
Product Security Engineer
Meet Yubico: the creator of the most secure passkeys and leading provider of hardware authentication security keys. Our company’s mission is to make secure login easy and available for everyone. Yubico was founded in 2007 by Stina and Jakob Ehrensvard, and is public on Nasdaq Stockholm Main Market: YUBICO. Our customers include Fortune 500 companies, hundreds of government agencies and millions of individuals in over 160 countries that rely on Yubico technology to secure access to computers, online services and mobile apps. Our global customer base includes organizations of varying sizes, from large corporations such as Google, Amazon, Microsoft and Hyatt, to companies like Dyson. We are a global company with a strong company culture and employees located in over 14 countries. Yubico’s headquarters are based in Stockholm, Sweden and Santa Clara, CA. Aligned with our mission to make the internet more secure for everyone, Yubico donates YubiKeys to organizations helping at-risk individuals through our philanthropic initiative, Secure it Forward.
Tasks & Responsibilities:
- Define and evangelize requirements and guidance for secure by design and secure by default principles
- Implement automation to prevent and detect security flaws in all phases of development
- Conduct design reviews and manual security assessments
- Lead training and awareness sessions
- Define and implement metrics to provide visibility into the impact of your work
- Define, lead, and influence processes to secure products and services
- Identify and advocate for new and novel uses of Yubico’s technology
- Ability to travel to Yubico’s other offices two times per year
Basic Qualifications:
- 3+ years in a product security role
- 3+ years of software development
- Proficiency in threat modeling
- Proficiency in C
- Experience in targeted fuzzing
- Knowledge of common vulnerability classes
- Experience in static code analysis
Optional Skills and Experience:
- Knowledge of WebAuthn, OATH HOTP, OATH TOTP, U2F, PIV, or OpenPGP
- Experience developing for ARM
#LI-Remote
#LI-BR1
Yubico offers a holistic Total Rewards package designed to support our employees in all aspects of their life inside and outside of work. This role has the annual salary range as defined below for a salary pay range for a candidate located in the San Francisco Bay Area. For roles that are filled in other locations, the compensation range will be based on data provided by the Radford McLagan Compensation Database from Aon. Final compensation is also based on a number of factors including, but not limited to, job-related knowledge, skills, and experience.
Salary Pay Range
$160,000 - $185,000 USD
We are an equal opportunity employer, we value diversity and uphold an inclusive environment where all people feel that they are equally respected and valued. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity or expression, age, marital status, religion, national origin, disability, protected Veteran status or any other characteristic protected by law. We'd love to learn about what you can add to our diverse team. We are an E-Verify Participating Employer.
Yubico does not accept agency resumes or referrals so please do not send them to our careers staff or employees. Yubico is not responsible for any fees related to unsolicited resumes or referrals.
Personal data submitted through this form is used for managing Yubico’s recruitment activities, which include facilitating any application you make, setting up and conducting interviews and tests for applicants, evaluating and assessing results and selecting candidates, and as otherwise needed in our recruitment and onboarding processes. The use of your personal data may also be necessary prior to entering into a contract with you (that is prior to offering you a job with Yubico). Your personal data will only be used for the purposes for which it was collected and in accordance with the Yubico Privacy Notice. We only keep your personal data for as long as necessary and in compliance with Yubico’s record retention policies. If you have asked us to, we will keep you informed of other opportunities at Yubico. We do this in various ways, including email and by phone. If at any time you do not want us to contact you or use your information as described herein please contact us at jobs@yubico.com to let us know and we will delete all such information. Providing your personal data is voluntary, but necessary to join our talent community, and if you do not agree to provide your data, we will not be able to consider you as part of our talent community.
As part of providing the requested service, we will transfer your data to be processed by Greenhouse Software Inc., a service provider contracted by Yubico AB and/or its subsidiaries that meets legally mandated privacy requirements. The Yubico Privacy Notice offers more information about Yubico privacy practices, including the lawful basis for processing of personal data, how to lodge a complaint with the supervisory authority, and how to contact Yubico to exercise your data subject rights. In this notice, when we refer to "Yubico", "us", "we" or "our", we mean the Yubico group company or companies that you apply to, or correspond with, and which are responsible for any personal data collected about you.
Apply for this job
*
indicates a required field
