Tech Job Finder - Find Software, Tech Sales and Product Manager Jobs.
Sign In
OR continue with e-mail and password
E-mail address
Password
Don't have an account?
Reset password
Join Tech Job Finder
OR continue with e-mail and password
Username
E-mail address
Password
Confirm Password
How did you hear about us?
By signing up, you agree to our Terms & Conditions and Privacy Policy.

Product Security Engineer III

at GitHub

Back to all Cybersecurity jobs
GitHub logo
Industry not specified

Product Security Engineer III

at GitHub

Mid LevelNo visa sponsorshipCybersecurity

Posted 14 hours ago

No clicks

Compensation
Not specified

Currency: Not specified

City
Not specified
Country
Canada

**Product Security Engineer III** – GitHub | Remote (Canada) GitHub, the world's leading software development platform, is seeking a Product Security Engineer III to join its engineering team. This hands-on role focuses on building internal security platforms, tooling, and automation to protect GitHub's products at scale. Responsibilities include designing, building, and maintaining static analysis pipelines, agentic security tooling, supply chain defenses, and developer-integrated security controls. The ideal candidate is a seasoned software engineer with a strong passion for application security and a desire to solve security problems through code. This role requires experience in Python, Go, or another relevant programming language, as well as a solid understanding of static application security testing (SAST), dynamic application security testing (DAST), and software supply chain security. Candidates should have a minimum of 7 years of relevant experience, with at least 3 years focused on product security or a similar role. Strong problem-solving skills, a demonstrated ability to work effectively in a team, and exceptional communication skills are essential for this role. GitHub offers a remote-friendly work environment, with locations available in various Canadian provinces.

About GitHub

GitHub is the world’s leading platform for agentic software development — powered by Copilot to build, scale, and deliver secure software. Over 180 million developers, including more than 90% of the Fortune 100 companies, use GitHub to collaborate, and more than 77,000 organisations have adopted GitHub Copilot.

Locations

In this role you can work from Remote, Canada | Remote, Ontario Canada| Remote, Alberta Canada | Remote, British Columbia Canada

Overview

GitHub is transforming how the world builds secure software, and we are looking for a Product Security Engineer III to join our Product Security Engineering team. This is a hands-on engineering role focused on building internal security platforms, tooling, and automation that protect GitHub's products at scale.

You will design, build, and maintain the systems that make GitHub's security program run: static analysis pipelines, agentic security tooling, supply chain defenses, and developer-integrated security controls. The ideal candidate is a strong software engineer who is passionate about application security and wants to solve security problems through code. You will partner closely with product and engineering teams to ship security improvements that scale with the organization.


Responsibilities

  • Design, build, and maintain security tooling and automation, including static analysis pipelines, secret scanning workflows, and dependency analysis systems.
  • Contribute to scalable solutions that reduce recurring vulnerability patterns, focusing on preventing classes of vulnerabilities rather than addressing individual instances.
  • Build and improve agentic security tooling for automated triage, assessment, and remediation of security findings.
  • Develop security libraries, CI/CD integrations, and developer-facing tools that make the secure path the default path for engineering teams.
  • Contribute to supply chain security defenses, building detection and prevention systems that protect GitHub's software supply chain.
  • Collaborate with teams across the organization to address security risks and define new requirements and feature sets.
  • Analyze key metrics and KPIs to identify trends in security issues, evaluate the effectiveness of security tooling and automation, and recommend improvements to address gaps in measurement.

Qualifications

Required Qualifications:

  • 5+ years experience in security analysis, security research, cyber security, security engineering, or relevant area
    • OR Associate's Degree in a related field AND 4+ years experience in security analysis, security research, cyber security, security engineering, or relevant area
    • OR Bachelor's Degree in a related field AND 3+ years experience in security analysis, security research, cyber security, security engineering, or relevant area
    • OR Master's Degree in a related field AND 1+ year(s) experience in security analysis, security research, cyber security, security engineering, or relevant area
    • OR equivalent experience.
  • 1+ year(s) of experience in building security tooling and implementing solutions in complex environments.
  • 3+ years experience programming in at least 2 of these 3 coding languages: Ruby, Go, Python.

