Upstart logo
Upstart

Our mission is to enable effortless credit based on true risk.

Senior Security Engineering Manager, Product Security

Engineering ManagerEngineering ManagerFull TimeRemoteSeniorTeam 1,001-5,000Since 2012H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

7 days ago

Salary

$190.6K - $263.9K / year

Seniority

Senior

Bachelor Degree8 yrs expEnglishAWSCloudKubernetesSDLC

Job Description

Senior Security Engineering Manager, Product Security

Upstart

• Define and lead the Security Engineering roadmap across application security, infrastructure security, offensive security, and product security, aligning priorities with Upstart’s business objectives, engineering strategy, regulatory expectations, and risk posture. • Manage, coach, and develop a team of security engineers, ensuring clear goals, measurable impact, sustainable execution, effective operating rhythms, and growth opportunities for each team member. • Partner with Engineering, Product, Infrastructure, Data, Risk, Compliance, and Audit leaders to identify high-priority security risks, align on pragmatic mitigations, and embed security requirements early in planning, design, development, and operations. • Scale secure-by-design practices across the SDLC, including threat modeling, security architecture reviews, secure coding practices, automated security testing, vulnerability management, API security, CI/CD protections, secrets management, and developer security enablement. • Strengthen infrastructure and cloud security by partnering with Infrastructure and Platform teams on secure architecture, identity and access controls, Kubernetes and container security, cloud-native security controls, and defense-in-depth across application and infrastructure layers. • Build and mature offensive security capabilities, including attack surface management, adversarial testing, security validation, penetration testing coordination, bug bounty intake, and prioritization of findings into durable engineering improvements. • Improve product security outcomes by partnering with Product and Engineering teams to identify abuse cases, security requirements, customer-impacting risks, and scalable controls for high-trust product experiences. • Drive consistent execution across cross-functional initiatives by setting priorities, clarifying ownership, communicating tradeoffs, and ensuring high-impact security work is delivered with quality and urgency. • Establish and improve Security Engineering metrics, operating models, and reporting so leaders can understand risk posture, remediation progress, recurring patterns, program health, and the effectiveness of security investments. • Support response to high-severity security issues by coordinating technical investigation, stakeholder communication, root cause analysis, remediation tracking, and durable improvements that prevent repeat issues. • Foster a culture where security enables innovation by building trusted partnerships, mentoring engineering leaders, and helping teams adopt practical controls that improve safety without unnecessary friction.

Job Requirements

  • 8+ years of experience in security engineering, software engineering, infrastructure engineering, offensive security, product security, or related technical security roles.
  • 3+ years of experience managing, leading, or formally developing security engineers or technical teams.
  • Experience leading security engineering programs in at least two of the following domains: application security, infrastructure security, offensive security, product security, cloud security, or secure SDLC.
  • Experience partnering with Engineering, Product, Infrastructure, Risk, Compliance, or Audit stakeholders to deliver cross-functional security initiatives.
  • Experience with modern application and infrastructure architectures, including APIs, web applications, cloud-native services, CI/CD pipelines, identity and access controls, and common vulnerability classes.
  • Experience defining roadmaps, priorities, metrics, and operating processes for security programs with cross-functional dependencies.
  • Experience building or scaling a security engineering function, including team operating models, roadmap planning, prioritization frameworks, metrics, and executive-level reporting. (preferred)
  • Experience managing security work in a regulated environment, financial technology company, or organization with high security, privacy, or compliance requirements. (preferred)
  • Knowledge of AWS, Kubernetes, containers, CI/CD security, infrastructure-as-code security, identity and access management, vulnerability management, API security, and modern application security testing practices. (preferred)
  • Experience implementing or scaling security tooling such as SAST, DAST, SCA, IaC scanning, secrets detection, attack surface management, bug bounty intake, penetration testing workflows, vulnerability management platforms, or developer security guardrails. (preferred)
  • Familiarity with security considerations for AI/ML systems, data-intensive applications, lending or financial technology platforms, or other high-trust customer-facing products. (preferred)
  • Ability to communicate technical risk, tradeoffs, and recommendations clearly to technical, non-technical, and senior leadership audiences. (preferred)
  • Experience partnering with Engineering, Product, Infrastructure, Legal, Risk, Compliance, and Audit teams to deliver security outcomes without creating unnecessary friction. (preferred)
  • Security certifications such as CISSP, CSSLP, CCSP, AWS Security Specialty, GIAC, OSCP, or equivalent practical expertise. (preferred)

