368,634open jobs
9,437companies
50,578added this week
Browse all
Salary
$250k – $275k per year
Location
Remote (United States)
Seniority
Senior · 8+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Jobgether is an AI-powered job platform focused on remote and flexible work. It matches candidates with relevant roles using skills and preference-based algorithms, and also offers career coaching and job-search guidance.

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior Manager, Product Security based in United States.

The Senior Manager, Product Security will lead and scale a modern product security program within a fast-moving, AI-forward engineering environment.

You’ll set the strategic direction for product security while remaining close enough to the technology to guide architecture, risk decisions, and technical execution.

The role combines people leadership, security strategy, developer enablement, vulnerability management, and hands-on technical problem solving.

You’ll partner closely with Engineering, Product, Infrastructure, Legal, Compliance, and executive stakeholders to embed security throughout the development lifecycle.

A major focus will be using AI and automation to increase security coverage, reduce manual effort, and address emerging risks from AI-powered and agentic systems.

You’ll help build scalable guardrails and secure-by-default practices that protect cloud-native, multi-tenant products without slowing innovation.

This is an influential leadership opportunity for a technically credible security professional who thrives on ambiguity, ownership, collaboration, and continuous improvement.

Accountabilities:

    • Define and execute the product security strategy, roadmap, operating model, priorities, and success metrics in alignment with organizational objectives and product risk.
    • Lead, hire, mentor, and develop product security engineers while establishing a culture centered on technical excellence, accountability, curiosity, trust, and sustainable execution.
    • Partner with Engineering, Product, Infrastructure, Legal, Compliance, and executive stakeholders to influence product and architecture decisions through practical, risk-based security guidance.
    • Establish scalable security practices across the software development lifecycle, including security requirements, architecture reviews, threat modeling, security testing, remediation, and secure-by-default development.
    • Use AI and automation to expand security coverage and reduce manual work through capabilities such as automated security reviews, vulnerability triage, risk identification, and agentic security workflows.
    • Partner with product and engineering teams to identify and mitigate security risks associated with AI-powered features and systems, including prompt injection, data leakage, model abuse, excessive agency, and insecure tool use.
    • Guide secure architecture and platform controls for cloud-native, multi-tenant products, APIs, integrations, and workflow systems.
    • Establish consistent frameworks for identifying, communicating, prioritizing, and accepting product security risks so engineering resources remain focused on the highest-impact issues.
    • Own the product vulnerability management lifecycle, including internal findings, customer reports, penetration tests, vulnerability disclosure, and bug bounty submissions, while driving timely risk-based remediation.
    • Build or sponsor secure developer tooling, automated controls, CI/CD integrations, paved roads, and reusable security workflows that make secure development easier and more efficient.
    • Provide product security leadership during security incidents, coordinating investigations, remediation, stakeholder communications, on-call participation, and post-incident improvements.
    • Develop security champions, training programs, documentation, and technical guidance that enable engineering teams to make secure decisions independently, including when using AI-assisted development tools.
    • Establish meaningful product security metrics and communicate risks, investments, progress, and tradeoffs effectively to technical and executive audiences.
    • Support customer and partner security discussions, independent security assessments, and relevant external security engagements.
    • Requirements:

      • 8+ years of experience in application security, product security, or closely related security engineering roles, including experience securing cloud-native SaaS products.
      • 5+ years of people management or technical leadership experience, with demonstrated success developing engineers and building effective security teams or programs.
      • Strong experience defining product security strategy, translating strategy into actionable roadmaps, and prioritizing investments according to business and technical risk.
      • Deep technical knowledge of modern application security, secure architecture, threat modeling, OWASP Top 10, and secure SDLC practices.
      • Proven ability to partner with Engineering and Product leadership to deliver meaningful security outcomes without creating unnecessary friction.
      • Experience using AI and automation to scale security programs, including LLM-assisted code review, automated vulnerability triage, or agentic security workflows.
      • Experience securing cloud environments, preferably AWS, as well as containerized infrastructure using technologies such as Docker and Kubernetes.
      • Working knowledge of modern programming languages and the ability to evaluate application code, architecture, and technical designs; experience with Ruby, TypeScript, and/or Rust is highly desirable.
      • Experience with application security testing and vulnerability management technologies, including SAST, DAST, SCA, secrets detection, and CI/CD security integrations.
      • Strong understanding of DevSecOps and experience designing secure-by-default developer workflows.
      • Experience leading or coordinating product security activities during incident response, including technical investigation, stakeholder communication, and post-incident improvement.
      • Excellent written and verbal communication skills, with the ability to explain technical risks, business impact, priorities, and tradeoffs to engineers, technical leaders, and executives.
      • Experience operating a public vulnerability disclosure or bug bounty program, including triage, researcher communication, remediation, and program measurement.
      • Strong judgment, analytical thinking, organizational skills, and the ability to manage ambiguity and competing priorities.
      • Leadership style grounded in trust, clarity, empathy, accountability, and continued technical engagement.
      • Experience securing AI/ML systems, LLM-powered features, or agentic systems is strongly valued, particularly around prompt injection, model abuse, data leakage, tool-use risks, and AI threat modeling.
      • Familiarity with frameworks such as MITRE ATLAS and the OWASP Top 10 for LLM Applications is a plus.
      • Experience with multi-tenant SaaS security, secure developer platforms, automation workflows, or regulated environments such as FedRAMP and DoD Impact Level environments is advantageous.
      • A bachelor's degree or relevant professional certifications may be beneficial, though demonstrated technical expertise and leadership capability are the primary considerations.
      • Benefits:

