Featured Job

Staff Product Security Engineer

San Francisco, CA Full-time Hybrid $200k — $280k per year 09/12/2026 Job ID: 000197
Apply Now
GCP Kubernetes Python Java CEH

Summary

What you’ll impact

The Staff Product Security Engineer at our company will design, build, and operationalize security controls and infrastructure to protect the organization's products and services. Working closely with infrastructure, product, and engineering teams, the role focuses on threat detection, incident response, and embedding security throughout the development lifecycle.

Responsibilities

What you'll do

  • Create and build security controls that strengthen Airwallex’s ability to scale securely.
  • Design and deliver security improvements across applications, software, and services.
  • Develop and operationalise detection strategies and response workflows that improve the speed and effectiveness of incident response.
  • Build and enhance secure systems through strong integration, testing, operations, and maintenance practices.
  • Leverage and analyse endpoint, network, and cloud telemetry to identify, investigate, and mitigate threats.
  • Design, implement, and maintain cybersecurity infrastructure that improves resilience across the Airwallex environment.
  • Investigate, contain, and respond to cybersecurity incidents to reduce risk and strengthen defensive capability.
  • Assess and improve system and network security by identifying vulnerabilities, configuration issues, and remediation opportunities.
  • Collect and analyse threat intelligence and forensic evidence to better understand, track, and disrupt threats.
  • Conduct and support defensive operations, tactical forensics, and threat hunting to strengthen security outcomes.
  • Partner with teams across Airwallex to embed security into new and existing applications, software, and services and drive continuous improvement.

Requirements

What you’ll bring

  • 8+ years working in a security engineering or incident response role within a tech company
  • In depth expertise with at least one major cloud platform
  • Strong knowledge of common software development tools and infrastructure, including CI/CD tooling and pipelines
  • Comprehensive understanding of common attacker tools and techniques, how they can be detected and prevented, and ability to respond to incidents with high depth and quality of investigation
  • Strong communication skills with the ability to explain technical security and software concepts to a non-technical audience
  • A passion for solving the complex challenges of high-growth startups
  • Self motivation and drive to learn new skills, or dive deeper into existing skills
  • Bachelor's degree in Cybersecurity, Computer Science or similar
  • Recognised training or cybersecurity certifications (eg OSCP, GIAC, CEH)
  • Strong experience with Splunk and other common security monitoring tools
  • Past DevOps/SRE experience with Kubernetes
  • Experience with GCP or Alibaba Cloud (with or without certification)
  • Experience with Okta, GSuite, and cloud-based VPN services
  • Experience with Python, Java/Kotlin
  • Published articles, journals or blogs related to cybersecurity

Ready to Move Forward?

Apply now and our recruiting team will reach out with next steps, interview guidance, and client insights tailored to this role.