More jobs:
Product Security Engineer
Job in
Boston, Suffolk County, Massachusetts, 02298, USA
Listed on 2026-01-14
Listing for:
DataRobot, Inc.
Full Time
position Listed on 2026-01-14
Job specializations:
-
IT/Tech
Cybersecurity, Systems Engineer
Job Description & How to Apply Below
*
* Job Description:
** Data Robot delivers AI that maximizes impact and minimizes business risk. Our platform and applications integrate into core business processes so teams can develop, deliver, and govern AI aRobot empowers practitioners to deliver predictive and generative AI, and enables leaders to secure their AI assets. Organizations worldwide rely on Data Robot for AI that makes sense for their business — today and in the future.
Data Robot is seeking an experienced Staff Product Security Engineer to drive security innovation while ensuring our platform meets the rigorous demands of our Federal and Commercial customers. This is a highly technical, high-impact role where you will operate at the intersection of engineering, automation, and federal compliance (FedRAMP High / DoD IL5).You will serve as a subject matter expert for our Federal group, handle high-stakes customer security inquiries, and build automation using Python and Go.
This role requires a unique blend of technical expertise, regulatory fluency, and diplomatic communication skills to navigate complex customer conversations.###
*
* Key Responsibilities:
**** Federal Compliance & Strategy:
*** Lead Federal Security:
Serve as a primary technical lead for the Data Robot Federal Group, driving the acquisition and maintenance of Authority to Operate (ATO) at FedRAMP High and DoD IL5 levels.
* Compliance Engineering:
Translate complex federal controls (NIST 800-53) into actionable engineering requirements for commercial developers.
* Audit & Policy Management:
Write and maintain security policies (SSPs) and procedures. Develop, track, and remediate Plans of Action and Milestones (POA&Ms) and provide technical evidence during third-party audits.
** Security Engineering & Automation:
*** Automate Everything:
Develop custom automation to manage security tooling and implement "Secure-by-Design" processes in the CI/CD pipeline using Python or Go.
* Container Security:
Identify, design, and implement controls to safeguard our containerized production environments.
* Tooling Management:
Deploy and manage security testing tools for SAST, DAST, and SCA analysis (e.g., Semgrep, Trivy, Burp Suite).
* Threat Modeling:
Review technical designs for new features, performing threat models to prioritize risks and educate developer teams on secure coding practices.
** Customer Trust & Vulnerability Management:
*** Customer Engagement:
Act as the external face of Data Robot Security. Work directly with customers' security teams to resolve concerns regarding CVE exposure and architecture.
* Customer-Centric Communication:
Balance business needs with security rigor. You must be able to stand firm on security policies while maintaining strong professional relationships through clear, diplomatic, and solutions-oriented communication.
**** Knowledge, Skills, and Abilities:
***** Federal Fluency:
Deep understanding of the FedRAMP authorization process, NIST 800-53, and DoD Cloud Computing Security Requirements Guide (SRG).
* Technical Proficiency: + Fluent in writing code using Python or Go to build security automation. + Must have a deep understanding of Linux containers (internals, security isolation). + Familiarity with Kubernetes orchestration is strongly preferred. + Hands-on experience with common security tools such as Semgrep, Trivy, and Burp Suite.
* Strategic Mindset:
Experience determining not just
* how* to fix a bug, but
* why* it happened and how to prevent it systemically.
* Soft Skills:
Strong leadership skills for guiding teams and liaising with various stakeholders.
**** Requisite
Education and Experience:
***** Citizenship:
Must be a United States Citizen residing in the United States.
* 8+ years of experience working in Information Security, with significant time spent in Product Security or App Sec roles.
* Bachelor's or Master's degree in Computer Science, Cybersecurity, Information Systems, or a related field (or equivalent experience).The talent and dedication of our employees are at the core of Data Robot’s journey to be an iconic company. We strive to attract and retain the best talent by providing competitive pay and benefits with our…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×