Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Staff Product Security Engineer, Reviews image - Rise Careers
Job details

Staff Product Security Engineer, Reviews

Get to know Okta

Okta is The World’s Identity Company. We free everyone to safely use any technology—anywhere, on any device or app. Our Workforce and Customer Identity Clouds enable secure yet flexible access, authentication, and automation that transforms how people move through the digital world, putting Identity at the heart of business security and growth. 

At Okta, we celebrate a variety of perspectives and experiences. We are not looking for someone who checks every single box - we’re looking for lifelong learners and people who can make us better with their unique experiences. 

Join our team! We’re building a world where Identity belongs to you.

Staff Product Security Engineer, Reviews 

Product Security Engineers are responsible for conducting security reviews on all of Okta’s products, providing security education to our engineers, and handling externally reported vulnerabilities. This ranges from code reviews, penetration tests, and architectural reviews on new features and existing code, in order to provide security education and guidance to the entire organization.

This position is not for someone who operates solely on scanner-based vulnerabilities.  You will be required to demonstrate a strong technical understanding of web applications, backend services, penetration testing techniques and methodologies.  You should have a clear understanding of Okta's authentication protocols, such as SAML and OAuth.  Furthermore, you should have the desire to automate tasks by building tools to help discover vulnerabilities and be comfortable explaining and communicating vulnerabilities to developers, management and leadership by creating thorough documentation of findings.

The most important quality we are looking for is someone who has an “evil bit” - an innate ability to think and operate like an attacker while solving complex problems with expertise and creativity. At Okta we fully support externally publishing exciting new findings and will help you do it in the form of white papers, blog posts, and live presentations at conferences of your choice.

Job Duties and Responsibilities:

  • Work closely with Engineering teams on Design Reviews and Threat Models for new features or major changes
  • Audit code for security flaws and adherence to best practices
  • Perform penetration tests on new features and platforms as a whole
  • Develop, implement, and communicate vulnerability mitigation strategies to development teams
  • Work both solo and collaboratively to deliver projects on a deadline
  • Think like an attacker and solve complex problems with expertise and ingenuity
  • Give security presentations and represent Okta in private or public venues

Required Knowledge, Skills, and Abilities:

  • Expertise in identifying common (OWASP Top 10/CWE Top 25) web application vulnerabilities through secure code reviews (Java, .Net, Go, C, C++, C#, Swift, Kotlin, Python)
  • Proficient in conducting manual web application penetration tests using industry-standard tools
  • Extensive knowledge of modern web application components, architecture, and design principles
  • Ability to explain vulnerability risks, impact and remediation options to developers
  • Coding ability in at least one scripting language (ex: Python, Bash)
  • Capable of taking point on product security incidents and providing recommendations to the organization. 
  • Be able to identify risks on large features or new products as well as being able to provide clear mitigations and follow up on remediation efforts
  • Ability to provide guidance and mentorship to junior engineers as well as non-security staff

 Desired Skills and Abilities:

  • Working knowledge of current authentication and authorization protocols (OIDC, SAML)
  • Experience in mobile device (Android and/or iOS) application penetration testing
  • Experience with testing Windows desktop applications
  • Experience with SAST, DAST, SCA, and fuzzing tools
  • Knowledge of current cryptographic algorithms and techniques
  • Experience in attacking network protocols and analyzing network traffic
  • Experience writing proof-of-concept scripts to demonstrate vulnerability exploitation

#LI-REMOTE

Okta is an Equal Opportunity Employer.

Below is the annual salary range for candidates located in Canada. Your actual salary will depend on factors such as your skills, qualifications, and experience. In addition, Okta offers equity (where applicable), bonus, and benefits, including health, dental, and vision insurance, RRSP with a match, healthcare spending, telemedicine, and paid leave (including PTO and parental leave) in accordance with our applicable plans and policies. To learn more about our Total Rewards program, please visit: https://rewards.okta.com/can.

The annual base salary range for this position for candidates located in Canada is between:
$131,000$197,000 CAD

What you can look forward to as an Full-Time Okta employee!

Okta cultivates a dynamic work environment, providing the best tools, technology and benefits to empower our employees to work productively in a setting that best and uniquely suits their needs. Each organization is unique in the degree of flexibility and mobility in which they work so that all employees are enabled to be their most creative and successful versions of themselves, regardless of where they live. Find your place at Okta today! https://www.okta.com/company/careers/.

Okta is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, marital status, age, physical or mental disability, or status as a protected veteran. We also consider for employment qualified applicants with arrest and convictions records, consistent with applicable laws. If reasonable accommodation is needed to participate in the job application, interview process, or onboarding please use this Form to request an accommodation.

Okta is committed to complying with applicable data privacy and security laws and regulations. For more information, please see our Privacy Policy at https://www.okta.com/privacy-policy/

Okta Glassdoor Company Review
3.6 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
Okta DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Okta
Okta CEO photo
Todd McKinnon
Approve of CEO

Average salary estimate

$122500 / YEARLY (est.)
min
max
$98000K
$147000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Similar Jobs
Photo of the Rise User
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Maternity Leave
Paternity Leave
401K Matching
Paid Holidays
Paid Sick Days
Paid Time-Off
Paid Volunteer Time
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Family Coverage (Insurance)
Medical Insurance
Mental Health Resources
Photo of the Rise User
Posted 10 days ago
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Maternity Leave
Paternity Leave
401K Matching
Paid Holidays
Paid Sick Days
Paid Time-Off
Paid Volunteer Time
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Family Coverage (Insurance)
Medical Insurance
Mental Health Resources
Photo of the Rise User
FundApps Remote London, England
Posted 10 days ago
Dental Insurance
Health Savings Account (HSA)
Vision Insurance
Performance Bonus
Family Medical Leave
Sabbatical
Paid Holidays
Photo of the Rise User
Posted 10 days ago
Posted 12 days ago
Photo of the Rise User
Posted 18 hours ago
Photo of the Rise User
Hightouch Remote Remote (North America)
Posted 13 days ago
Mission Driven
Inclusive & Diverse
Work/Life Harmony
Collaboration over Competition
Growth & Learning
Dental Insurance
Disability Insurance
Flexible Spending Account (FSA)
Vision Insurance
Paid Holidays
Maternity Leave
Paternity Leave
Learning & Development
Commuter Benefits
Photo of the Rise User
Applied Intuition Hybrid Mountain View, California, United States
Posted 8 days ago

Okta is a leading identity and access management company headquartered in San Francisco, California that is committed to allowing people to access applications on any device at any time, while still enforcing strong security policies.

322 jobs
MATCH
VIEW MATCH
BADGES
Badge ChangemakerBadge Future MakerBadge Global CitizenBadge Innovator
CULTURE VALUES
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
BENEFITS & PERKS
Maternity Leave
Paternity Leave
401K Matching
Paid Holidays
Paid Sick Days
Paid Time-Off
Paid Volunteer Time
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Family Coverage (Insurance)
Medical Insurance
Mental Health Resources
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
February 14, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!