Adobe
Product Security Engineer 3
Full details on LinkedIn
The complete job description, requirements, and application details are available on the original posting.
View Full Job Details on LinkedInAbout Adobe
Adobe Inc. is a prominent American multinational software company, founded in December 1982 by John Warnock and Charles Geschke. Headquartered in San Jose, California, Adobe specializes in software for creating, editing, and publishing digital content across various media, including graphics, photography, video, and print. Adobe is well-known for its flagship products such as Photoshop for image editing, Illustrator for graphic design, and Premiere Pro for video editing. The company has also developed tools for digital media and publishing, including Acrobat for document sharing and Adobe XD for user experience design. With the transition to a subscription model through Adobe Creative Cloud, users gain access to a wide range of applications and continuous updates. Adobe's products cater to a diverse audience, including creative professionals, marketing agencies, enterprises, educational institutions, and publishers. The company is recognized as an industry standard in creative software and digital marketing solutions, empowering millions of users worldwide to create and manage digital content effectively.
Security at Adobe
Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.
Security Philosophy
- Adobe emphasizes a secure-by-default, shift-left approach that focuses on solving security issues at their root cause by embedding security early into requirements, architecture, design, and coding.
- The Secure Product Lifecycle (SPLC) provides repeatable security activities across design, development, deployment, and operations.
- Automation and scalable controls are prioritized to enable continuous security coverage and reduce cost and risk.
Security Team
- Cross-functional security organization comprising product security researchers, Product Security Incident Response Team (PSIRT), and the Adobe Cyber Defense Center.
- Works closely with product and service development teams and with internal and external security research communities (internal bug bounties, external bug bounty program, PSIRT-managed disclosure).
Key Initiatives
- Primary initiatives include the Adobe Secure Product Lifecycle (SPLC) to shift security left.
- Secure-by-design and secure development practices.
- Automation to scale coverage (static/dynamic analysis, SCA, configuration detection).
- Threat modeling and security reviews during design.
- Training and a security champion model.
- PSIRT-led vulnerability disclosure and bug bounty programs.
- Measurement via dashboards, KPIs, and quarterly SPLC adoption reviews.
Preparing for an AppSec interview?
Get the weekly briefing 2,000+ security pros trust.
Interested in this role?
Apply on LinkedIn