WFH.teamOpen app
Back to remote jobs
Remote job detail

Product Security Engineer

Coinbase

LocationCanada
Senioritymid_senior
CompanyCoinbase
Verified recentlyChecked today
Compensation

From $154k

Salary details are shown when available from the source listing. Sign in before applying so the role can be reviewed against your resume, salary goals, seniority, timezone, and location eligibility.

Requirements and working style

Decision details from the source listing

Experience

3+ years stated

Work authorization

Authorization to work in Canada

Benefits stated
Medical insuranceDental insuranceVision insurance

These fields are normalized from the employer's text. Confirm details on the employer site before applying.

WFH.team analysis

What this posting tells you

Product Security Engineer role at Coinbase, remote in Canada (remote-first with quarterly in-person sessions). Mid-senior level with 3+ years experience in offensive security and AI-related security tooling. Base salary about 154,000 CAD (~114,000 USD). Full-time role focused on AI-augmented vulnerability detection and red teaming AI. Benefits include medical, dental, and vision insurance.

Role lane

Backend, Finance and investments, Healthcare admin, Legal, Product, QA and testing, Security, Software, Writing and content

Where you can work

Canada

Working hours

Timezone overlap is not stated.

Arrangement

mid_senior · full_time

Required signals
Application securityPenetration testingOffensive securityBuilding custom security toolingUsing LLMs or frontier AI models in securityRed teaming AI systemsOWASP Top 10SANS Top 25PythonGoSecurity tooling developmentGenerative AI with human oversight
Confirm before applying
  • Required timezone overlap is not stated
Market context

Backend hiring on WFH.team

5,700active related roles
2,379new in the latest period
267.7jobs per 100 candidates
$206kmedian of comparable listed ranges

This role's listed pay is below the median among 200 comparable roles shown here. Category counts come from WFH.team's latest published remote job market snapshot.

Explore the remote job market
Skills and signals
Application securityPenetration testingOffensive securityBuilding custom security toolingUsing LLMs or frontier AI models in securityRed teaming AI systemsOWASP Top 10SANS Top 25PythonGoSecurity tooling developmentGenerative AI with human oversightRemote - Canada (remote-first with quarterly in-person sessions)
Job description

Product Security Engineer at Coinbase

Ready to do the most impactful work of your career? At Coinbase , we are uncompromising on our mission to increase economic freedom. The bar is high, the environment is intense, and we like it that way. This isn't a place for complacency, it’s a place to be pushed past your perceived limits. If you're ready to build the future of finance alongside people who refuse to settle for "good enough," you belong here. Coinbase is a remote-first, but not remote-only company. Expect to get together quarterly for intense in-person working sessions called “surges.” learn more about working at Coinbase .

As an Offensive Security Engineer on the Application Security team within Security, you'll pioneer how Coinbase uses frontier AI models to scale vulnerability discovery, red team AI systems, and automate security workflows. This role bridges traditional penetration testing with next-generation AI-augmented offensive security, directly accelerating our ability to protect products and customers. You'll own the development of AI-driven security tooling and collaborate across Vulnerability Management, Offensive Security, and Incident Response to fundamentally shift how we operate.

What you'll do

  • Build, deploy, and maintain custom security scanners that leverage frontier models to detect vulnerabilities at scale across Coinbase's product surface.
  • Lead red teaming efforts against internal AI systems, including jailbreak testing, prompt injection analysis, and tool abuse simulation.
  • Develop AI-driven automation for vulnerability triage, validation, and remediation workflows to accelerate the bug bounty and vulnerability response pipelines.
  • Partner with engineering teams to prioritize, remediate, and verify fixes for critical vulnerabilities discovered through AI-augmented and manual testing.
  • Mentor junior security engineers on integrating AI into offensive security workflows to scale team capabilities.

Required Skills and Experience

  • 3+ years of experience in application security, penetration testing, or offensive security with demonstrated ability to build custom security tooling.
  • Hands-on experience using LLMs or frontier models to automate security tasks, scale vulnerability research, or build security scanners.
  • Demonstrated experience red teaming AI-based systems (prompt injection, jailbreak testing, tool abuse).
  • Deep understanding of common vulnerability classes (OWASP Top 10, SANS Top 25) and proven track record identifying and exploiting them in production environments.
  • Proficiency in at least one programming language (Python, Go, or similar) with experience writing production-grade security tooling.
  • Utilizes generative AI responsibly, maintaining human oversight to deliver business-ready outputs and drive measurable improvements in workflow efficiency, cost, and quality.

Pay Transparency Notice: The target annual base salary for this position can range as detailed below. Total compensation may also include equity and bonus eligibility and benefits (including medical, dental, and vision).

Annual base salary range (excluding equity and bonus)

$154,000 — $154,000 CAD

  • Application Limit: Candidates may submit a maximum of 3 applications within a 6-month period.
  • Equal Opportunity Employer: Coinbase is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or genetic information. Applicants with criminal histories will be considered consistent with applicable federal, state, and local laws.
  • US Applicants: View Employee Rights , Know Your Rights , and E-Verify Notice of Participation.
  • Accommodations: If you are an individual with a disability who needs a reasonable accommodation, email us your request and contact info at accommodations[at]coinbase.com. Need screen reading technology? Click here to download a free compatible screen reader and view the tutorial .
  • Data Privacy & Arbitration: By submitting your application, you agree to our Candidate Privacy Notice . US applicants: By submitting your application, you agree to Arbitration of Disputes .
Company context

Working remotely at Coinbase

The world’s leading exchange for digital currencies.

Headquarters
United States, Singapore, India, Japan, Canada, United Kingdom, Ireland, Germany, and Philippines
Team size
1001-5000
Founded
2012
Remote policy

Remote hiring signal is inferred from active confirmed-remote job listings.

Application process

Review current openings on Coinbase's official careers page before applying.

React NativeNode.jsDjangoRuby on RailsJavaScriptPythonHTML5JavaCSS 3Ruby
Research Coinbase