See all roles

[Remote] Product Security Engineer

Work from home Full-time role Hiring

Note: The job is a remote job and is open to candidates in USA. Doppel is a rapidly growing Series C startup focused on social engineering defense using AI-native technology. They are seeking a Product Security Engineer to support and scale their product and cloud security efforts, collaborating closely with engineering teams to conduct architecture reviews, facilitate threat modeling, and manage penetration testing engagements.

Responsibilities

  • Partner with product and engineering teams to support security architecture reviews for product features and the GCP environment; facilitate threat modeling and document risks, existing controls, and actionable recommendations
  • Coordinate and support penetration testing engagements by assisting with vendor selection and scoping, establishing rules of engagement, coordinating testing activities, validating findings, supporting severity assessment, and tracking remediation and retesting in collaboration with engineering teams
  • Serve as a GCP security subject matter expert for project teams, advising on secure patterns across networking (VPC, private access, perimeter controls), data protection (KMS, secrets), compute runtimes (GKE, Cloud Run, GCE), CI/CD (Cloud Build, Artifact Registry), and logging and monitoring
  • Support the implementation and ongoing improvement of least-privilege IAM in GCP by advising on role design (custom vs. predefined), service account lifecycle management, workload identity, IAM Conditions, organization and folder policy constraints, and periodic access reviews
  • Assist with triage and routing of product security findings to appropriate engineering owners; help tune detection rules to reduce noise, support severity and SLA definition, and track remediation progress, including documenting justified exceptions
  • Contribute to security guardrails through policy and infrastructure-as-code (e.g., org policies, constraints, reusable Terraform modules, admission or policy controllers) and support integration of pre-merge security checks into CI/CD workflows
  • Develop and maintain practical documentation and runbooks (e.g., design review checklists, IAM standards, exception processes) and deliver targeted enablement sessions for engineers and product managers
  • Provide visibility into progress and risk through metrics and regular status updates to security leadership; proactively surface blockers and suggest options and tradeoffs
  • Coach and mentor engineers and code owners on secure-by-default coding practices and architectural patterns

Skills

  • 5–7 years of experience in product security, cloud security engineering, or a related field
  • Strong knowledge of Google Cloud Platform (GCP) services and security best practices, including IAM, networking, data protection, and workload runtimes
  • Hands-on experience with penetration testing coordination, threat modeling, and risk assessment
  • Demonstrated proficiency in Python and cloud-native programming or scripting languages to design and maintain security automation, policy enforcement, and continuous compliance controls using Infrastructure as Code
  • Familiarity with designing and enforcing least-privilege IAM and conducting access reviews
  • Ability to communicate security risks and recommendations clearly to engineering and leadership audiences

Benefits

  • Meaningful equity so you share in Doppel’s success
  • Remote first culture with flexibility built in
  • Flexible PTO, comprehensive health benefits, parental leave, and more

Company Overview

  • Doppel is an AI-native security platform that helps organizations defend against social engineering risks and digital impersonation. It was founded in 2022, and is headquartered in Covina, California, USA, with a workforce of 201-500 employees. Its website is https://www.doppel.com.
  • Company H1B Sponsorship

  • Doppel has a track record of offering H1B sponsorships, with 2 in 2026, 2 in 2025, 3 in 2024, 1 in 2023. Please note that this does not guarantee sponsorship for this specific role.
  • Apply To This Job

    You might like

    [Remote] SAP -FICO Consultant

    Work from home Full-time role

    [Remote] Test Analyst

    Work from home Full-time role

    [Remote] Business Analyst with Zoho CRM

    Work from home Full-time role

    [Remote] Senior Software Engineer, Front-End Infrastructure

    Work from home Full-time role

    [Remote] Customer Services - Customer Service Representative

    Work from home Full-time role

    [Remote] IT - ADMIN - Security Architect - Consultant - Data Modeling Engineer

    Work from home Full-time role

    [Remote] Senior NOC Engineer - Meraki_Focus

    Work from home Full-time role

    [Remote] Senior Project Manager

    Work from home Full-time role

    [Remote] SailPoint ISC (IdentityNow) Administrator

    Work from home Full-time role

    [Remote] Project Manager - Remote

    Work from home Full-time role

    Insurance Sales Agent - New Albany, IN

    Work from home Full-time role

    Experienced Data Entry Specialist – Remote Opportunity for College Students

    Work from home Full-time role

    Business Analyst - Categorie Protette (L.68/99) Business Analyst - Categorie Protette (L.68/99)

    Work from home Full-time role

    Analyst, Client Experience & Optimization

    Work from home Full-time role

    002294-A Maintenance

    Work from home Full-time role

    Experienced Remote Research Panelist and Data Entry Clerk - Flexible Part-Time Opportunity at arenaflex

    Work from home Full-time role

    Buyer & Planner

    Work from home Full-time role

    Disney Data Entry Jobs No Experience Required Apply For This Job

    Work from home Full-time role

    RN Remote Patient Management-On Site

    Work from home Full-time role

    Clinical Review Auditor I

    Work from home Full-time role