Preferred Qualifications:

  • Experience with static analysis tools (SAST/DAST), code scanning frameworks, or custom rule authoring.
  • Experience building agentic or AI-driven security tooling (e.g., automated triage, classification, or remediation).
  • Familiarity with software supply chain security concepts and tooling.
  • Experience working in large-scale monolith or distributed service codebases.
  • Familiarity with GitHub's products, platform, and developer ecosystem.
  • Strong expertise in security principles, including the Security Development Lifecycle (SDL), and experience in vulnerability management.

GitHub values

  • Customer-obsessed
  • Ship to learn
  • Growth mindset
  • Own the outcome
  • Better together
  • Diverse and inclusive

Manager fundamentals

  • Model
  • Coach
  • Care

Leadership principles

  • Create clarity
  • Generate energy
  • Deliver success

Who We Are

GitHub is the world’s leading AI-powered developer platform with 150 million developers and counting. We’re also home to the biggest open-source community on earth (and 99% of the world’s software has open-source code in its DNA). Many of the apps and programs you use every day are built on GitHub.
Our teams are dreamers, doers, and pioneers, leading the way in AI, driving humanitarian efforts around the globe, and even sending open source to Mars (and beyond!). At GitHub, our goal is to create the space you need to do your best work. We’re remote-first and offer competitive pay, generous learning and growth opportunities, and excellent benefits to support you, wherever you are—because we know that people flourish when they can work on their own terms.
Join us, and let’s change the world, together.

Equal Employment Opportunity

GitHub is made up of people from a wide variety of backgrounds and lifestyles. We embrace diversity and invite applications from people of all walks of life. We don't discriminate against employees or applicants based on gender identity or expression, sexual orientation, race, religion, age, national origin, citizenship, disability, pregnancy status, veteran status, or any other differences. Also, if you have a disability, please let us know if there's any way we can make the interview process better for you; we're happy to accommodate!

Product Security Engineer III

at GitHub

Back to all Cybersecurity jobs
GitHub logo
Industry not specified

Product Security Engineer III

at GitHub

Mid LevelNo visa sponsorshipCybersecurity

Posted 14 hours ago

No clicks

Compensation
Not specified

Currency: Not specified

City
Not specified
Country
Canada

**Product Security Engineer III** – GitHub | Remote (Canada) GitHub, the world's leading software development platform, is seeking a Product Security Engineer III to join its engineering team. This hands-on role focuses on building internal security platforms, tooling, and automation to protect GitHub's products at scale. Responsibilities include designing, building, and maintaining static analysis pipelines, agentic security tooling, supply chain defenses, and developer-integrated security controls. The ideal candidate is a seasoned software engineer with a strong passion for application security and a desire to solve security problems through code. This role requires experience in Python, Go, or another relevant programming language, as well as a solid understanding of static application security testing (SAST), dynamic application security testing (DAST), and software supply chain security. Candidates should have a minimum of 7 years of relevant experience, with at least 3 years focused on product security or a similar role. Strong problem-solving skills, a demonstrated ability to work effectively in a team, and exceptional communication skills are essential for this role. GitHub offers a remote-friendly work environment, with locations available in various Canadian provinces.

About GitHub

GitHub is the world’s leading platform for agentic software development — powered by Copilot to build, scale, and deliver secure software. Over 180 million developers, including more than 90% of the Fortune 100 companies, use GitHub to collaborate, and more than 77,000 organisations have adopted GitHub Copilot.

Locations

In this role you can work from Remote, Canada | Remote, Ontario Canada| Remote, Alberta Canada | Remote, British Columbia Canada

Overview

GitHub is transforming how the world builds secure software, and we are looking for a Product Security Engineer III to join our Product Security Engineering team. This is a hands-on engineering role focused on building internal security platforms, tooling, and automation that protect GitHub's products at scale.

