Product Infrastructure Security Engineer

Palantir Palantir · Enterprise · Washington, DC · Information Security

Palantir is seeking a Product Infrastructure Security Engineer to ensure the security of their software and infrastructure. This role involves performing security reviews, contributing to architecture and design, leading strategic security initiatives, and identifying/resolving vulnerabilities. The position requires a strong understanding of security principles and a drive to build secure products, particularly within the context of defense, intelligence, and commercial applications.

What you'd actually do

  1. Product security reviews. You will perform full-scope security reviews of our current and future product and service portfolio. You will work with offensive security teams, engineering teams, and other members of the InfoSec organization to harden our products against our dedicated adversaries.
  2. Architecture and design. You will be the security subject matter expert for product architects and engineers. You will threat model, assess risks, and help implement security controls and mitigations to address identified issues. You will directly steer the design of our products to ensure we are secure-by-default.
  3. Strategic security initiatives. You will be empowered to own transformational security initiatives that have broad impact across Palantir's most critical platforms. Members of the Product Infrastructure Security Team work directly to secure Palantir's core products, including AIP, Foundry, Gotham, and Mission Manager.
  4. Vulnerability identification and analysis. You will be responsible for finding new and novel ways to identify and resolve security vulnerabilities in our product infrastructure. This includes posture analysis and management, infrastructure vulnerability scanning, investigation of security reports, and direct work with our incident response team on product security issues and incidents.

Skills

Required

  • Security reviews
  • Threat modeling
  • Risk assessment
  • Security controls implementation
  • Vulnerability identification
  • Vulnerability analysis
  • Posture analysis
  • Infrastructure vulnerability scanning
  • Incident response
  • Secure-by-design principles

Nice to have

  • Curiosity
  • Tenacity
  • Drive to be a world-class security engineer

What the JD emphasized

  • mission-critical information
  • advanced persistent threats
  • mission critical work
  • secure-by-design
  • secure software and infrastructure
  • secure products and infrastructure
  • secure-by-default
  • secure Palantir's core products