
Senior Product Security Engineer (Generalist)
Astranis
RemoteFull timeMid levelPosted today
Apply with JobAssistAbout the role
- As a Senior Product Security Engineer, you will help secure both the software and embedded components that power our systems
- This hybrid role focuses primarily on product/application security while contributing to embedded security reviews where software and hardware intersect
- You will guide secure design, evaluate critical components, and partner closely with engineering teams across the stack to ensure our products are secure by default. This role does not expect deep hardware hacking but requires a broad security mindset to provide expertise where embedded systems and software meet
- Lead threat modeling, architecture reviews, and design-level risk assessments for both application and embedded system components
- Conduct secure code reviews for critical modules in Python and C/C++, supporting secure coding practices across all engineering teams
- Evaluate cryptographic usage, authentication/authorization flows, and protocol security across the stack
- Identify and prioritize vulnerabilities in software and firmware; partner with developers on remediation and mitigation strategies
- Participate in security assessments of embedded devices, especially where software interfaces with hardware
- Provide security input on high-level aspects of secure boot, firmware update integrity, and device identity mechanisms
- Partner with software, firmware, hardware, and systems teams to implement consistent, secure solutions
Benefits
- An equity stake in the company
- Comprehensive medical, dental, and vision insurance
- Unlimited vacation days
- Healthy, delicious, free lunch catered in every day
- Complementary OneMedical membership
- Great office chairs, stand-up desks, and a machine shop
- Reimbursement to spend on commuting from outside SF
- Generous, fully-paid parental leave
Qualifications
- Strong knowledge of security best practices, applied cryptography, and security frameworks
- Experience with secure architecture design and threat modeling for complex systems (including both web services and IoT/embedded devices)
- Software development and security expertise in both high-level languages (e.g., Python) and low-level languages (e.g., C, C++)
- Proven ability in auditing code for security flaws across different technology stacks
- Ability to work collaboratively within a multi-disciplinary team environment
- 5+ years of experience in software engineering with a focus on security
- Strong communication skills, with the ability to discuss security with both software and hardware engineers
- Experience with security best practices for web applications (OWASP Top 10) and familiarity with embedded security concepts (e.g., secure boot, JTAG, UART)
- Strong investigative, analytical problem-solving skills and attention to detail
Millions of jobs, with real people getting hired every day
20,000+
New jobs added daily7,000,000+
Verified job listings500,000+
Tailored applications submittedFAQ
Questions, answered
Click "Apply with JobAssist" – we tailor your resume and application to this role and submit it for your approval.
Yes. This role at Astranis was screened before publishing – we confirmed the employer before listing it.
The employer didn't disclose a salary range for this listing. JobAssist shows pay whenever it's available.
This position can be done from anywhere, with no in-office requirement.
Yes – every application is tailored from your profile and this job's requirements, and you can review and edit before it's sent.