Product Security Engineer
Vercel · Hybrid - San Francisco, New York City, London, Berlin
Posted about 2 months ago · $208,000.00 - $312,000.00
or apply directly on Vercel's site. We never take the application ourselves.
Is this posting real?
- This role has been open
- 55 days Vercel's roles stay open a median of 56 days
- Reposted
- No
- Salary listed
- Yes 79% of Vercel's roles list one
- Ghost-job risk at Vercel
- high 74 stale, 3 reposted of 91 open
- Hiring momentum
- 109 roles opened in the last 90 days ↑ up vs. the prior 90 days
- Last confirmed on the employer's board
- 2026-09-28
Measured from postings appearing on and disappearing from Vercel's own greenhouse board since 2026-08-03. Full hiring picture for Vercel.
About this role
As a Product Security Engineer at Vercel, you will focus on building systems that automate the triage and validation of bug bounty submissions and other security findings at scale. Your role involves developing tooling that assesses the validity and severity of vulnerabilities, connects findings to their root causes, and proposes automated fixes. You will also manage the bug bounty program and extend security testing capabilities to customers, all while rethinking traditional security practices for a larger operational scale.
- benefits
- 3/5
- freshness
- 1/5
- career value
- 4/5
- role clarity
- 5/5
- pay transparency
- 5/5
Scored from the posting itself — how clearly the role is described, how much it says about pay and benefits, and how recently it was listed. Not a judgement of Vercel as an employer.
What you need
- Strong software engineering background
- Understanding of vulnerability triage and validation
- Curiosity about agentic and LLM-based security tooling
- Root cause and systems thinking
- Comfortable defining new practices
- Proficiency with JavaScript/TypeScript and Node.js runtime security
Nice to have
- Experience running or triaging a bug bounty / vulnerability disclosure program
- Experience testing or securing multi-tenant platforms
- Built systems that auto-generate or auto-propose code fixes
- Thought about security testing as a product capability for customers
- Relevant security certifications or recognitions
What you get
- Competitive compensation package, including equity
- Inclusive Healthcare Package
- Mentorship and events for skill building
- Flexible Time Off
- Gear and WFH budget provided
Worth weighing
- Role emphasizes building systems over manual penetration testing
- No specific mention of working with legacy technology
- Location-specific in-office requirements for certain candidates
- Base pay range provided only for San Francisco, with potential adjustments for other locations
Summarised from Vercel's posting. Read the full original.
Listed by Vercel on their greenhouse job board, last confirmed open on 2026-09-28. PitchMeAI is not the employer.
More roles at Vercel
- Software Engineer, CDN ContentHybrid - San Francisco
- Technical Account ManagerHybrid - London, Berlin
- Senior Security Software Engineer, v0Hybrid - San Francisco, New York City, London, Berlin
- Solutions ArchitectHybrid - San Francisco, New York City, Austin
- Product Communications ManagerHybrid - San Francisco
- Sales Development Representative, UK&IHybrid - London
- Product Strategy & OperationsHybrid - San Francisco
- Director, Commercial Sales, EMEAHybrid - London