← Back to job listings
CO
Senior Product Security Engineer
Collibra · United Kingdom
About The Role
Join Collibra, a leading data intelligence company, as a Senior Product Security Engineer. In this high-impact role, you will be responsible for identifying vulnerabilities and providing expert remediation consulting for our global product development teams. You will act as an application security evangelist, partnering with engineers to accelerate secure time-to-value while leveraging cutting-edge AI and MCP to create context-aware security automation. This position offers competitive compensation, unlimited paid time off, and a range of health and wellness benefits.
- Identifying vulnerabilities and providing expert remediation consulting for global product development teams.
- Acting as an application security evangelist, partnering with engineers to accelerate secure time-to-value while leveraging cutting-edge AI and MCP.
- Planning and executing penetration-testing engagements, then partnering with development teams to understand, prioritize, and remediate identified security issues.
- Demonstrated proficiency in leveraging AI tools (e.g., Claude, Gemini, ChatGPT, Copilot) to solve real-world business challenges, drive measurable outcomes, or streamline workflows
- An excellent verbal and written communicator, able to produce assessment reports, presentations, and operating procedures
- 5+ years of relevant Penetration Testing, Product Security, and Application Security experience
- Understanding of AI privacy and governance in developer workflows
- Experience with advanced security tools and techniques for simulating real-world attacks
- Familiarity with Open-Source Security Testing Methodology Manual (OSSTMM), Open Web Application Security Project (OWASP), Software Assurance Maturity Model (SAMM), National Institute of Standards and Technology (NIST) Special Publications, and PTES (Penetration Testing Execution Standard)
- Experience using and building collaborative agentic AI systems
- An advocate for the remediation of application security risk and, simultaneously, the associated development/engineering teams
- Experience testing against compliance frameworks such as PCI, FISMA, HIPAA, FedRAMP, or HITRUST
- A developing or established leader who matures security practices and mentors junior teammates
- Experience with AI security tooling and context-aware SSDLC automation
- Strong working knowledge of at least two programming or scripting languages
- Ability to triage security incidents when needed
- 2+ years securing Java, Python, and/or JavaScript web applications
- A Bachelor’s degree or equivalent certification and experience
- Familiarity with best practices for securing the SDLC and DevOps processes
- You are grounded in security principles, policies, and industry best practices
This is an external listing. JobSpring does not represent or verify the employer. Report this listing
JobSpring