Talent.com
Sr. Staff Security Engineer, Product Security Incident Response Team (PSIRT)

Sr. Staff Security Engineer, Product Security Incident Response Team (PSIRT)

Palo Alto NetworksSanta Clara, CA, US
job_description.job_card.30_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Job Description

Job Description

Company Description

Our Mission

At Palo Alto Networks® everything starts and ends with our mission :

Being the cybersecurity partner of choice, protecting our digital way of life.

Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and we’re looking for innovators who are as committed to shaping the future of cybersecurity as we are.

Who We Are

We take our mission of protecting the digital way of life seriously. We are relentless in protecting our customers and we believe that the unique ideas of every member of our team contributes to our collective success. Our values were crowdsourced by employees and are brought to life through each of us everyday - from disruptive innovation and collaboration, to execution. From showing up for each other with integrity to creating an environment where we all feel included.

As a member of our team, you will be shaping the future of cybersecurity. We work fast, value ongoing learning, and we respect each employee as a unique individual. Knowing we all have different needs, our development and personal wellbeing programs are designed to give you choice in how you are supported. This includes our FLEXBenefits wellbeing spending account with over 1,000 eligible items selected by employees, our mental and financial health resources, and our personalized learning opportunities - just to name a few!

At Palo Alto Networks, we believe in the power of collaboration and value in-person interactions. This is why our employees generally work full time from our office with flexibility offered where needed. This setup fosters casual conversations, problem-solving, and trusted relationships. Our goal is to create an environment where we all win with precision.

Job Description

Your Career

As a Senior Staff PSIRT Engineer, you will play a critical role in protecting Palo Alto Networks products and services by leading complex vulnerability investigations and response efforts from start to finish. You will serve as a senior technical expert in the Product Security Incident Response Team (PSIRT), driving deep technical analysis, root cause determination, and remediation guidance for product security issues.

This role demands a high level of technical acumen, cross-functional collaboration, and the ability to navigate sensitive situations with both internal teams and external stakeholders such as customers, security researchers, and industry partners.

Your Impact

  • Lead the technical investigation of reported security vulnerabilities in products and cloud offerings, including reproduction, impact analysis, and severity scoring (e.g., CVSS).
  • Drive root cause analysis and partner with product engineering teams to develop, validate, and verify remediations.
  • Collaborate closely with product, engineering, legal, privacy, support, sales, and threat intelligence teams to ensure aligned vulnerability handling and response strategies.
  • Engage directly with customers, security researchers, and industry partners to discuss vulnerability details, mitigation steps, and disclosure timelines.
  • Maintain deep familiarity with industry vulnerability handling standards and organizations such as CNA, NIST, FIRST, and OpenSSF.
  • Contribute to the continuous improvement of PSIRT workflows, automation, and tooling to accelerate vulnerability detection, analysis, and remediation.
  • Mentor junior engineers in vulnerability research, triage, and incident response methodologies.
  • Produce high-quality technical documentation, incident reports, and executive summaries for both internal and external audiences.
  • Stay up-to-date on emerging threats, exploitation techniques, and security research trends to proactively strengthen product security posture.

Qualifications

Your Experience

  • 4+ years in product security, application security, vulnerability research, or related fields, with significant hands-on experience in vulnerability investigation and exploitation analysis.
  • Strong expertise in reverse engineering, debugging, and secure software development practices.
  • Demonstrated ability to reproduce, analyze, and assess the exploitability of complex vulnerabilities in large-scale systems or cloud environments.
  • Deep familiarity with CVSS, CVE, and public vulnerability databases.
  • Experience handling responsible disclosure and coordinating with external researchers and industry partners.
  • Practical knowledge of secure coding guidelines, memory corruption mitigation, and common vulnerability classes (e.g., buffer overflows, SQLi, XSS, deserialization).
  • Strong written and verbal communication skills, including the ability to clearly articulate technical risk to diverse audiences.
  • Experience working in fast-paced environments with strict SLAs for vulnerability response.
  • Education

  • BS or MS Degree in Engineering or Computer Science, related to computer security, application security, information security, network security, or cryptography.
  • Additional Information

    The Team

    Think about it, security for an information security company. Working at a high-tech cybersecurity company within the Information Security team is a once-in-a-lifetime opportunity. You’ll be joined with the brightest minds in technology, our global teams on the front line of defense against cyberattacks. We’re joined by one mission – but driven by the impact of that mission and what it means to protect our way of life in the digital age. Join a dynamic and fast-paced team that feels excitement at the prospect of a challenge and feels a thrill at resolving security gaps that inhibit our privacy.

    Compensation Disclosure

    The compensation offered for this position will depend on qualifications, experience, and work location. For candidates who receive an offer at the posted level, the starting base salary (for non-sales roles) or base salary + commission target (for sales / commissioned roles) is expected to be between $146,000- $237,500 / YR. The offered compensation may also include restricted stock units and a bonus. A description of our employee benefits may be found here.

    #LI-NP1

    Our Commitment

    We’re problem solvers that take risks and challenge cybersecurity’s status quo. It’s simple : we can’t accomplish our mission without diverse teams innovating, together.

    We are committed to providing reasonable accommodations for all qualified individuals with a disability. If you require assistance or accommodation due to a disability or special need, please contact us at   accommodations@paloaltonetworks.com.

    Palo Alto Networks is an equal opportunity employer. We celebrate diversity in our workplace, and all qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or other legally protected characteristics.