Benefits

  • Competitive compensation, including base pay, bonus opportunities, and annual equity grants that vest quarterly
  • Retirement benefits to help you plan for the future, including a 401(k) or Group Retirement Savings Plan with a company match of $2 for every $1 contributed, up to $15,000 annually (USD in the US, CAD in Canada)
  • Employee Stock Purchase Plan (ESPP) with discounted stock purchase options for eligible employees (US only)
  • Comprehensive health coverage designed to support you and your family, including medical, dental, vision, and wellness resources for US and supplemental health coverage for Canada.
  • Health Savings Account contributions from Upstart for eligible plans (US only)
  • Income protection benefits, including life insurance and disability coverage for added financial security
  • Paid time off, sick leave, and company holidays, in line with local requirements
  • Paid family and parental leave to support caregiving and major life moments (duration varies by country)
  • Family-centered benefits to support fertility, parenthood, and caregiving needs
  • Employee Assistance Program (EAP) offering mental health support and life-centered resources
  • Financial wellness resources, including access to financial planning tools and a financial concierge service (US Only)
  • Annual wellness allowance to support your physical and emotional well-being and personal development, based on what matters most to you
  • Annual productivity allowance to invest in relevant tools and resources you need to do your best work, no matter where you work from
  • Connection and community through team events, all-company updates, and employee resource groups (ERGs)
  • Onsite perks, including catered lunches and fully stocked micro-kitchens when working from one of our offices in the Bay Area, Austin, Columbus, and New York City (opening Summer 2026!)

Related Categories

Related Job Pages

More Engineering Manager Jobs

Full TimeRemoteTeam 11-50

Role Description Magpie Health Analytics is seeking a hands-on Engineering Manager to lead a multidisciplinary team of front-end engineers, full stack developers, Python developers, and data engineers supporting federal health consulting projects. This role blends billable client delivery, technical leadership, team mentorship, and internal process improvement. The Engineering Manager will contribute directly to client projects while helping the team deliver high-quality, secure, and scalable technical solutions for government clients. Magpie's work includes mission-critical program operations, data governance, digital platforms, and advanced analytics for the federal government. Qualifications - Bachelor's degree in Computer Science, Engineering, or related field - 7+ years of software engineering, application development, or data engineering experience - Strong experience with Python and modern full-stack development practices - Experience writing clean, reliable, and reusable code for large-scale production systems - Experience managing multidisciplinary engineering teams - Clear communication skills with executives and cross-functional teams - Commitment to equipping federal teams with documentation, training, and mentoring to sustain improvements - Strong communication, problem-solving, and organizational skills - Familiarity with AI-assisted engineering tools and workflow automation - Experience with cloud platforms (AWS), DevOps, and data pipelines Requirements - Lead, mentor, and support a team of software and data engineering professionals. - Contribute directly to billable client projects and technical delivery. - Support federal health projects involving cloud-based platforms, data pipelines, analytics, workflow systems, and application development. - Help ensure projects meet quality, timeliness, documentation, and stakeholder expectations. - Support Agile delivery processes, code reviews, and engineering best practices. - Identify team training, certification, and professional development opportunities. - Evaluate internal business processes and recommend tools, automation, and AI-assisted workflows to improve efficiency, data validation, knowledge management, and delivery consistency. - Assist with staffing, recruiting, resource planning, and team development. Preferred Qualifications - Familiarity with Medicare, Medicaid, healthcare claims, encounter data, enrollment data, analytics, or program integrity work. - Experience working in a small business or consulting environment. - Experience adhering to and automating 508 compliance. - Consulting, government or regulated industry experience. - Experience with containers and orchestration tools (e.g., Docker, Kubernetes).

United States
Fieldguide logo

Engineering Manager, Core

Fieldguide

Powering the future of trust with modern software for assurance & advisory firms.