You will design, build, and maintain the systems that make GitHub's security program run: static analysis pipelines, agentic security tooling, supply chain defenses, and developer-integrated security controls. The ideal candidate is a strong software engineer who is passionate about application security and wants to solve security problems through code. You will partner closely with product and engineering teams to ship security improvements that scale with the organization.


Responsibilities

  • Design, build, and maintain security tooling and automation, including static analysis pipelines, secret scanning workflows, and dependency analysis systems.
  • Contribute to scalable solutions that reduce recurring vulnerability patterns, focusing on preventing classes of vulnerabilities rather than addressing individual instances.
  • Build and improve agentic security tooling for automated triage, assessment, and remediation of security findings.
  • Develop security libraries, CI/CD integrations, and developer-facing tools that make the secure path the default path for engineering teams.
  • Contribute to supply chain security defenses, building detection and prevention systems that protect GitHub's software supply chain.
  • Collaborate with teams across the organization to address security risks and define new requirements and feature sets.
  • Analyze key metrics and KPIs to identify trends in security issues, evaluate the effectiveness of security tooling and automation, and recommend improvements to address gaps in measurement.

Qualifications

Required Qualifications:

  • 5+ years experience in security analysis, security research, cyber security, security engineering, or relevant area
    • OR Associate's Degree in a related field AND 4+ years experience in security analysis, security research, cyber security, security engineering, or relevant area
    • OR Bachelor's Degree in a related field AND 3+ years experience in security analysis, security research, cyber security, security engineering, or relevant area
    • OR Master's Degree in a related field AND 1+ year(s) experience in security analysis, security research, cyber security, security engineering, or relevant area
    • OR equivalent experience.
  • 1+ year(s) of experience in building security tooling and implementing solutions in complex environments.
  • 3+ years experience programming in at least 2 of these 3 coding languages: Ruby, Go, Python.

Preferred Qualifications:

  • Experience with static analysis tools (SAST/DAST), code scanning frameworks, or custom rule authoring.
  • Experience building agentic or AI-driven security tooling (e.g., automated triage, classification, or remediation).
  • Familiarity with software supply chain security concepts and tooling.
  • Experience working in large-scale monolith or distributed service codebases.
  • Familiarity with GitHub's products, platform, and developer ecosystem.
  • Strong expertise in security principles, including the Security Development Lifecycle (SDL), and experience in vulnerability management.

GitHub values

  • Customer-obsessed
  • Ship to learn
  • Growth mindset
  • Own the outcome
  • Better together
  • Diverse and inclusive

Manager fundamentals

  • Model
  • Coach
  • Care

Leadership principles

  • Create clarity
  • Generate energy
  • Deliver success

Who We Are

GitHub is the world’s leading AI-powered developer platform with 150 million developers and counting. We’re also home to the biggest open-source community on earth (and 99% of the world’s software has open-source code in its DNA). Many of the apps and programs you use every day are built on GitHub.
Our teams are dreamers, doers, and pioneers, leading the way in AI, driving humanitarian efforts around the globe, and even sending open source to Mars (and beyond!). At GitHub, our goal is to create the space you need to do your best work. We’re remote-first and offer competitive pay, generous learning and growth opportunities, and excellent benefits to support you, wherever you are—because we know that people flourish when they can work on their own terms.
Join us, and let’s change the world, together.

Equal Employment Opportunity

GitHub is made up of people from a wide variety of backgrounds and lifestyles. We embrace diversity and invite applications from people of all walks of life. We don't discriminate against employees or applicants based on gender identity or expression, sexual orientation, race, religion, age, national origin, citizenship, disability, pregnancy status, veteran status, or any other differences. Also, if you have a disability, please let us know if there's any way we can make the interview process better for you; we're happy to accommodate!

SIMILAR OPPORTUNITIES

No similar jobs available at the moment.