×
Register Here to Apply for Jobs or Post Jobs. X

Sr. Product Security Engineer

Remote / Online - Candidates ideally in
Chicago, Cook County, Illinois, 60290, USA
Listing for: DocuSign, Inc.
Full Time, Part Time, Remote/Work from Home position
Listed on 2026-03-03
Job specializations:
  • Software Development
    Software Engineer
Salary/Wage Range or Industry Benchmark: 151200 - 213600 USD Yearly USD 151200.00 213600.00 YEAR
Job Description & How to Apply Below

Company Overview

Docusign brings agreements to life. Over 1.5 million customers and more than a billion people in over 180 countries use Docusign solutions to accelerate the process of doing business and simplify people’s lives. With intelligent agreement management, Docusign unleashes business-critical data that is trapped inside of documents. Until now, these were disconnected from business systems of record, costing businesses time, money, and opportunity.

Using Docusign’s Intelligent Agreement Management platform, companies can create, commit, and manage agreements with solutions created by the #1 company in e-signature and contract lifecycle management (CLM).

What you'll do

As a core member of our Product Security Team, you will be responsible for embedding security practices within Docusign’s SDLC. Your work will empower all product teams to build secure applications from the ground up. You will act as a subject matter expert on secure application design, secure coding practices, systems integrations, and embedding security into automated testing/validation; driving a secure-by-design mindset across product development.

This position is an individual contributor role reporting to the Director of Product Security.

Responsibility
  • Collaborate with product engineers and product teams to gather requirements, provide expert consultation on securing the entire SDLC process

  • Identify architectural flaws and security concerns in application designs early in the SDLC process

  • Threat Model and design security controls and mitigations in collaboration with product engineering teams

  • Design, develop, and maintain a centralized repository of reusable secure code components and tools for use by development teams

  • Review application code to identify logic flaws, unsafe functions, and violations of security standards; following guidelines from frameworks like OWASP, BSIMM, and NIST SSDF

  • Verify/validate secure code interactions with other dependent and integrated services/systems

  • Ensure testing automation addresses security goals and concerns

  • Review and verify identified/reported vulnerabilities, perform root cause analysis, and partner with developers to drive corrections

  • Stay up-to-date with emerging security threats, trends, and new technologies to continuously improve the security posture of our code and shared development resources

  • Contribute to technical requirements, architecture, and interface design documents and educational resources

Job Designation

Hybrid: Employee divides their time between in-office and remote work. Access to an office location is required. (Frequency: Minimum 2 days per week; may vary by team but will be weekly in-office expectation)

Positions at Docusign are assigned a job designation of either In Office, Hybrid or Remote and are specific to the role/job. Preferred job designations are not guaranteed when changing positions within Docusign. Docusign reserves the right to change a position's job designation depending on business needs and as permitted by local law.

What you bring

Basic

  • BS/BA degree or equivalent in relevant coding experience

  • 8+ years of overall experience in Application Development, with at least 3 years focused in the Product Application Security discipline

  • Experience in designing, implementing, and maintaining secure software systems

  • Experience in C# and .NET Framework/Core

  • Fluent in one or more other programming languages relevant to the organization (e.g., Python, Java, JavaScript) and the ability to quickly learn new languages

  • Experience with common security vulnerabilities (e.g. OWASP Top 10 and API Security Top 10) and their mitigations/remediations

  • Experience with development and build pipelines and associate best practices

  • Experience with threat modeling and security analysis of application components to identify and mitigate potential vulnerabilities

  • Experience in secure source code audit/analysis and reporting

  • Experience in application security within cloud environments (e.g., AWS, Azure, GCP)

  • Experience developing and implementing security APIs and associated tooling against threats, such as unauthorized access and data breaches

  • Experience operating within and discovering the…

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary