Deepening the Science of Security
Engineering Director, Application Security
Location
United States
Posted
121 days ago
Salary
$250K - $300K / year
Seniority
Lead
Job Description
Engineering Director, Application Security
Trail of Bits
• Craft and execute a forward-thinking vision for your specialty area, aligning with the company's objectives while demonstrating thought leadership in the cybersecurity community. • Drive business expansion by identifying new market opportunities, developing innovative service offerings, and expanding existing services to enhance client engagement and departmental growth. • Lead and mentor a diverse team of security engineers, fostering a culture of continuous growth, improvement, and innovation in technical and consulting skills. • Oversee the delivery of high-quality work products, closely collaborating with client teams to understand and meet client needs. • Contribute to a culture where every team member takes ownership of integrating AI into their workflows. • Collaboratively manage the practice’s budget, focusing on cost optimization and revenue growth while driving profitability and operational efficiency improvements. • Lead performance and career development within your team, influencing hiring decisions and contributing to client and internal projects. • Build and maintain strategic partnerships within and outside the organization, ensuring effective communication and alignment of goals. • Actively engage in innovative problem-solving and lead critical projects and decision-making processes that drive the department’s success.
Job Requirements
- 10+ years of experience in professional services delivery, including technical leadership roles and leading technical teams through client engagements.
- Consulting background with significant contributions to client projects, encompassing strategic planning, leading teams, project management within tight deadlines, and expertise in proposal development, project scoping, and driving sales to delivery.
- Proficiency in providing specialized technical security services, including Secure Code Reviews, Dynamic Application Testing, Fuzzing, Threat Modeling and Design Reviews, Cloud Native Assessments, iOS/Android security, Containers and Orchestration security.
- Proficiency in using AI tools and at least 4 modern programming languages or frameworks, including, but not limited to, Rust, Go, Python, C/C++, Python, and JavaScript.
- In-depth understanding of application security, with the ability to identify and mitigate vulnerabilities effectively.
- Knowledgeable in static and dynamic analysis testing methods and the tools for efficient and secure software.
- Excellent interpersonal and communication skills, capable of engaging with a diverse range of stakeholders, understanding their needs, and delivering measurable results.
- Expertise and an engineering mindset in application security, with a continuous commitment to keeping abreast of industry trends and challenges.
- Active contribution to the field through research, speaking engagements, development of security tools, or other thought leadership activities.
Benefits
- Competitive salary complemented by performance-based bonuses.
- Fully company-paid insurance packages, including health, dental, vision, disability, and life.
- A solid 401(k) plan with a 5% match of your base salary.
- 20 days of paid vacation with flexibility for more, adhering to jurisdictional regulations.
- 4 months of parental leave to cherish the arrival of new family members.
- $10,000 in relocation assistance to support your transition if moving to NYC.
- $1,000 Working-from-Home stipend to create a comfortable and productive home office.
- Annual $750 Learning & Development stipend for continuous personal and professional growth.
- Company-sponsored all-team celebrations, including travel and accommodation, to foster community and recognize achievements.
- Philanthropic contribution matching up to $2,000 annually.
Related Guides
Related Categories
Related Job Pages
More Engineering Manager Jobs
Engineering Director – Carrier Distributed Products
EthosEthos blends industry expertise and technology to provide accessible and affordable life insurance coverage.
