AppSec Jobs
← Back to all jobs

Delinea

Product Security Engineer

Hybrid
Mexico City, MexicoPosted 2 days agoWebsite
Apply on LinkedIn →

At a Glance

AWSAzurePythonJavaScript/TypeScriptKubernetesDocker

About This Role

Delinea's Cybersecurity organization is seeking a skilled Product Security Engineer to play a key role in maintaining and maturing an industry-leading Product Security Program. This role will play a key part in the rollout, implementation, and maturity of initiatives that ensure Delinea software adheres to high security standards and is trustworthy for use in demanding scenarios. The ideal candidate will be familiar with DevSecOps concepts and practices, especially as they pertain to security, and will be able to collaborate effectively with Product Development and DevOps teams on Product Security activities such as those involving SAST, DAST, SCA, API Security, Vulnerability Management, and secure operation of cloud-based services. The candidate must be able to balance the right level of security with business objectives, be comfortable with communicating technical ideas clearly with software engineers, security personnel and support staff, and work to creatively solve software security related problems. This role reports to the Sr. Director of Product Security.

Responsibilities

  • Maintain and mature Product Security tooling (e.g. SAST, SCA, DAST, ASPM)
  • Assess software vulnerabilities and provide guidance to developers and administrators for remediation
  • Ensure security of environments where software is developed, tested and hosted
  • Apply knowledge of current product security best practices and standards
  • Execute and help to improve Delinea's S-SDLC program
  • Stay up to date on secure development technology, including use of AI in development and security processes
  • Perform security reviews of software system designs and configuration
  • Assist support teams in analyzing and responding to security-related questions and issues pertaining to Delinea products and services

Requirements

CI/CDSASTDASTSCADockerKubernetesPythonJavaScriptNISTOWASPCISSPAzureAWS
  • Bachelor's degree in Computer Science, Information Security, similar related field, or equivalent experience
  • 2+ years of professional work experience in a Product Security role
  • Integration of security testing tools into CI/CD pipelines
  • Source code management (ADO Repos, GitLab, GitHub, or similar)
  • Application security testing tools for SAST, DAST, IAST and SCA
  • Containers (Docker, Kubernetes, or similar)
  • Authentication and authorization methods, including OAuth, SAML2, Kerberos and use of x509 certificates
  • Scripting and automation using common programming languages such as Python, JavaScript, PowerShell, or similar
  • Good verbal and written communications skills with the ability to describe technical concepts
  • Software engineering and/or development experience (preferred)
  • Familiarity with Application Security Posture Management (ASPM) tools (preferred)
  • Experience using AI in software security testing (preferred)
  • Familiarity with software security frameworks and industry standards (e.g., NIST SP 800-53 and 218, BSIMM, OWASP Top 10, FedRAMP, etc.) (preferred)
  • Understanding of cloud security technologies covering containers, serverless functions, network segmentation and access management (preferred)
  • Cybersecurity certifications (e.g., CISSP, CSSLP, Security+, or similar) (preferred)
  • Proficiency with Azure and AWS (preferred)

Benefits & Perks

Competitive salaries
Meaningful bonus program
Healthcare insurance
Pension/retirement matching
Comprehensive life insurance
Employee assistance program
Time off plans
Paid company holidays
Meaningful work
Culture of innovation
Great career progression

About Delinea

Delinea is a cybersecurity company that specializes in privileged access management (PAM) and identity security solutions. Founded in 2021 through the merger of Thycotic and Centrify, Delinea is headquartered in San Francisco, California. The company offers AI-driven, cloud-native platforms that centralize authorization and secure identities across hybrid and multi-cloud environments. Their solutions enable real-time threat detection and are designed to support organizations of all sizes, from small businesses to global enterprises. The core offering is the Delinea Platform, which provides a unified PAM and identity orchestration solution. Key features include automated identity discovery, continuous risk assessment, password management, and privileged secure access. The platform emphasizes ease of use for end-users while simplifying management for IT and security teams. Delinea serves various industries, including finance, healthcare, government, and retail, focusing on security compliance and operational efficiency. The company has achieved significant recognition, including being a seven-time Leader in the Gartner Magic Quadrant for PAM.

Industry

information technology & services

Employees

1,300

282 engineers

Revenue

$400M

Website

Visit →

Security at Delinea

Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.

3 Intel Signals

Security Philosophy

Delinea's public security philosophy is centered on identity-centric controls and privileged access management (PAM). They emphasize that identity is the primary security perimeter, particularly in high-performance environments like AI factories. While they offer tools for developer secrets management, a specific internal AppSec mission statement or a defined 'developer enablement vs. gatekeeping' posture for their own internal security team is not publicly available.

Security Team

Org Structure & Reporting Line: Information not publicly available. Key Public-Facing Leaders: Information not publicly available. Team Size Estimate (as_of:): Information not publicly available. Active AppSec Job Postings (as_of:): Count: 0.

Key Initiatives

Security Champions Program: No Evidence Found. 'Shift Left' in Practice: Information not publicly available. Vulnerability Management Process: Information not publicly available. Secure SDLC Artifacts: Information not publicly available. Recent Initiatives (Last 6 Months): Information not publicly available.

Preparing for an AppSec interview?

Get the weekly briefing 2,000+ security pros trust.

Interested in this role?

Apply on LinkedIn