All roles

[Remote] Platform Consultant - Product Security

Remote · USA Full-time New today

Note: The job is a remote job and is open to candidates in USA. Allstate is a company dedicated to protecting families and their belongings from life's uncertainties. They are seeking a visionary Platform Consultant with deep engineering expertise to guide engineering teams through complex technical challenges and shape platform strategies focused on security solutions.

Responsibilities

  • Serve as a trusted consultant to engineering teams and organizations, guiding secure platform design and implementation across diverse product domains
  • Communicate clearly and effectively ensuring business and engineering needs are met
  • Foster effective collaborative sessions with teams from different disciplines and leadership levels
  • Embed secure-by-design principles and deep threat modeling practices into the development lifecycle, ensuring security is foundational—not bolted on
  • Define and communicate Allstate’s security posture clearly to technical and business leadership, enabling informed decision-making
  • Lead the ideation and implementation of innovative security controls that challenge the status quo and elevate Allstate’s embedded security maturity
  • Drive forward engineering practices that adapt to evolving technologies, enabling scalable, resilient, and efficient platforms
  • Mentor engineers and platform consultants in systems thinking, reusable design, and outcome-based delivery
  • Influence cross-functional teams through Discovery & Framing sessions, architectural reviews, and strategic planning
  • Promote and enforce architectural standards, simplification, and reuse across the enterprise
  • Actively participate in agile ceremonies and foster a culture of continuous learning and iterative delivery

Skills

  • Extensive experience (8+ years) in software engineering, platform development, or architecture roles, with increasing technical leadership responsibilities in complex enterprise environments
  • Demonstrated success as a high-impact technical advisor to multiple engineering teams, with proven ability to influence architecture direction and mentor engineers in best practices
  • Expert-level knowledge of Agile/XP and DevOps methodologies, including paired programming, test-driven development (TDD), and CI/CD automation, with a track record of using these practices to accelerate delivery and improve quality
  • Hands-on expertise in architecting and delivering large-scale distributed systems, such as cloud-native microservices on Docker/Kubernetes, deployed on modern cloud platforms (AWS, Azure, or equivalent), ensuring scalability, high availability, and performance
  • Broad technical proficiency across multiple programming languages and frameworks (especially Java and JavaScript ecosystems), and comfort with modern development tools (e.g., IntelliJ or VS Code, Git/GitHub, Spring Boot) and designing robust RESTful APIs
  • Exceptional analytical and problem-solving skills, combined with excellent communication abilities to clearly convey complex technical and security concepts to both engineering teams and senior business leaders
  • In-depth knowledge of industry security frameworks and web/API security standards – e.g., OWASP Top 10, MITRE ATT&CK, OAuth 2.0, OpenID Connect, SAML – to guide secure design and development practices
  • Deep expertise in security architecture and secure-by-design practices, including advanced threat modeling, robust identity and access management (IAM) strategies, and Zero Trust architectures – with a proven ability to embed these controls at all stages of the development lifecycle
  • Broad technical proficiency across multiple programming paradigms – in addition to Java and JavaScript experience, deep experience with procedural (e.g., Go, Rust) and functional (e.g., F#, Elixir, Haskell, Clojure) programming languages is a strong signal of architectural proficiency
  • Technical proficiency with AI tools such as running local models, developing MCP servers, using AI powered development tools like cursor/copilot/claude code/codex/etc. to help drive your work more efficiently and test for effective model deployment strategies
  • Demonstrated expertise in API-first design and specification-driven development (e.g., OpenAPI, Swagger), enabling scalable, discoverable, and reusable services. Proven ability to shape developer experience and accelerate delivery through contract-first approaches, while laying the foundation for AI-assisted development and automated API governance
  • Deep understanding of modern cryptographic principles and protocols (e.g., AES, TLS, Argon2, elliptic curve cryptography), with the ability to evaluate, implement, and advise on secure data protection strategies. Skilled in applying cryptographic techniques to strengthen trust boundaries, safeguard sensitive data, and ensure compliance with enterprise and regulatory security standards
  • Experience with advanced development and testing practices, such as behavior-driven development (BDD) and integrating automated security checks into CI/CD pipelines
  • Familiarity with emerging technologies (e.g., AI/ML, knowledge graph solutions, advanced analytics) and their application to improve developer velocity, platform reliability, and security capabilities
  • Exposure to specialized security domains like AI Security, SaaS Security, and API Security, with an understanding of the unique challenges and tools in these areas

Company Overview

  • Allstate is an insurance company that offers car, home, and life insurance services. It is a sub-organization of Allstate. It was founded in 1931, and is headquartered in Northbrook, Illinois, USA, with a workforce of 10001+ employees. Its website is http://www.allstate.com.
  • Company H1B Sponsorship

  • Allstate has a track record of offering H1B sponsorships, with 3 in 2024, 1 in 2023. Please note that this does not guarantee sponsorship for this specific role.
  • Apply To This Job

    Related roles

    [Remote] Account Manager

    Remote · USA Full-time

    [Remote] Principal Back-End Network Engineer - AI Infrastructure Operations

    Remote · USA Full-time

    [Remote] 340B Program Analyst

    Remote · USA Full-time

    [Remote] Product Manager (Care Navigation & Member Search)

    Remote · USA Full-time

    [Remote] Account Manager

    Remote · USA Full-time

    [Remote] Senior Electrical Engineer - Mission Critical - Remote

    Remote · USA Full-time

    [Remote] Director, Business Development

    Remote · USA Full-time

    [Remote] Senior Analyst, Predictive Analytics and Machine Learning

    Remote · USA Full-time

    [Remote] Business Development Executive (Florida)

    Remote · USA Full-time

    [Remote] Principal Technical Program Manager

    Remote · USA Full-time

    Remote Part-Time Night Customer Support Specialist - Flexible Night Shift Roles

    Remote · USA Full-time

    Experienced Data Entry Specialist – Remote Opportunity at arenaflex

    Remote · USA Full-time

    Terms of Reference: Review of the AADFI Prudential Standards, Guidelines, and Rating System (PSGRS)

    Remote · USA Full-time

    Remote Sales - No Experience Needed - Earn Big, Live Free

    Remote · USA Full-time

    Experienced Remote Customer Service Representative – Providing Exceptional Support to Customers Across Various Programs and Services

    Remote · USA Full-time

    Experienced Remote Data Entry Specialist – High-Precision Data Management for arenaflex

    Remote · USA Full-time

    Nonprofit Grant Writer & Fundraising Storyteller (Pitch Decks + Light Design)

    Remote · USA Full-time

    Experienced Chat Support Specialist for Moms – Flexible Work-from-Home Opportunity

    Remote · USA Full-time

    Flexible Remote Data Entry Specialist – Work From Home Opportunities | arenaflex

    Remote · USA Full-time

    Director Of Premium Sales and Service [Remote]

    Remote · USA Full-time