
Hover or tap a row for full statistics (EUR / month on this chart).
Salary analysis
Compared with the selected benchmark ("All roles in Remote - Canada"), this listing's salary midpoint is about 28% lower. The offer still falls within the benchmark range (€12,046–€24,677). The listed pay band (€11,167–€15,333) is tighter than the benchmark, which suggests lower salary variability. This benchmark is based on 2 comparable listings.
| Market | Lower bound (25th percentile) | Median | Upper bound (75th percentile) |
|---|---|---|---|
| All roles in Remote - Canada | €12,046/per month | €16,748/per month | €24,677/per month |
| From job ad (Mid-Level) | €11,167/per month | €13,250/per month | €15,333/per month |
We’re looking for a Staff Product Security Engineer to lead the design and implementation of secure, scalable, and trustworthy products spanning AI, data, and cloud-native systems. You’ll work closely with engineering, data science, and infrastructure teams to embed security by design throughout the product lifecycle. What You’ll Do - Embed robust security practices throughout the software and AI development lifecycle (SDLC). - Lead secure design reviews, threat modeling, and risk assessments for AI-driven products, APIs, and backend services. - Partner with engineering and product teams to ensure security, privacy, and compliance by design. - Build and maintain security automation and governance frameworks that integrate seamlessly into development workflows. - Architect and enforce security controls for AI/ML systems, including model training, data pipelines, and inference environments. - Identify and mitigate AI-specific attack vectors such as data poisoning, model inversion, prompt injection, and model theft. - Collaborate with governance and compliance teams to align with ethical AI principles and frameworks like NIST AI RMF and the EU AI Act. - Implement model provenance, integrity, and auditability controls to ensure responsible and secure AI operations. - Partner with DevOps and SRE teams to secure service meshes, container networking, and secrets management. - Drive software supply chain security, including artifact integrity, dependency management, and vulnerability reduction. - Build internal frameworks for continuous assurance and real-time vulnerability management. - Define and maintain reference security architectures for microservices, APIs, and AI-powered systems deployed in the cloud. - Mentor teams on secure coding, containerization best practices, and AI risk management. - Promote a security-first culture through advocacy, documentation, and training. - Represent product security in cross-functional initiatives and leadership discussions. What We Are Looking For: Required: - 7+ years of experience in product or application security engineering. - Deep understanding of secure SDLC, threat modeling, and secure architecture design. - Proven expertise with AWS cloud security concepts and best practices. - Strong experience with container security, orchestration, and runtime protection. - Proficiency in Python, Java, and/or JavaScript for security automation, code review, and tooling. - Experience securing AI/ML pipelines, data workflows, or model-serving infrastructure. - Familiarity with DevSecOps and continuous integration/deployment environments. - Familiarity with encryption fundamentals, including symmetric and asymmetric cryptography, TLS/mTLS, key management, and secrets handling best practices. - Demonstrated ability to drive cross-functional security initiatives, partnering with engineering, product, and legal teams to embed security requirements into roadmaps, influence architectural decisions, and align stakeholders across organizational boundaries. Nice to Have: - Experience with GCP or Azure cloud platforms. - Knowledge of AI and LLM security. - Experience with software supply chain security and artifact integrity verification. - Familiarity with compliance and governance frameworks (SOC 2, ISO 27001, NIST 800-53, NIST AI RMF). - Understanding of authentication and authorization patterns in modern applications, including OAuth 2.0, OIDC, SAML, RBAC, and ABAC. - Certifications such as CKS (Certified Kubernetes Security Specialist), CISSP, CSSLP, or AI/ML-focused security credentials.
Job Details
Responsibilities
- Embed security practices throughout the software and AI development lifecycle (SDLC)
- Lead secure design reviews, threat modeling, and risk assessments for AI products and APIs
- Build security automation and governance frameworks for development workflows
- Architect security controls for AI/ML systems, including model training and data pipelines
- Mitigate AI-specific attack vectors like prompt injection and data poisoning
- Align AI operations with ethical principles and frameworks like NIST AI RMF and EU AI Act
- Secure service meshes, container networking, and secrets management with DevOps/SRE teams
- Drive software supply chain security and artifact integrity
- Define reference security architectures for cloud-deployed microservices and AI systems
- Mentor teams on secure coding and AI risk management
Requirements
- 7+ years of experience in product or application security engineering
- Deep understanding of secure SDLC, threat modeling, and secure architecture design
- Proven expertise with AWS cloud security concepts and best practices
- Strong experience with container security, orchestration, and runtime protection
- Proficiency in Python, Java, and/or JavaScript
- Experience securing AI/ML pipelines, data workflows, or model-serving infrastructure
- Familiarity with DevSecOps and CI/CD environments
- Familiarity with encryption fundamentals (symmetric/asymmetric, TLS/mTLS, key management)
- Ability to drive cross-functional security initiatives with engineering, product, and legal teams
Skills & Technologies
Benefits & Perks

Related Opportunities
Discover more opportunities that match your interests and skills