• Set vision and strategy for carrier distributed products, including packaging, modularity, configuration, and long term platform bets • Define the roadmap across distribution experiences, underwriting and requirements, servicing and case management, data and reporting, and admin tooling • Drive prioritization across reusable roadmap investments and carrier driven needs • Create a multi tenant and configurable product foundation: entitlements, feature flags, templates, configuration schemas, and safe customization patterns • Establish release, migration, and backward compatibility practices so carriers can adopt improvements without disruption • Define the operational model: support readiness, incident management interfaces, runbooks, and carrier facing SLAs • Lead discovery across carrier distribution leaders, operations, compliance, and technology teams to understand channel realities: independent agents, call centers, D2C, worksite, and embedded flows • Translate needs into product capabilities such as quoting and eligibility flows, pre fill, underwriting journeys, application UX, drop off recovery, agent tooling, and conversion optimization • Build feedback loops to continuously improve outcomes after launch • Create a repeatable carrier onboarding playbook: implementation phases, launch criteria, cutover plans, training, and documentation • Define carrier facing environments and tooling: sandboxes, test data, certification, monitoring access, and audit reporting • Partner with Implementation and Customer Success to reduce time to value and cost to serve • Manage and develop product managers and product leaders as the team scales • Set product operating rhythms: roadmap reviews, launch readiness, discovery standards, and decision forums • Communicate clearly to executives: tradeoffs, investment needs, timelines, and business impact
VP of Engineering – Carrier Distributed Products
EthosEthos blends industry expertise and technology to provide accessible and affordable life insurance coverage.
• Set vision and strategy for carrier distributed products • Define the roadmap across distribution experiences • Drive prioritization across reusable roadmap investments • Create a multi-tenant and configurable product foundation • Establish release, migration, and backward compatibility practices • Define the operational model • Lead discovery across carrier distribution leaders • Build feedback loops to continuously improve outcomes • Create a repeatable carrier onboarding playbook • Partner with Implementation and Customer Success
• Actively coach and mentor a team of engineers, fostering their career growth through personalized development plans, regular 1:1s, and actionable feedback loops. • Provide technical guidance and architectural oversight for event-driven, service-oriented systems that power claim servicing, refunds, exchanges and reverse logistics, ensuring the team builds scalable, maintainable, and high-quality software. • Collaborate closely with Product Managers, Designers, and Operations leaders to define the roadmap for claim servicing and fulfillment, translate business requirements into technical specifications, and ensure the team is creating the right value and solving the right problems related to post-purchase customer experiences. • Own the end-to-end delivery of complex features and projects utilizing Agile methodologies and an AI-native SDLC to maintain a predictable shipping cadence while balancing speed, quality, and operational impact. • Cultivate a high-trust, collaborative environment where engineers are empowered to take risks, share ideas, and drive outcomes, with a strong sense of ownership over the reliability and usability of our post-purchase flows. • Drive the strategic adoption of AI across the team by championing an AI-native SDLC while also partnering with product teams to define and deliver AI-native product capabilities. • Drive the team’s operational standards—including on-call rotations, incident response, monitoring, alerting, and automated testing—to ensure the reliability, performance, and correctness of claim fulfillment flows. • Continuously evaluate and improve engineering workflows (e.g., planning, solution design, CI/CD pipelines, code review processes, sprint planning) to remove bottlenecks, increase developer velocity, and ensure quality. • Serve as the primary point of communication for the team, effectively managing expectations with leadership and cross-functional partners regarding timelines, tradeoffs, risks, and capacity allocation.
Senior Engineering Manager, Dev Tools
Nomic FoundationA non-profit dedicated to Ethereum's development platform and OSS infrastructure.
• Actively participate in technical discussions, providing high-level guidance and expertise during code reviews and design decisions. • Act as a mentor and sounding board for technical decisions, ensuring alignment with project goals while empowering individual ownership. • Take ownership of projects, ensuring on-time delivery with the desired features and quality. • Work with the team to define MVPs, set milestones, and assess project feasibility. • Manage project scope by prioritizing tasks, identifying dependencies, and mitigating risks. • Collaborate with product managers to translate user needs and market trends into a technical roadmap. • Motivate and guide engineers to achieve their full potential, fostering a culture of learning and development. • Implement and improve processes such as performance reviews, career development plans, and efficient hiring practices. • Establish a clear team structure with roles and ownership well-defined. • Increase transparency within the team by sharing information on other Nomic projects and initiatives. • Champion the team's achievements and deliverables to other departments. • Proactively communicate with leadership and stakeholders to address concerns, clarify direction, and ensure alignment across teams and with the community. • Articulate a clear vision for the team's mission, challenges, and milestones, connecting their work to Nomic's broader goals.



