnerability classes, Tune tooling, Triage findings, Credible conversations with engineers, Automation-first mindset, Experience with GitHub Advanced Security at scale, Experience with CodeQL custom queries, Experience with secret scanning custom patterns, Experience with organization-wide rollout, Experience operating Wiz CLI, Experience integrating cloud/container security scanning, Experience supporting product incident response, Experience supporting security incident investigation, Familiarity with policy-as-code frameworks, Familiarity with OPA/Rego, Familiarity with Kyverno, Background in securing endpoint technologies, Background in securing identity systems, Background in securing enterprise security platforms, Experience building developer enablement programs, Experience building security documentation, Experience building self-service security tooling, Cloud security experience across AWS, Cloud security experience across Azure, Cloud security experience across Kubernetes

Nice to Have

AWS preferred, Security clearance

What You'll Do.

Build product security tooling pipeline

Maintain product security tooling pipeline

Integrate security tooling across SDLC

Implement Claude Code Security

Implement Codex Security

Implement GitHub Advanced Security

Tune Claude Code Security

Tune GitHub Advanced Security

Improve security tools

Design automated security review workflows

Operate automated security review workflows

Automate initial review triage

Automate risk classification

Automate recommendation generation

Integrate security tooling into workflows

Integrate tooling into GitHub PRs

Integrate tooling into CI/CD pipelines

Integrate tooling into IDE plugins

Integrate tooling into developer dashboards

Reduce false positives

Build automation with LLM platforms

Automate code review triage

Automate vulnerability pattern detection

Automate fix suggestion generation

Automate policy-as-code enforcement

Automate security review summarization

Contribute reusable prompts

Contribute reusable skills

Contribute reusable plugins

Support product incident response

Investigate security incidents

Scope security incident impact

Coordinate emergency fixes

Contribute to root cause analysis

Contribute to post-incident improvements

Work with Security Testers

Work with engineering teams

Answer security tooling questions

Troubleshoot security tooling

How You'll Work.

Team & Collaboration

Partner with Security Testers; Partner with Architects; Partner with TPM; Partner with engineering teams; Collaborate with Security Testers; Collaborate with Architects; Collaborate with TPM; Collaborate with engineering teams; Work with Security Testers; Work with Architects; Work with TPM; Work with engineering teams; Communicate with engineers

Communication Scope

Communicate effectively

Process & Methodology

TPM, Tracking findings, Reporting findings

Full Job Description

BeyondTrust is a place where you can bring your purpose to life through the work that you do, creating a safer world through our cybersecurity SaaS portfolio. Our culture of flexibility, trust, and continual learning means you will be recognized for your growth, and for the impact you make on our success. You will be surrounded by people who challenge, support, and inspire you to be the best version of yourself. The Role We're hiring a Senior Product Security Engineer to build and operate the modern security tooling pipeline that underpins everything our Product Security team does. You'll establish and maintain the SDLC security infrastructure using Claude Code Security, Codex Security, GitHub Advanced Security, Wiz CLI, and integrated tooling that gives engineering teams fast, reliable security feedback on every commit, every PR, and every release. You bring an automation-first mindset. When you see a manual security review process, your instinct is to build a workflow that handles the repeatable parts and surfaces only the decisions that need a human. You'll design and operate product security reviews with human-in-the-loop checkpoints, ensuring coverage scales with the engineering organization without becoming a bottleneck. You'll be a trusted partner to engineers. That means your tooling works reliably, your findings are accurate, your integrations respect their workflow, and when something breaks or creates noise, you fix it fast. You'll partner closely with Security Testers, Architects, the TPM, and engineering teams across the product portfolio. You'll also support product incident response when security issues arise, working alongside the broader Product Security team to investigate, scope, and remediate. What You’ll Do SDLC Security Pipeline Build and maintain the product security tooling pipeline integrated across the software development lifecycle. Implement and tune Claude Code Security, Codex Security, GitHub Advanced Security (code scanning, secret sca

Free ATS check

Applying for this Sr Product Security Engineer role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Greenhouse

  • Create a Greenhouse profile before applying — it saves time across multiple applications.
  • Upload your resume as a PDF; the parser handles it better than Word.
  • Answer all knockout questions carefully — wrong answers auto-reject before a human sees you.
  • Enable email notifications to track application status in real time.

ANONYMOUS · UNFILTERED

What do employees actually say about BeyondTrust?

Real rants from real employees. Read before you apply.

Read Company Rants →