Gong harnesses the power of AI to transform how revenue teams win. The Gong Revenue AI Operating System unifies data, insights, and workflows into a single, trusted system that observes, guides, and acts alongside the world’s most successful revenue teams. Powered by the Gong Revenue Graph, AI-powered intelligence, specialized agents, and trusted applications, Gong helps more than 5,000 companies around the world deeply understand their teams and customers, automate critical sales workflows, and close more deals with less effort. For more information, visit www.gong.io.
At Gong, you will join a company built on innovative products, ambitious goals, and passionate people. We are shaping the future of revenue intelligence and we want people who are excited to build what comes next. You will work with a team that dreams big, moves fast, and cares deeply about the craft and about each other. Here, transparency and trust are core to how we operate, and every person has the opportunity to make a visible impact. If you want to grow, stretch, and do work that truly matters, Gong is the place to do the best work of your career.
About Gong
At Gong, we’re transforming customer-facing teams with our AI-powered platform that understands conversations, guides sales professionals, and drives better business outcomes. Security and trust are foundational to everything we build.
As a Product Security Architect, you will shape how security is built, not just review it. You’ll work closely with engineering to influence architecture, guide design decisions, and ensure security is embedded across Gong’s platform from the earliest stages where decisions matter most, not just where they are validated. You’ll take on complex, real-world challenges across cloud-native systems and AI-driven features, where security must evolve alongside scale and speed. This role is not about checklists or gatekeeping, but about applying strong technical judgment, making pragmatic trade-offs, and enabling teams to build secure systems by design. If you’re looking to have a meaningful impact on a real product, collaborate with high-caliber engineering teams, and help define modern product security at scale, you’ll find this role both challenging and rewarding.
What Makes This Role Unique at Gong
- A product where security decisions truly matter - Gong processes and analyzes highly sensitive customer conversations at scale, creating unique challenges around data protection, privacy, and trust.
- AI is core to the product, not a side project - You’ll work in an environment where AI/ML is deeply embedded, addressing real-world security challenges that go beyond traditional application security.
- A platform operating at a meaningful scale - You’ll deal with high-volume data, distributed systems, and production environments where security decisions have immediate and visible impact.
- The opportunity to shape a growing security domain - Product security at Gong is still evolving, giving you the ability to influence direction, introduce new ideas, and build things the right way.
- A culture that values practical, engineering-driven security - Security is approached with a focus on real risk and practical solutions, not just compliance or process.
- High ownership with room to grow - You’ll have the autonomy to take initiative, drive changes, and expand your impact as the company and platform continue to scale.
What You’ll Do
- Shape security architecture where it matters most, partner with engineers early in the design phase to influence system architecture, define secure patterns, and make critical decisions before code is written
- Work hands-on with engineering teams to secure real systems review designs, dive into code and PRs when needed, and build small tools or proofs-of-concept to validate security assumptions
- Lead threat modeling and deep design reviews identify trust boundaries, abuse cases, and high-impact attack paths, and ensure controls hold up in real production environments
- Own security design for authentication, authorization, and APIs, including identity flows (OAuth/OIDC), session management, and multi-tenant access control
- Take ownership of complex security challenges across cloud-native, distributed, and AI-driven systems, where trade-offs are not obvious and solutions require both depth and pragmatism
- Drive secure-by-design practices at scale, build guardrails, reusable patterns, and reference architectures that make secure implementation the default
- Secure AI/ML features in production address risks such as prompt injection, data poisoning, model misuse, and data exposure in collaboration with AI teams
- Strengthen the software supply chain and CI/CD security to improve how dependencies, build pipelines, and artifacts are secured and validated
- Embed security into developer workflows, integrate SAST, DAST, SCA, IaC scanning, and secrets detection in a way that is effective and adopted
- Partner on high-severity vulnerabilities and incidents to drive root cause analysis, remediation, and long-term fixes that improve system resilience
- Raise the security bar across engineering mentor developers, influence design culture, and drive strong ownership of security
What You Bring
- 8+ years of experience in Product Security, Application Security, or Security Architecture
- Strong software engineering foundation with the ability to read code (e.g., Java, Python, JavaScript/TypeScript, React or similar), review PRs, and understand systems end-to-end.
- Deep understanding of application security principles (OWASP Top 10, secure design, common vulnerability classes)
- Experience securing cloud-native SaaS environments (AWS, GCP, and/or Azure), including containers and Kubernetes
- Strong knowledge of authentication and authorization systems, including OAuth2, OIDC, SAML, and secure API design
- Hands-on experience integrating security into CI/CD pipelines and developer workflows (SAST, DAST, SCA, secrets, IaC scanning)
- Experience with threat modeling and risk assessment methodologies
- Ability to analyze vulnerabilities end-to-end from code to architecture to production impact
- Strong communication skills and ability to influence engineering decisions without authority
Additional strengths:
- Ability to work closely with developers and influence engineering decisions
- Strong communication skills with both technical and business stakeholders
- A pragmatic approach balancing security, usability, and speed
Advantages:
- Experience securing AI/ML or LLM-based systems
- Experience with software supply chain security
- Experience in high-scale SaaS environments
浏览量
0
申请点击
0
Mock Apply
0
收藏
0
相似职位

Principal Application Security Engineer
Upstart · United States

Senior Security Researcher
Orca Security · Tel Aviv-Yafo, Tel Aviv District, Israel

Senior Security Engineer
Anduril · Sydney, New South Wales, Australia

Principal Systems Security Engineer
BAE Systems · Totowa, New Jersey, United States

Senior Cloud Security Engineer
Aurora · Seattle, Washington
关于Gong

Gong
Series DFalun Gong, also called Falun Dafa, is a new religious movement founded by Li Hongzhi in China in the early 1990s. Falun Gong has its global headquarters in Dragon Springs, a 173-hectare (427-acre) compound in Deerpark, New York, United States, near the residence of Li.
1,001-5,000
员工数
San Francisco
总部位置
$7.25B
企业估值
评价
10条评价
4.2
10条评价
工作生活平衡
2.8
薪酬
4.1
企业文化
4.3
职业发展
4.0
管理层
3.5
78%
推荐率
优点
Supportive team and management
Great benefits and health coverage
Collaborative and diverse work environment
缺点
Fast-paced and stressful environment
Heavy workload and high expectations
Work-life balance challenges
薪资范围
19个数据点
Junior/L3
Junior/L3 · Associate Data Analyst
1份报告
$97,650
年薪总额
基本工资
$75,500
股票
-
奖金
-
$97,650
$97,650
面试评价
1条评价
难度
3.0
/ 5
面试流程
1
Application Review
2
HR Screen
3
Hiring Manager Interview
4
Panel Interview
5
Offer
常见问题
Behavioral/STAR
Past Experience
Culture Fit
Recruiting Knowledge
最新动态
Mark Gong – loved by Rihanna and Lisa – on designing for the modern woman - South China Morning Post
South China Morning Post
News
·
1w ago
Elderly Woman’s 7.5-Year Sentence Highlights Harsh Repression Against Falun Gong Practitioners in China - NTD News
NTD News
News
·
1w ago
US Supreme Court hears Cisco bid to halt Falun Gong suit - The Sanford Herald
The Sanford Herald
News
·
1w ago
US Supreme Court hears Cisco bid to halt Falun Gong suit - Caledonian Record
Caledonian Record
News
·
1w ago