Skip to content

Open nowPosted 3 days ago

Product Security — Doppel

Bessemer portfolio2,538 open roles

Pay
$175,000 – $200,000 a year
Where
United States; US Remote; Toronto, ON; San Francisco; New York
Work mode
Remote
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowProduct Security — DoppelBessemer portfolio · United States; US Remote; Toronto, ON; San Francisco; New York
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Bessemer portfolio's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.4% of postings close within 7 days. Measured by our own scanner across the market. Bessemer portfolio postings stay open a median of 29 days.

Share of postings closed within
  1. 1.5%1 day
  2. 3.5%3 days
  3. 7.4%7 days
  4. 13.2%14 days
  5. 34.5%30 days
This job: posted 3 days ago

Bessemer portfolio median: 29 days open

The posting

Why Join Doppel

Doppel is building the future of social engineering defense. Our AI-native platform uses agentic AI to protect executives, employees, customers, and brands from phishing, impersonation, fraud, and other AI-powered threats across digital channels. We help some of the world’s most recognized brands detect and dismantle attacker infrastructure while strengthening employee resilience through threat-informed training and simulation. By unifying Digital Risk Protection, Human Risk Management and Email Security, Doppel connects threats into a real-time intelligence graph to power faster disruption, smarter defense, and modern security awareness at scale.

Backed by leading investors including Andreessen Horowitz and Bessemer Venture Partners, and trusted by leading enterprises, Doppel is a rapidly growing Series C startup building the future of social engineering defense. Our team combines deep cybersecurity expertise, operational rigor, and startup velocity to solve some of the internet’s most urgent trust and safety challenges.

The Role

At Doppel, we focus on building a culture where people feel respected, supported, and trusted to do meaningful work. We value clarity, collaboration, and solving real problems for our customers and teammates.

We’re looking for a Product Security Engineer to support and scale our product and cloud security efforts by embedding security into engineering workflows and serving as a subject matter expert on all things security. The candidate will partner closely with engineering teams to conduct architecture reviews, design secure solutions to complex problems, improve and maintain our tooling (both first and third-party) and guardrails, and help design a well-rounded security program in a world where code gets written by AI and velocity is ever increasing. In addition to hands-on execution, the role emphasizes enablement providing guidance, documentation, and mentorship to engineers, along with clear communication and reporting to security leadership.

This role is open remotely across the U.S. and Canada, or hybrid from our New York, San Francisco, or Toronto office.

What You Will Do

  • Partner with product and engineering teams on architecture reviews, threat modeling, and secure design, translating complex security risks into practical recommendations and clear tradeoffs.
  • Evaluate and roll out AI-assisted and agentic security workflows to increase security coverage and accelerate reviews, triage, and remediation, with appropriate validation and human oversight.
  • Improve and maintain our first- and third-party security tooling, including our in-house ASPM platform, to reduce noise, improve prioritization, and make findings easier for engineering teams to act on.
  • Strengthen security controls throughout the SDLC and CI/CD pipeline, including code and dependency scanning, software supply chain protections, and safeguards for AI-assisted development, without introducing unnecessary friction.
  • Serve as a GCP security subject matter expert, advising engineering teams on secure patterns for networking, data protection, secrets management, workload runtimes, and logging and monitoring.
  • Partner with infrastructure and engineering teams to implement least-privilege IAM, secure workload identities, and durable security guardrails through policy and infrastructure-as-code.
  • Drive vulnerability management from triage through resolution: validate findings, assess risk, establish ownership, track remediation against SLAs, and document exceptions and risk acceptance.
  • Coordinate penetration testing engagements, including vendor selection, scoping, testing logistics, findings validation, and remediation and retesting with engineering teams.
  • Help shape and scale our product security program by identifying gaps, prioritizing improvements, and communicating risk, progress, and outcomes to security leadership.
  • Enable engineers to make sound security decisions through practical documentation, reusable guidance, targeted training, and mentorship that keeps pace with how teams build and ship.

What We Are Looking For

  • 5–7 years of experience in product security, cloud security engineering, software development or a related field.
  • Practical experience applying AI and agentic workflows to accelerate security reviews, vulnerability triage, and remediation, with a strong understanding of the security risks associated with AI-assisted development.
  • Strong knowledge of Google Cloud Platform (GCP) services and security best practices, including IAM, networking, data protection, and workload runtimes.
  • Hands-on experience with penetration testing coordination, threat modeling, and risk assessment.
  • Demonstrated proficiency in Python and cloud-native programming or scripting languages to design and maintain security automation, policy enforcement, and continuous compliance controls using Infrastructure as Code.
  • Familiarity with designing and enforcing least-privilege IAM and conducting access reviews.
  • Ability to communicate security risks and recommendations clearly to engineering and leadership audiences.

Why Join Doppel

  • $175,000 - $200,000 USD. Compensation for candidates based in Canada will be aligned to our Canadian compensation bands and may differ based on location.
  • Meaningful equity so you share in Doppel’s success
  • Remote-first culture with flexibility built in
  • Quarterly offsites and frequent opportunities to travel to our offices
  • Flexible PTO, comprehensive health benefits, parental leave, and more
  • A high growth environment where your work has immediate impact and visibility

Join Doppel

Doppel is the first platform built to dismantle digital deception at scale. We scan over 150 billion entities daily and deploy continuously adaptive AI SOC agents, paired with expert human analysts, to uncover and disrupt the infrastructure behind phishing, impersonation, and online fraud before attacks can spread. Our Threat Grid turns every customer signal into shared intelligence, making each disruption smarter, faster, and more effective.

We’re not just another cybersecurity company. We’re defining the future of social engineering defense, where trust is protected, and deception becomes unprofitable. Backed by top-tier investors and trusted by some of the world’s most recognized brands, Doppel is growing fast. If you’re driven to solve real-world problems with bold technology, we’d love to meet you.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Bessemer portfolio's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Bessemer portfolio's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Bessemer portfolio's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.