
Product Security Technical Manager
Posted 5 days ago

Posted 5 days ago
This is a fully remote position, open to applicants in California, +2 more states.
• Oversee the application security team and facilitate collaboration among developers, cloud services, and cybersecurity compliance.
• Create and oversee a secure coding initiative in partnership with developers, engineering leaders, and product teams.
• Set up secure coding guidelines, standards, training, code review methodologies, and risk-based remediation processes.
• Integrate, deploy, configure, and sustain application and cloud security scanning tools, such as Wiz Code.
• Incorporate security checks and feedback within CI/CD pipelines.
• Evaluate security findings, assist in root-cause analysis, and offer remediation suggestions.
• Help establish application security metrics, reporting, and risk-management procedures.
• Engage in cybersecurity incident response, which includes investigation, evidence analysis, containment support, root-cause analysis, and lessons learned.
• Investigate new vulnerabilities, attack techniques, security tools, and defensive strategies.
• Assist with application security assessments, threat modeling, vulnerability management, and security evaluations.
• Guide engineers and security professionals on secure design, coding, testing, and operational best practices.
• Foster relationships across software engineering, DevOps, cloud infrastructure, IT, cybersecurity, compliance, and security operations teams.
• Advocate for a practical, risk-based security culture that supports secure software delivery.
• Must be a U.S. Citizen.
• To qualify, must be a U.S. Person: U.S. citizen, permanent resident, Asylee, or Refugee.
• Bachelor’s degree in cybersecurity, computer science, information technology, or a related field; equivalent professional experience may be taken into account.
• At least 7 years of experience in cybersecurity, application security, product security, security engineering, or a related field.
• Proven experience in managing secure coding and application security initiatives.
• Experience in deploying and maintaining security scanning tools within software development and CI/CD environments.
• Familiarity with static analysis, software composition analysis, secrets detection, container security, infrastructure-as-code scanning, and cloud security evaluation.
• Practical experience in supporting cybersecurity incident response and investigations.
• Proficiency in modern AI tools for incident investigation, summarization, and vulnerability remediation.
• Working understanding of software development practices, source control, CI/CD pipelines, development frameworks, and modern IDEs.
• Capability to write or modify scripts for automation, analysis, testing, and security operations.
• Strong grasp of common vulnerabilities and secure software design principles.
• Ability to communicate technical risks and recommendations effectively.
• Demonstrated capacity to mentor others and influence teams.
• Export Control/ITAR compliance may necessitate U.S. person status.
• Robust 401(k) with company match.
• Mental health resources.
• Student loan repayment assistance.
• Adoption reimbursement.
• Pet insurance.
• Incentive-eligible compensation based on contribution, company performance, and/or individual results.
EXL
Reli Group
Second Nature
ASRC Federal
Get handpicked remote jobs straight to your inbox weekly.