Staff Product Security Engineer, Reviews at Okta | CA | Rezi

Staff Product Security Engineer, Reviews at Okta

Staff Product Security Engineer, Reviews

Okta · CA

5 days ago

Staff Product Security Engineer, Reviews

Okta · CA

6 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now
Resume preview

Tailor your resume to this Staff Product Security Engineer, Reviews role.

Rezi rewrites your resume against Okta's job description. Free.

Resume score gauge reading 58 out of 100

Don't guess if your resume is good enough.

See how it scores against the Staff Product Security Engineer, Reviews posting at Okta — free, in seconds.

About the Role

Okta is building the trusted, neutral infrastructure to enable organizations to safely embrace AI. This role is an opportunity to do career-defining work in safeguarding Okta’s products by conducting comprehensive security reviews, guiding engineering teams in secure development practices, and handling externally reported vulnerabilities.

Responsibilities

  • Conduct security reviews, including design reviews, threat modeling, and penetration testing of new features and major changes.
  • Perform manual secure code reviews across multiple programming languages.
  • Identify and mitigate security vulnerabilities, providing clear guidance to engineering teams.
  • Lead product security incidents, assess risks, and drive remediation efforts.
  • Develop security tools and automation to improve vulnerability detection and assessment.
  • Mentor junior engineers and provide guidance to non-security staff on secure development practices.
  • Represent Okta externally through security research, conference talks, and publications.

Requirements

  • Deep technical understanding of web applications, backend services, penetration testing methodologies, and secure design principles.
  • Expertise in identifying OWASP Top 10 / CWE Top 25 vulnerabilities through manual code review.
  • Strong experience in penetration testing and secure development practices.
  • Deep technical background in assessing Large Language Models (LLMs) and securing AI-integrated software architectures.
  • Proficiency in multiple programming languages (e.g., Java, Go, Python, C/C++).
  • Deep understanding of authentication & authorization protocols (OIDC, SAML, OAuth).
  • Strong communication skills to explain risks and remediation to developers and leadership.
  • Ability to automate security testing using LLMs and scripting (Python, Bash, etc.).
  • Experience leading security incidents and risk assessments.

Skills

  • Authentication protocols (SAML, OAuth, OIDC)
  • Threat modeling
  • Automate security processes
  • AI-integrated software architectures
  • Securing Large Language Models (LLMs)
  • Attacker mindset
  • Public disclosure of research and findings
  • Mobile (iOS/Android) and desktop (Windows/macOS) security testing
  • SAST, DAST, SCA, and fuzzing tools
  • Cryptographic knowledge
  • Secure implementation practices
  • Network protocols and traffic security
  • Develop proof-of-concept exploits

Work Type

  • Hybrid

Experience Level

  • Staff

Salary/Compensations

  • $141,000—$193,000 USD

Benefits

  • Equity (where applicable)
  • Bonus
  • Health, dental, and vision insurance
  • RRSP with a match
  • Healthcare spending
  • Telemedicine
  • Paid leave (including PTO and parental leave)

About the Company

  • Okta secures AI by building the trusted, neutral infrastructure that enables organizations to safely embrace this new era.
  • We are intentional about connection. Our global community, spanning over 20 offices worldwide, is united by a drive to innovate.
  • Your journey begins with an immersive, in-person onboarding experience designed to accelerate your impact and connect you to our mission and team from day one.

Equal Opportunity

  • Okta is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, marital status, age, physical or mental disability, or status as a protected veteran.
  • We also consider for employment qualified applicants with arrest and convictions records, consistent with applicable laws.
  • If reasonable accommodation is needed to complete any part of the job application, interview process, or onboarding please use this Form to request an accommodation.
  • Notice for New York City Applicants & Employees: Okta may use Automated Employment Decision Tools (AEDT), as defined by New York City Local Law 144, that use artificial intelligence, machine learning, or other automated processes to assist in our recruitment and hiring process. In accordance with NYC Local Law 144, if you are an applicant or employee residing in New York City, please click here to view our full NYC AEDT Notice.