    All your information will be kept confidential according to EEO guidelines.

    serp_jobs.job_alerts.create_a_job

    Security Engineer Security • Santa Clara, CA, US

    Job_description.internal_linking.related_jobs
    • serp_jobs.job_card.promoted
    Senior / Staff Software Engineer, Product Security

    Senior / Staff Software Engineer, Product Security

    ZipSan Francisco, CA, United States
    serp_jobs.job_card.full_time
    The simple task of buying software, services, or tools at work has become hopelessly complicated at even the most innovative companies in the world. Today, enterprises spend $120T+ per year globally...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Product Security Engineer

    Product Security Engineer

    FortinetSunnyvale, CA, United States
    serp_jobs.job_card.full_time
    The Product Security Incident Response Team is looking for a Product Security Engineer, to handle Product Security related incidents, and to perform vulnerability research on Fortinet products.This...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Staff Security Engineer, Secure Digital Asset Operations

    Staff Security Engineer, Secure Digital Asset Operations

    P2PSan Francisco, CA, United States
    serp_jobs.job_card.full_time
    At Ripple, we’re building a world where value moves like information does today.It’s big, it’s bold, and we’re already doing it. Through our crypto solutions for financial institutions, businesses, ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Security Engineer

    Senior Security Engineer

    TrovSan Francisco, CA, United States
    serp_jobs.job_card.full_time
    At Pave, we're building the industry’s leading compensation platform, combining the world's largest real-time compensation dataset with deep expertise in AI and machine learning.Our platform is per...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Security Engineer

    Security Engineer

    Mercor, Inc.San Francisco, CA, United States
    serp_jobs.job_card.full_time
    Mercor is training models that predict how well someone will perform on a job better than a human can.We use our platform to source, vet, and onboard expert contractors who help train AI models in ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Staff Security Engineer, Security Operations Center (SOC)

    Staff Security Engineer, Security Operations Center (SOC)

    Palo Alto NetworksSanta Clara, CA, US
    serp_jobs.job_card.full_time
    At Palo Alto Networks® everything starts and ends with our mission : .Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer a...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    FIPS 140 Security Engineer

    FIPS 140 Security Engineer

    VirtualVocationsSanta Clara, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a FIPS 140 Security Engineer to support various FIPS 140 validation projects.Key Responsibilities Conduct general security analysis and design work for product architectu...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Sr Security Engineer

    Sr Security Engineer

    UberSan Francisco, CA, United States
    serp_jobs.job_card.full_time
    We are seeking a talented and experienced Sr Security Engineer to join our Threat Defense and Response team and help drive the next generation of AI-powered cyber defense capabilities.This role wil...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Staff Platform Security Engineer (Security)

    Staff Platform Security Engineer (Security)

    SOLANA FOUNDATIONSan Francisco, CA, United States
    serp_jobs.job_card.full_time
    Security is core to the product and the reason why millions of people trust Phantom to securely store their crypto assets. As a Security Engineer, you will be responsible for identifying, exploiting...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Staff Product Security Engineer

    Staff Product Security Engineer

    Databricks Inc.San Francisco, CA, United States
    serp_jobs.job_card.full_time
    RDQ226R605; This role can be based remotely anywhere in the United States.The Product Security Team's mission is to Left-shift SDLC (Security Development Lifecycle) processes for ALL code written i...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Staff Security Engineer, Secure Digital Asset Operations

    Staff Security Engineer, Secure Digital Asset Operations

    RippleSan Francisco, CA, United States
    serp_jobs.job_card.full_time
    Staff Security Engineer, Secure Digital Asset Operations.Please note this is for San Francisco, CA, United States.You only need toapply to one location if there are multiple listed for the job.At R...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    FIPS Certified Security Engineer

    FIPS Certified Security Engineer

    VirtualVocationsSan Jose, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Security Engineer, FIPS / CC (Mobile Devices).Key Responsibilities Lead the end-to-end validation process for IT products, including security assessments and documentatio...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Product Security Engineer

    Senior Product Security Engineer

    Epoch BiodesignSan Francisco, CA, United States
    serp_jobs.job_card.full_time
    Crusoe Energy is on a mission to unlock value in stranded energy resources through the power of computation.Take a look at what we do! https : / / www. We aim to align the long term interests of the cli...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Staff Security Engineer

    Staff Security Engineer

    VirtualVocationsSanta Clara, California, United States
    serp_jobs.job_card.full_time
    A company is looking for a Staff Security Engineer with expertise in network and cloud security.Key Responsibilities Design, implement, and manage firewall policies and security configurations ac...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Sr. Product Security Incident Response Engineer

    Sr. Product Security Incident Response Engineer

    DocuSign, Inc.San Francisco, CA, United States
    serp_jobs.job_card.full_time
    Docusign brings agreements to life.Docusign solutions to accelerate the process of doing business and simplify people’s lives. With intelligent agreement management, Docusign unleashes business-crit...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    Sr. Security Engineer, Kuiper Security, Kuiper Security

    Sr. Security Engineer, Kuiper Security, Kuiper Security

    AmazonSan Francisco, CA, United States
    serp_jobs.job_card.permanent
    Security Engineer, Kuiper Security, Kuiper Security.Project Kuiper is an initiative to launch a constellation of Low Earth Orbit satellites that will provide low-latency, high-speed broadband netwo...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Senior Security Engineer (Incident Response & Automations)

    Senior Security Engineer (Incident Response & Automations)

    HeadwaySan Francisco, CA, United States
    serp_jobs.job_card.full_time
    Senior Security Engineer (Incident Response & Automations).New York, New York, United States; Remote; San Francisco, California, United States. Seattle, Washington, United States.Headway’s mission ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Staff Engineer, Offensive Security (REMOTE)

    Senior Staff Engineer, Offensive Security (REMOTE)

    GEICOSan Francisco, CA, United States
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time
    Senior Staff Engineer, Offensive Security (REMOTE).Senior Staff Engineer, Offensive Security (REMOTE).This range is provided by GEICO. Your actual pay will be based on your skills and experience — t...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30