Product Infrastructure Security Engineer

Palantir Palantir · Enterprise · New York, NY · Information Security

This role focuses on product security infrastructure, performing security reviews, architecture assessments, threat modeling, and vulnerability identification for Palantir's core products like AIP, Foundry, and Gotham. It emphasizes enabling engineering teams to build secure and resilient products.

What you'd actually do

  1. Product security reviews. You will perform full-scope security reviews of our current and future product and service portfolio. You will work with offensive security teams, engineering teams, and other members of the InfoSec organization to harden our products against our dedicated adversaries.
  2. Architecture and design. You will be the security subject matter expert for product architects and engineers. You will threat model, assess risks, and help implement security controls and mitigations to address identified issues. You will directly steer the design of our products to ensure we are secure-by-default.
  3. Strategic security initiatives. You will be empowered to own transformational security initiatives that have broad impact across Palantir's most critical platforms. Members of the Product Infrastructure Security Team work directly to secure Palantir's core products, including AIP, Foundry, Gotham, and Mission Manager.
  4. Vulnerability identification and analysis. You will be responsible for finding new and novel ways to identify and resolve security vulnerabilities in our product infrastructure. This includes posture analysis and management, infrastructure vulnerability scanning, investigation of security reports, and direct work with our incident response team on product security issues and incidents.

Skills

Required

  • Product security reviews
  • Architecture and design
  • Threat modeling
  • Risk assessment
  • Security controls implementation
  • Vulnerability identification and analysis
  • Posture analysis and management
  • Infrastructure vulnerability scanning
  • Incident response collaboration

Nice to have

  • Curiosity
  • Tenacity
  • Drive to be a world-class security engineer

What the JD emphasized

  • mission-critical information
  • advanced persistent threats
  • mission critical work
  • product security issues and incidents