This position is no longer accepting applications
Closed on August 28, 2026.
This role is filled β get an email when new Senior roles open on EngineerJobs.io:
Staff Product Security Engineer, Reviews
Senior
Application Security
Cybersecurity Tools
Dynamic Application Security Testing
Fuzzing
Identity and Access Management
Incident Response
Information Security
InfoSec
Security
Security Automation
Security Testing
Software Security
Static Application Security Testing
Static Code Analysis
View similar jobs
Get alerted when similar jobs are posted — set up a New Senior jobs on EngineerJobs.io alert.
See other roles at Okta.
Job Description
Okta in Bellevue, WA, offering hybrid work, seeks a Staff Product Security Engineer to lead security reviews, threat modeling, and vulnerability management across Okta products, with a salary range of USD 180,000 to 247,500 per year.
Responsibilities
- Conduct security reviews covering design assessments, threat modeling, and penetration testing for new features and major changes.
- Perform manual secure code reviews across multiple programming languages.
- Identify and mitigate vulnerabilities, providing clear guidance to engineering teams.
- Lead product security incidents, assess risk, and drive remediation efforts.
- Develop security tools and automation to improve vulnerability detection and assessment.
- Mentor junior engineers and advise non security staff on secure development practices.
- Represent Okta externally through security research, conference talks, and publications.
Requirements
- Expertise in identifying OWASP Top 10 and CWE Top 25 vulnerabilities through manual code review.
- Strong experience in penetration testing and secure development practices.
- Deep technical background in assessing Large Language Models (LLMs) and securing AI integrated software architectures.
- Proficiency in multiple programming languages (e.g., Java, Go, Python, C/C++).
- Strong understanding of authentication and authorization protocols (OIDC, SAML, OAuth).
- Clear communication skills to explain risks and remediation to developers and leadership.
- Ability to automate security testing using LLMs and scripting (Python, Bash, etc.).
- Experience leading security incidents and risk assessments.
- Experience in mobile (iOS/Android) and desktop (Windows/macOS) security testing.
- Familiarity with SAST, DAST, SCA, and fuzzing tools.
- Strong cryptographic knowledge and secure implementation practices.
- Experience analyzing network protocols and securing traffic.
- Ability to develop proof of concept exploits to demonstrate vulnerabilities.
Technologies
- Java
- Go
- Python
- C/C++
- OIDC
- SAML
- OAuth
- Large Language Models (LLMs)
- Bash
- SAST
- DAST
- SCA
- Fuzzing tools
Benefits
- Supporting Your Well-Being
- Driving Social Impact
- Developing Talent and Fostering Connection + Community
The Okta Experience
- Prioritizing well-being and work-life balance
- Contributing to social impact initiatives
- Cultivating talent and building community through collaboration