Skip to content
NEXTMOVEFDE careers · United States

Senior Product Security Engineer

AI summary of the role

Senior Product Security Engineer at a fast-growing consumer health company, responsible for embedding security into the SDLC and building AI-powered security automation.

What you’ll do

  • Design and deploy AI-powered security agents into CI/CD for automated code review, risk classification, and auto-remediation.
  • Build and operate security tooling across pipelines: SAST, SCA, secrets scanning, IaC validation, and supply chain integrity.
  • Conduct threat modeling, secure design reviews, and manual security assessments across apps, APIs, and infrastructure.
  • Partner with engineering teams as the embedded security voice, driving vulnerabilities to remediation without blocking progress.

What you’ll bring

  • 5+ years in product/application security or software engineering.
  • Experience building or operating AI-assisted security tooling (e.g., code review agents, automated triage pipelines).
  • Strong Python experience; familiarity with FastAPI, LangChain, or agentic frameworks is a plus.
  • Deep expertise in identifying and exploiting web, API, and application vulnerabilities beyond OWASP Top 10.

Technologies

Python · FastAPI · LangChain · CI/CD · SAST · SCA · secrets scanning · IaC · threat modeling · HIPAA

About Function Health

Membership-based service giving consumers 100+ lab biomarker tests plus AI-driven health insights and clinician guidance for a recurring annual fee.

Series B · 200–500 people

Source and classification

Internal deployment & tooling · Evidence for this classification:

data, and insights will directly shape our ability to attract, retain, and support exceptional talent. We are growing our team and seeking out world-class talent that deeply believes in our mission to positively impact global health, has a relentless bias toward action, and a growth mindset. Function fosters a collaborative and dynamic environment where every day we build the future. Role: Function Health is building out a dedicated product security team to protect our members and platform as we scale. As a Senior Product Security Engineer, you'll work shoulder-to-shoulder with engineering and product teams to embed security into every stage of development: design, code, test, and deploy. This role is hands-on and impact-driven. You'll be expected to identify risks, build guardrails, and ship tools that raise the security bar without slowing teams down. Our engineering org is moving
More from the job description

Company Overview: Function Health is the AI operating system for health, designed to empower people to live 100 healthy years. We are redefining how individuals understand, measure, and improve their health by moving beyond reactive care and enabling proactive, data-driven insight into human biology. Function has been recognized as one of Fast Company’s Most Innovative Companies of 2024, and is venture-backed by Andreessen Horowitz (a16z). Hundreds of thousands of members have joined Function to take control of their health. Through advanced diagnostics, deep biomarker testing, longitudinal data, and AI-enabled insights, Function equips members with actionable intelligence to take control of both the quality and length of their lives. Function recently announced a $298M Series B and is entering its next chapter of growth. As we scale, the quality and durability of our People systems, data, and insights will directly shape our ability to attract, retain, and support exceptional talent. We are growing our team and seeking out world-class talent that deeply believes in our mission to positively impact global health, has a relentless bias toward action, and a growth mindset. Function fosters a collaborative and dynamic environment where every day we build the future. Role: Function Health is building out a dedicated product security team to protect our members and platform as [... source excerpt omitted ...] shoulder-to-shoulder with engineering and product teams to embed security into every stage of development: design, code, test, and deploy. This role is hands-on and impact-driven. You'll be expected to identify risks, build guardrails, and ship tools that raise the security bar without slowing teams down. Our engineering org is moving toward AI-first code review, autonomous adversarial testing, and security gates that run without human approval for low-risk changes. You'd be building the systems that make that possible and safe. If you've been waiting for a security role where the answer to "can we automate this?" is usually yes, this is it. We're looking for someone who thri [... source excerpt omitted ...] ing hard technical problems, knows how to build security into systems the right way, and is excited about what AI-assisted engineering means for the future of the discipline. Key Responsibilities: Design and deploy AI-powered security agents into CI/CD: automated code review, risk classification, escalation logic, and where possible, auto-remediation. Build and operate the security tooling layer across our pipelines: SAST, SCA, secrets scanning, IaC validation, and supply chain integrity checks. Conduct threat modeling, secure design reviews, and manual security assessments across our apps, APIs, and infrastructure. Find vulnerabilities through proactive testing, not just scanner

How jobs are selected

Employer postings · Data from · Sources