Product & Data Security Engineer (AppSec, DLP, & Privacy)

Remote Full-time
Job role: Product & Data Security Engineer (AppSec, DLP, & Privacy)

Duration: Contract-to-Hire (6-12 Months)

Location: Fully Remote

Job Description:

You embed Secure-by-Design and Private-by-Design principles directly into the SDLC by building self-service, developer-native guardrails. You do not review code manually; you design systems that make insecure or non-compliant code impossible to merge.

Responsibilities

Secure SDLC:
• Design and maintain SAST, SCA, API, and schema validation patterns using GitHub Actions with deterministic policy-as-code gates (no discretionary approvals).

Data Loss Prevention (DLP):
• Implement source-level PHI/PII and secret detection using regex + ML classifiers in CI/CD to block sensitive data from ever entering source control or artifacts.

API & Transport Security:
• Define non-negotiable Layer 7 standards (TLS 1.3, HSTS, OAuth/OIDC, JWT lifetimes) and automate OpenAPI linting to prevent over-exposure or data leakage.

Data Protection Patterns:
• Build and maintain application-layer encryption, tokenization, and redaction libraries that are consumed by product teams by default.

Supply Chain Security:
• Generate SBOMs per build, sign and attest artifacts, and enforce provenance verification at deploy time via pipeline policy.

Minimum Qualifications
• 5+ years in AppSec or Software Engineering with data-centric security ownership.
• Hands-on with GitHub Actions, secret prevention tooling, API security, and OAuth/OIDC.
• Proficient in Python, Go, or TypeScript with strong developer empathy.

Success Measures
• ≄90% of repos protected by automated DLP and secret scanning
• 100% APIs conforming to standardized auth and transport patterns
• Measurable reduction in high/critical application-layer findings

Apply tot his job

Apply To this Job
Apply Now →

Similar Jobs

Experienced Registered Behavior Technician for In-Home ABA Therapy - Atlanta, GA

Remote

Immediate Hiring: Experienced Registered Behavioral Technician (RBT) for Clinic-Based ABA Therapy Services

Remote

Experienced Registered Behavioral Technician (RBT) - ABA Therapy for Children with Autism Spectrum Disorder

Remote

Experienced Registered Nurse - Telehealth: Providing Remote Care Coordination and Patient Support

Remote

Experienced Substitute Teacher for Riverside County Schools - Join Scoot Education's Innovative Team

Remote

Experienced Substitute Teacher for San Bernardino County - Flexible Schedules & Competitive Pay

Remote

Experienced School Year Instructional Coach for High-Dosage Tutoring Programs in Edgewater Park, NJ

Remote

Experienced School Year Tutor for K-8 Students in Math and Literacy - Mickleton, NJ

Remote

Experienced Secondary Social Studies Teacher for Kansas - Flexible Hybrid Remote Arrangement

Remote

USPS Office Helper

Remote

**Experienced Remote Data Entry Research Panelist - Flexible Part-Time or Full-Time Opportunity**

Remote

[Remote] Fractional CFO * B.O.

Remote

Sr Analyst, Hybrid IA Compliance

Remote

Immediate Hiring: Remote Principal Technical Administrator for AI Lab - WFH Opportunity at Workwarp

Remote

Experienced Data Analyst for Remote End-to-End Delivery Operations – Walmart Career Opportunity with Competitive $27/Hour Salary

Remote

**Global Remote Chat Support Executive – Part-Time Evening Role**

Remote

Compliance Officer – Wealth Management and Trust Testing 3 Locations

Remote

**Experienced Ramp Agent (Customer Service Representative) – Airport Operations and Logistics**

Remote

Experienced Income Tax Accountant and Bookkeeper for Remote Accounting Firm

Remote

[Remote] Administrative Assistant 2

Remote
← Back