Senior Security Engineer

RHODES FINANCIAL SERVICES LLCAugusta, GA
Hybrid

About The Position

The Senior Security Engineer – Product Security serves as the primary security partner to software development teams, helping ensure security is embedded throughout the software development lifecycle. This role is responsible for identifying and mitigating application security risks, conducting security assessments, managing TaxSlayer's bug bounty program, and supporting compliance and risk management initiatives. Working closely with engineering, product, and Information Security teams, this position helps protect sensitive taxpayer and financial data while fostering secure development practices across the organization.

Requirements

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field, or equivalent combination of education and experience.
  • Minimum of 5 years of experience in application security, product security, security engineering, or a related field.
  • Experience partnering closely with software development teams to integrate security into the development lifecycle.
  • Experience identifying and validating vulnerabilities in web applications, APIs, and cloud-based environments.
  • Strong knowledge of secure software development lifecycle (SDLC) practices.
  • Experience with threat modeling methodologies such as STRIDE, PASTA, or similar frameworks.
  • Knowledge of common vulnerability frameworks including OWASP Top 10 and CWE/SANS Top 25.
  • Experience with SAST, DAST, penetration testing, code review, and CI/CD security tools.
  • Strong understanding of web application, API, and cloud security principles.
  • Ability to assess and communicate technical security risks to technical and non-technical audiences.
  • Strong problem-solving, collaboration, and relationship-building skills.
  • Ability to balance security requirements with business objectives and product delivery schedules.

Nice To Haves

  • Preferred certifications include OSCP, OSWE, GWAPT, CSSLP, or comparable credentials.
  • Experience with bug bounty or vulnerability disclosure programs is strongly preferred.
  • Familiarity with regulatory frameworks including PCI DSS, SOC 2, FTC Safeguards Rule, IRS security requirements, CCPA, and related standards is preferred.

Responsibilities

  • Serve as the primary security point of contact for assigned Development teams, participating in sprint planning, architecture discussions, and design reviews.
  • Review product features, system designs, APIs, authentication mechanisms, and third-party integrations to identify and mitigate security risks.
  • Partner with engineering teams to integrate security controls early in the software development lifecycle and promote secure coding practices.
  • Conduct secure code reviews, threat modeling activities, architecture risk assessments, and security testing for applications and product releases.
  • Perform hands-on penetration testing and coordinate third-party testing efforts when appropriate.
  • Manage and optimize SAST, DAST, and CI/CD security tooling and processes.
  • Track identified vulnerabilities through remediation and collaborate with engineering teams to address findings.
  • Own day-to-day administration of the company's bug bounty program, including researcher engagement, submission triage, validation, and remediation coordination.
  • Monitor and report bug bounty program performance metrics and recommend process improvements.
  • Support governance, risk, and compliance initiatives, including audits and assessments related to PCI DSS, SOC 2, IRS security requirements, and other applicable regulations.
  • Contribute to enterprise risk management activities and maintain product-level security risk documentation.
  • Assist with security incident response activities, including investigation, root cause analysis, and remediation tracking.
  • Mentor engineering teams on secure coding practices, threat modeling, and product security best practices.
  • Other duties as assigned.

Benefits

  • Flexible Work Options
  • Generous Time Off
  • Full Time employees receive a robust PTO bank, plus paid holidays
  • Medical, Dental, and Vision insurance through Aetna and SunLife
  • Coverage options include: Employee Only, Employee + Spouse/Domestic Partner, Employee + Children, or Family
  • Access to a Wellness Program and on-site fitness facility
  • 401(k) with a 150% match on up to 3% of your contribution
  • Performance-based bonuses and regular salary reviews
  • Company-paid life insurance, short-term and long-term disability
  • Optional critical illness and accident insurance
  • Education assistance to support your professional development
  • Company-paid parking, company store, and unlimited free coffee
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service