Job Closed

This listing is no longer active.

ServiceTitan logo
ServiceTitan

The operating system for the trades

Director, Product Security Engineering

Security EngineerSecurity EngineerOtherRemoteLeadTeam 1,001-5,000Since 2012H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

137 days ago

Salary

$221.4K - $296.1K / year

Seniority

Lead

Bachelor Degree7 yrs expEnglishAzure

Job Description

Director, Product Security Engineering

ServiceTitan

• Define the long-term vision and technical strategy for the secure development pipeline, ensuring alignment with the overall R&D and business objectives. • Oversee the unified strategy for our tooling ecosystem (GHAS, Wiz, Terra). You will ensure these tools act as automated checkpoints, providing fast, high-fidelity feedback loops for engineers. • Transform our vulnerability management from a "ticket queue" into a risk-based model. You will own the "Risk Acceptance" and "SLA Adherence" processes, ensuring timely focus on what matters. • Design the structure, incentives, and operational logistics for the Security Champions Program to democratize secure development across 80+ squads. • Move away from annual compliance videos to contextually relevant micro-trainings enabling our engineers to develop highly secure solutions. • Build and sustain deep, trust-based partnerships with Engineering leaders and individual contributors to embed security into the software development lifecycle. • Operationalize tools and ticketing pipelines to generate and maintain "Squad Health" scores. You will use data to drive accountability. • Define and track key performance indicators (SAST/SCA remediation rates, Cloud Security Posture scores, Time-to-Fix) to measure the effectiveness of the "Secure Paved Road" and report risk reduction to executive leadership. • Translate the Product Security vision into an actionable, multi-year strategy and operating plan. • Lead, mentor, and grow a team of high-performing Product Security Engineers, fostering a culture of ownership, accountability, and automation.

Job Requirements

  • 7+ years of experience in Product/Application Security, with 3+ years in a Director or Senior Manager role, preferably with a background in software engineering.
  • Proven track record of defining, driving, and scaling security engineering programs across large, distributed engineering organizations.
  • Deep, hands-on experience securing cloud native platforms with a preference for Azure, including architecting the deployment and configuration of CSPM, SAST, and SCA platforms such as Wiz, Orca, and GitHub Advanced Security.
  • Exceptional organizational and communication skills, with the ability to manage complex technical roadmaps, align stakeholders, and drive consensus across engineering, product, and leadership.
  • Experience managing security through data. You know how to define SLAs, track "burn down" rates, and present "Squad Health" metrics to engineering leaders.
  • A passion for shifting security "left" and a track record of implementing security-as-code and automation to achieve security at scale.
  • Demonstrated experience in leveraging AI in the Software Development and Product Security lifecycle.

Benefits

  • Flextime, recognition, and support for autonomous work: Flexible time off with ample learning and development opportunities to continue growing your career. We offer a comprehensive onboarding program, leadership training for Titans at all levels, and other programs and events.
  • Great work is rewarded through Bonusly, peer-nominated awards, and more.
  • Holistic health and wellness benefits: Company-paid medical, dental, and vision (with 100% employer paid options and 90% coverage for dependents), FSA and HSA, 401k match, and telehealth options including memberships to One Medical.
  • Support for Titans at all stages of life: Parental leave and support, up to $20k in fertility services (i.e. IUI and IVF), surrogacy, and adoption reimbursement, on demand maternity support through Maven Maternity, free breast milk shipping through Maven Milk, pet insurance, legal advisory services, financial planning tools, and more.

Related Categories

Related Job Pages

More Security Engineer Jobs

Dropzone AI logo

Senior Security Engineer

Dropzone AI

AI SOC Analysts that never sleep. So you can.

Security Engineer137 days ago
OtherRemoteTeam 11-50Since 2023H1B No Sponsor

• Build into and improve the product by writing investigation flows, building integrations with security tools, and fixing bugs. • Evolve the investigation logic and pipelines to handle new classes of security alerts, balancing accuracy, performance, and maintainability • Contribute directly to our Python codebase while influencing architectural decisions and long-term product strategy • Review and analyze investigations performed by our AI to identify strengths, weaknesses, and opportunities for improvement, and then translate those insights into product enhancements. • Partner with GTM and customer success teams to influence technical direction, prioritize features, and ensure we’re solving the most impactful problems for defenders • Provide technical leadership and mentorship to other engineers • Periodically participate in a 24x7 on-call rotation

United States
$175K - $217K / year

Senior Security Engineer – Application Security

Turnkey

Turnkey, founded in 2022 and headquartered in New York, New York, provides secure and scalable crypto infrastructure focused on embedded wallets and on-chain transaction automation

Security Engineer137 days ago

• You will partner with Product and Engineering at both the design and development stage to ensure that we implement new features securely, including (but not limited to): - Participating in the implementation efforts - Doing security reviews - Helping with product design decisions - Auditing and surfacing vulnerabilities in our current products - Conducting threat modeling and security assessments for new features and systems, identifying risks early and shaping secure architectural decisions. - Developing and improving our Automated Tooling: further enhancing our automated tooling to scale our product security capabilities and find potential code problems both before and after we deploy - Making the safe way, the easy way: work on defining and building application guardrails so that developers can build securely by default - Investigating and remediating security issues, including vulnerabilities and incidents, and drive long-term improvements to prevent recurrence - Embedding a culture of secure development across engineering, defining practices that influence how Turnkey builds, deploys, and maintains systems at scale.

United States

Senior Security Engineer, Corporate Security

Turnkey

Turnkey, founded in 2022 and headquartered in New York, New York, provides secure and scalable crypto infrastructure focused on embedded wallets and on-chain transaction automation

Security Engineer137 days ago

• Build & Secure Corporate Infrastructure • Design, implement, and manage security for endpoints and distributed systems; deploy and operate our security stack (MDM, EDR/XDR, ZTNA, SSO); enforce zero-trust principles, least-privilege access, and hardening standards • Drive Security Initiatives & Risk Reduction • Lead initiatives around endpoint hardening, access controls, and vendor risk; conduct security design reviews, risk assessments, and vulnerability remediation; develop and enforce security policies and best practices. • Detection, Response & Automation • Respond to security incidents with urgency and technical depth; collaborate on detection rules, alerts, and monitoring; automate workflows and create runbooks and playbooks to scale security operations efficiently. • Foster Security Culture & Education • Evangelize security best practices, build awareness programs, and partner with teams to embed “secure by default” principles into workflows; serve as a trusted security advisor across the organization.

United States
Docker, Inc logo

Senior Security Engineer

Docker, Inc

Docker helps developers bring their ideas to life by conquering the complexity of app development.

Security Engineer137 days ago
Full TimeRemoteTeam 51-200H1B No Sponsor

• Work with leadership to align security initiatives with business goals, ensuring that security is a core component of product and infrastructure • Take ownership and drive implementation for key programs such as vulnerability management, cloud governance, and product security • Serve as a security subject matter expert for software security and architecture • Partner with engineering to design and implement security architecture and controls across Docker products and platforms • Perform security design reviews and threat modeling of emerging AI products • Integrate security into SDLC through security requirements, design assessments, and automated security testing • Manage Docker’s Vulnerability Disclosure Program (VDP) by validating submissions, and working with engineering to resolve confirmed issues • Design and enforce security configurations in cloud environments (e.g. AWS, GCP, Azure) according to industry best practices • Establish automated monitoring and alerting to detect security anomalies across our environments • Serve on rotating on-call schedule to respond to security incidents, investigate threats, and coordinate remediation efforts • Educate and collaborate with cross-functional teams (e.g., engineering, product) to promote security practices

France
€135.8K - €186.8K / year
Job Closed