Senior Product Security Engineer
UTA · Beverly Hills, United States
About The Role
Join UTA, a leading global entertainment company, as a Senior Product Security Engineer. In this role, you will embed security into the design, development, and operation of our products and platforms. You will work closely with engineering, product, and security teams to design and implement security controls, conduct threat modeling workshops, and lead security design and architecture reviews. You will also own the application and product security lifecycle, drive the adoption of automated security checks, and collaborate with security operations. This is an exciting opportunity to make a meaningful impact on UTA's product security posture.
- Lead security design and architecture reviews for new and existing products, providing clear, actionable recommendations.
- Own and mature the application and product security lifecycle, including threat modeling, secure design, secure coding practices, testing, and release validation.
- Collaborate with security operations to ensure product-related logs, alerts, and events are captured, correlated, and integrated into monitoring and incident response workflows.
- 5+ years of experience in security engineering, application security, or product aligned security roles, with a track record of owning and driving security initiatives
- Strong experience securing applications and services in at least one major cloud provider (AWS preferred), including cloud native architectures
- Familiarity with securing AI/ML platforms in cloud environments and agentic workflows, including access control, data protection, and governance across the application development and deployment lifecycle
- Bachelor’s degree in Computer Science, Cybersecurity, Engineering, or a related field; or equivalent practical experience
- Solid experience collaborating with software engineering teams in agile environments, including participating in design reviews, code reviews, and sprint planning
- Familiarity with secure deployment practices, including Infrastructure-as-Code review of Terraform, CI/CD pipeline security (GitHub Actions), and secrets management
- Deep understanding of common web, mobile, and API vulnerabilities (e.g., OWASP Top 10) and practical experience preventing and remediating them at scale
- Familiarity with container security, including image hardening, Kubernetes RBAC, network policies, and runtime protection
- Hands on experience with application security tooling (SAST, DAST, SCA, secret scanning, WAF, or similar) and integrating these into CI/CD workflows
- Excellent communication and stakeholder management skills, with the ability to influence senior technical and nontechnical partners and drive consensus
- Strong knowledge of identity, authentication, and authorization concepts and technologies (e.g., OAuth, OIDC, SSO, modern identity platforms)
- If you are passionate about building secure products from the ground up and enjoy operating at the intersection of software development and cybersecurity, this role offers the opportunity to meaningfully shape UTA’s product security posture
This is an external listing. JobSpring does not represent or verify the employer. Report this listing
JobSpring