Delinea
Product Security Engineer
At a Glance
About This Role
Responsibilities
- Maintain and mature Product Security tooling (e.g. SAST, SCA, DAST, ASPM)
- Assess software vulnerabilities and provide guidance to developers and administrators for remediation
- Ensure security of environments where software is developed, tested and hosted
- Apply knowledge of current product security best practices and standards
- Execute and help to improve Delinea's S-SDLC program
- Stay up to date on secure development technology, including use of AI in development and security processes
- Perform security reviews of software system designs and configuration
- Assist support teams in analyzing and responding to security-related questions and issues pertaining to Delinea products and services
Requirements
- Bachelor's degree in Computer Science, Information Security, similar related field, or equivalent experience
- 2+ years of professional work experience in a Product Security role
- Integration of security testing tools into CI/CD pipelines
- Source code management (ADO Repos, GitLab, GitHub, or similar)
- Application security testing tools for SAST, DAST, IAST and SCA
- Containers (Docker, Kubernetes, or similar)
- Authentication and authorization methods, including OAuth, SAML2, Kerberos and use of x509 certificates
- Scripting and automation using common programming languages such as Python, JavaScript, PowerShell, or similar
- Good verbal and written communications skills with the ability to describe technical concepts
- Software engineering and/or development experience (preferred)
- Familiarity with Application Security Posture Management (ASPM) tools (preferred)
- Experience using AI in software security testing (preferred)
- Familiarity with software security frameworks and industry standards (e.g., NIST SP 800-53 and 218, BSIMM, OWASP Top 10, FedRAMP, etc.) (preferred)
- Understanding of cloud security technologies covering containers, serverless functions, network segmentation and access management (preferred)
- Cybersecurity certifications (e.g., CISSP, CSSLP, Security+, or similar) (preferred)
- Proficiency with Azure and AWS (preferred)
Benefits & Perks
About Delinea
Delinea is a cybersecurity company that specializes in privileged access management (PAM) and identity security solutions. Founded in 2021 through the merger of Thycotic and Centrify, Delinea is headquartered in San Francisco, California. The company offers AI-driven, cloud-native platforms that centralize authorization and secure identities across hybrid and multi-cloud environments. Their solutions enable real-time threat detection and are designed to support organizations of all sizes, from small businesses to global enterprises. The core offering is the Delinea Platform, which provides a unified PAM and identity orchestration solution. Key features include automated identity discovery, continuous risk assessment, password management, and privileged secure access. The platform emphasizes ease of use for end-users while simplifying management for IT and security teams. Delinea serves various industries, including finance, healthcare, government, and retail, focusing on security compliance and operational efficiency. The company has achieved significant recognition, including being a seven-time Leader in the Gartner Magic Quadrant for PAM.
Security at Delinea
Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.
Security Philosophy
“Delinea's public security philosophy is centered on identity-centric controls and privileged access management (PAM). They emphasize that identity is the primary security perimeter, particularly in high-performance environments like AI factories. While they offer tools for developer secrets management, a specific internal AppSec mission statement or a defined 'developer enablement vs. gatekeeping' posture for their own internal security team is not publicly available.”
Security Team
Org Structure & Reporting Line: Information not publicly available. Key Public-Facing Leaders: Information not publicly available. Team Size Estimate (as_of:): Information not publicly available. Active AppSec Job Postings (as_of:): Count: 0.
Key Initiatives
Security Champions Program: No Evidence Found. 'Shift Left' in Practice: Information not publicly available. Vulnerability Management Process: Information not publicly available. Secure SDLC Artifacts: Information not publicly available. Recent Initiatives (Last 6 Months): Information not publicly available.
Preparing for an AppSec interview?
Get the weekly briefing 2,000+ security pros trust.
Interested in this role?
Apply on LinkedIn