Sr. Security Engineer

IBM • Multiple Cities

Company

IBM

Location

Multiple Cities

Type

Full Time

Job Description

Introduction


A career in IBM Software means you’ll be part of a team that transforms our customer’s challenges into solutions.

Seeking new possibilities and always staying curious we are a team dedicated to creating the world’s leading AI-powered cloud-native software solutions for our customers. Our renowned legacy creates endless global opportunities for our IBMers so the door is always open for those who want to grow their career.

IBM’s product and technology landscape includes Research Software and Infrastructure. Entering this domain positions you at the heart of IBM where growth and innovation thrive.


Your role and responsibilities

We are looking for a senior-level Product Security Engineer to help scale our software supply chain and application security functions providing innovative solutions across the HashiCorp suite of industry-leading products available as cloud self-managed and community offerings.

At HashiCorp we're on a mission to enable organizations to provision secure connect and run any infrastructure for any application. Our security team plays a critical role in this mission by ensuring the security and integrity of our products throughout their lifecycle.

Security at HashiCorp is largely a remote team. While prior experience working remotely isn't required we are looking for team members who perform well given a high level of independence and autonomy while also collaborating effectively across engineering product and security teams.

In this role your responsibilities will include:
* Contribute to solutions that secure the software supply chain for HashiCorp products across our cloud self-managed and community product portfolio.
* Monitor supply chain security threats and vulnerabilities impacting HashiCorp products and services develop mitigations and assess/communicate associated risks to stakeholders.
* Serve as subject matter expert (SME) on multiple supply chain and application security areas (e.g. ASPM SCA SAST DAST container security etc.)
* Contribute to the development and maintenance of security solutions across the product life-cycle such as standalone security tools CI/CD pipeline integrations and vulnerability management systems.
* Research emerging supply chain attack vectors and techniques helping identify potential threats to HashiCorp's products.
* Collaborate with cross-functional teams to implement security standards and participate in secure code reviews.

The product security supply chain and application security team is composed of security engineers working to ensure HashiCorp delivers secure software to its customers. We provide tools and services that support product engineering teams at HashiCorp embedding security into the development processes. We are primarily responsible for security scanning secure code review application security posture management and contributing to vulnerability management across our entire product portfolio.

This role offers opportunities to:
* Work with and learn from experienced security engineers.
* Develop technical expertise across HashiCorp's diverse product portfolio.
* Build relationships with industry peers and contribute to the broader security community.
* Drive initiatives that have significant impact on product security.

We're looking for a candidate with strong written and verbal communication skills knowledge of supply chain and application security topics who brings a pragmatic approach to security and has the ability to empathize with engineers and product managers across the company.

Please note as communication is a critical aspect of how we work a cover letter is a great way to provide a sample of how you communicate. In your cover letter describe why you're interested in working at HashiCorp and what draws you to this role in particular.

Required education
High School Diploma/GED
Preferred education
Bachelor's Degree
Required technical and professional expertise


* 8+ years of security experience.
* Experience building or maintaining security automation within CI/CD pipelines; proficient with GitHub Advanced Security and GitHub Actions security considerations.
* Ability to balance security requirements with engineering velocity.
* Practical knowledge of application and infrastructure security testing methodologies and tools (SAST DAST SCA Container security).
* Familiarity with modern engineering practices processes and tools particularly related to the Go programming language and ecosystem.
* Experience with secure development practices and their integration into broader engineering activities.
* Understanding of software supply chain security concepts such as SBOM generation and vulnerability management best practices.
* Experience working with and supporting product engineering teams in cloud environments.


Preferred technical and professional experience

* Familiarity with container security and Kubernetes or Nomad environments.

Apply Now

Date Posted

12/09/2025

Views

0

Back to Job Listings ❤️Add To Job List Company Info View Company Reviews
Positive
Subjectivity Score: 0.7

Similar Jobs

Email Security Engineer - IBM

Views in the last 30 days - 0

This job description outlines a cybersecurity engineer role focused on email security container orchestration and cloud environments The position requ...

View Details

SAP Defense & Security lead Consultant - IBM

Views in the last 30 days - 0

This job posting seeks an SAP Defense Security Lead Consultant with expertise in implementing SAP solutions for defense and security clients The role...

View Details

Hardware Test Engineer Intern - IBM

Views in the last 30 days - 0

The internship offers opportunities to work on cuttingedge hardware testing and collaboration with engineering teams requiring technical skills and ed...

View Details

SAP Defense & Security lead Consultant - IBM

Views in the last 30 days - 0

IBM Consulting seeks an SAP Defense Security Lead Consultant with expertise in defense operations and SAP implementation The role involves solution d...

View Details

Lead Data Engineer Python and AWS - IBM

Views in the last 30 days - 0

This job posting highlights a Lead Data Engineer role at IBM emphasizing innovation collaboration and problemsolving in cuttingedge technology Respons...

View Details

MP&O Senior Consultant - IBM

Views in the last 30 days - 0

This job description outlines a role as an SAP Defense amp Security DampS Consultant requiring expertise in implementing solutions for public sector c...

View Details