        • Target annual compensation of $250,000-$275,000, plus equity.
        • Remote work opportunity within the United States.
        • Opportunity to lead and shape a growing product security program in an AI-forward engineering environment.
        • Significant influence over security strategy, architecture, developer experience, and emerging AI security practices.
        • Opportunity to build and develop a high-performing product security team.
        • Exposure to modern cloud-native, multi-tenant SaaS architecture and evolving AI-powered technologies.
        • A culture emphasizing simplicity, speed, soundness, curiosity, growth, integrity, and collaborative ownership.
        • Equal employment opportunities and an inclusive working environment.
        • Applicants must be authorized to work for any U.S. employer; employment visa sponsorship is not currently available.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,634 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$136k – $253k per year • Equity • Remote/Hybrid • Full-Time • 10+ years exp • Frisco • New York • Toronto • Ann Arbor
Python
SQL
Java
Java
Flyway
AI/ML
AWS Bedrock
Claude
LLM
Anthropic
AWS Bedrock AgentCore
LLM Guardrails
LLMOps
DevOps
Amazon EKS
AWS
CI/CD
Datadog
Docker
Kubernetes
Apply
$73k – $183k per year (Estimated) • Remote/Hybrid • Full-Time • 6+ years exp • Zug
Python
Python
FastAPI
Databases
PostgreSQL
Redis
AI/ML
AI Agents
AWS Bedrock
AWS Bedrock AgentCore
LLM
DevOps
Amazon EKS
AWS
AWS CDK
CI/CD
Datadog
Kubernetes
OpenTelemetry
Platform Engineering
Apply
SR AI ENGINEER, SMAI 5 hours ago
In office • Full-Time • 2+ years exp • Bachelor's Degree • Taoyuan
JavaScript
Python
SQL
TypeScript
Python
FastAPI
AI/ML
AI Agents
Function Calling
LLMOps
Prompt Engineering
Quantization
RAG
Streamlit
Frontend
Angular
React.js
DevOps
AWS
Azure
CI/CD
Docker
GCP
GitHub
GitHub Actions
Kubernetes
OpenShift
Apply
$24k – $63k per year (Estimated) • In office • Full-Time • 6+ years exp • Master's Degree • India
Crystal
Groovy
JavaScript
Perl
Python
Ruby
SQL
TypeScript
Java
Java
Apache Tomcat
Gradle
Hibernate
Maven
Spring Boot
Spring MVC
Databases
Apache Kafka
Db2
Oracle
PostgreSQL
RabbitMQ
AI/ML
Fine-tuning
Frontend
Angular
JQuery
DevOps
Apache HTTP Server
AWS
Azure
CI/CD
Docker
GCP
Jenkins
Kubernetes
Rest API
Cybersecurity
Checkmarx
SonarQube
Apply
$64k – $189k per year (Estimated) • Remote/Hybrid • Full-Time • 1+ year exp • Bachelor's Degree • Singapore
Python
SQL
Databases
Apache Kafka
AI/ML
Amazon SageMaker
Kubeflow
MLFlow
Spark
Vertex AI
DevOps
AWS
Azure
Azure DevOps
CI/CD
Docker
GCP
GitLab
GitLab CI
Jenkins
Kubernetes
Apply
$152k – $229k per year • Remote • Full-Time
AI/ML
Human-in-the-Loop
Apply
$162k – $180k per year • Remote • Full-Time • 5+ years exp • Bachelor's Degree
Python
SQL
Databases
Snowflake
AI/ML
dbt
DevOps
AWS
Cybersecurity
HIPAA
Zero Trust
Analytics
ETL/ELT
Apply
$14k – $32k per year (Estimated) • Remote • Full-Time • 2+ years exp • Bachelor's Degree
DevOps
Incident Management
Management
ServiceNow
Apply
$29k – $60k per year (Estimated) • Remote • Full-Time • 8+ years exp
DevOps
Azure
Azure DevOps
Apply
$26k – $69k per year (Estimated) • Remote • Full-Time • 12+ years exp • Bachelor's Degree
Apply
See all jobs
This is one of many
368,634 more open roles from verified company boards, updated every day.