Jobs and Careers
SO

Senior Product Security Engineer

SoundCloud
United Statesfull_timeVerifiedPosted 30 Jul 2025
💰 $180,000/yr($140,000/yr$180,000/yr)

About the role

SoundCloud empowers artists and fans to connect and share through music. Founded in 2007, SoundCloud is an artist-first platform empowering artists to build and grow their careers by providing them with the most progressive tools, services, and resources. With over 400+ million tracks from 40 million artists, the future of music is SoundCloud.   We are looking for a ProdSec engineer to join our Security team!
As a Product Security Engineer, you will collaborate cross-functionally with engineering teams to identify and address potential vulnerabilities and implement robust security measures in our products and services. You will advocate and shape security best practices across SoundCloud’s Engineering, Product, and Design (“EPD”) organization. This position has a unique opportunity to play a direct and pivotal role in safeguarding our products against emerging cyber threats to our platform, artists and creators, and listeners and fans.

Key Responsibilities:

  • Conduct code reviews and threat modeling exercises to identify and remediate potential security vulnerabilities
  • Drive efforts to automate the security of our Software Development Lifecycle
  • Define, implement, and oversee processes and policies in our Vulnerability Management Program
  • Triage and drive to remediation submissions from our external bug bounty program
  • Participate in our security incident response process
  • Make recommendations to product and teams about how to improve the consumer security of our platform
  • Identify security anti-patterns in our codebases and architecture, and make recommendations to engineering on how to improve them
  • Help guide our Engineering and Product teams around the safe and responsible use of Generative AI in our products and SDLCs.
  • Promote and implement security best practices through educational initiatives, such as CTFs and technical talks
  • Improve internal tooling, processes, and documentation
  • Mentor and onboard new team members

Experience and Background:

  • 5+ years of product or application security experience, or other relevant software engineering experience
  • Enthusiasm about collaborating with engineering and product teams to proactively address security issues in products
  • Experience conducting threat modeling exercises and secure code reviews
  • Experience configuring DevSecOps tools (e.g. SAST, SCA, Secret Scanning)
  • Experience managing bug bounty programs
  • Familiarity with languages such as Javascript, Go, Ruby, Python, or Scala
  • Experience working with cloud providers (AWS, GCP) and Developer SaaS solutions (GitHub, Jira)
  • Familiarity with IaC tools such as Terraform
  • Ability to effectively communicate risk to technical and non-technical audiences
  • Experience with data analysis (SQL) in order to determine scope and impact of vulnerabilities
  • Knowledge of industry-standard security frameworks and regulations, such as GDPR, CCPA, SOC2, NIS2, and OWASP is a plus
  • Experience with vulnerability management is a plus
  • Experience threat modelling Generative AI applications & use-cases in the context of the EU AI Act is a plus 

The salary range for this role is $140,000 - $180,000 annually. The final salary offered will be determined based on relative experience, skills, internal equity, and location. We also offer a generous total rewards program - read more about additional benefits and perks below!

About us:

  • We are a multinational company with offices in the US (New York and Los Angeles), Germany (Berlin), and the UK (London)
  • We provide a flexible work culture that offers the opportunity to collaborate and connect in person at our offices as well as accommodating work from home
  • We are deeply committed to ensuring diversity, equity and inclusion at all levels of our organization and fostering a community where everyone’s voice, perspective and experience is respected and heard
  • We believe a strong team is made by investing in employees through mentorship, workshops and enrichment opportunities

Benefits:

  • Comprehensive health benefits including medical, dental, and vision plans, as well as mental health resources
  • Robust 401k

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

SoundCloud

View company profile →