Full TimeRemoteTeam 11-50H1B Sponsor

• Lead a full-stack engineering team focused on core Enterprise product development • Manage and support engineers while helping the team execute across multiple parallel workstreams • Stay close to the code and contribute to architectural decisions • Help the team operate effectively in a remote-first environment • Drive strong engineering execution across both fast-turn product requests and multi-quarter initiatives • Bring an AI-native mindset and help the team adopt effective, safe ways of using AI in engineering workflows

United States
$200K - $230K / year

Role Description Aiden is seeking a high-caliber software development leader to run the engineering organization behind the Aiden product set: AidenBot, AidenVision, AidenStudio, and Aiden Policy Editor. This is a multi-product leadership role, not a single-codebase role. - Owns the operating cadence, staffing accountability, release discipline, quality management, architecture coordination, and budget stewardship. - Responsible for the design, vision, continuous improvement, and ultimate success of Aiden's software development lifecycle (SDLC). - Direct managerial responsibility for software development team resources, including performance conversations, annual reviews, coaching, hiring, and day-to-day leadership. - Works closely with the co-Founder & CTO, senior engineering contributors, QA, Product, Customer Success, Security, Finance, and other cross-functional stakeholders. What You Will Own - Engineering delivery across AidenBot, AidenVision, AidenStudio, Aiden Policy Editor, reporting initiatives, AskAiden-related capabilities, and related integrations. - The operating rhythm of the software development organization, including standups, sprint planning, backlog hygiene, architecture reviews, release readiness, defect triage, and escalation handling. - A reliable release cadence with rollback readiness, strong QA discipline, and fewer production surprises. - Direct people management for software development resources across product engineering, QA, release operations, architecture coordination, and product-facing database/application performance collaboration. - Cross-functional coordination with teams responsible for infrastructure, core IT, access control, software licensing, cloud resources, and security governance. - Vendor and contractor management across software development workstreams, including scope, quality, accountability, and cost effectiveness. - A disciplined, AI-forward engineering model that uses AI-assisted engineering, agentic workflows, and modern development approaches. Qualifications - 8+ years of software development leadership experience, including management of engineering teams, releases, quality, and roadmap execution. - A strong track record leading multiple workstreams and distributed teams with cross-functional dependencies. - Credible technical depth in modern software development, architecture oversight, SDLC design, and engineering process leadership. - Demonstrated comfort with direct managerial accountability, including hiring, coaching, performance management, quarterly conversations, and annual reviews. - Experience leading quality-assured release cycles with measurable standards around timeliness, quality, uptime, and incident response. - Experience managing engineering budgets, vendors/contractors, and tradeoffs between cost, speed, and quality. - Strong written and verbal communication skills, including the ability to communicate with executives, engineers, customers, auditors, and investors. - Experience with Agile/Scrum/Azure DevOps or similar development operating systems. - Comfort operating in a smaller, high-accountability growth company. Preferred Background - Experience leading engineering teams building enterprise SaaS, endpoint management, Windows-based systems, cybersecurity-related products, or IT operations software. - Experience with Microsoft-oriented ecosystems, database/application performance oversight, integrations, release governance, and cross-functional product delivery. - Experience in AI-assisted software development, agentic development workflows, AI-enabled QA, or modern human-plus-agent engineering models. - Experience rebuilding or professionalizing an engineering organization that needed stronger delivery rigor, quality control, and release reliability. - Exposure to SOC 2, development governance, security reviews, and audit support. - Success working with globally distributed and partially fractional engineering teams. What Success Looks Like - Strategic releases ship on time with a reliable bi-weekly cadence, stronger rollback readiness, and reduced release drama. - Engineering quality improves through stronger QA discipline, clearer ownership, fewer escaped defects, and better production confidence. - The team becomes more accountable, more predictable, and easier to manage across full-time, fractional, offshore, and contractor resources. - The SDLC becomes clearer, faster, and more scalable, with better sprint hygiene, better release governance, and better post-release learning. - AI is implemented thoughtfully as a force multiplier for speed, quality, and capital efficiency. - Engineering becomes a source of customer and investor confidence in Aiden's roadmap and execution. Ready to make an impact? We're building a team of passionate, driven individuals who are excited to solve complex problems and grow together. If you're looking for a place where your ideas matter and your contributions are recognized, we'd love to meet you.

United States
Twilio logo

Senior Engineering Manager, Reliability

Twilio

Twilio is a Platform-as-a-Service (PaaS) company established in 2007. In support of a flexible workplace, Twilio has previously posted freelance, flexible schedule, part-time, hybr

• Be strongly customer focused and drive a culture within your team that recognizes and promotes the importance of high availability and reliability for Twilio’s customer facing services • Empower a team of highly skilled Engineers, motivating them to perform their best and provide support and guidance that enables them to self-organize and to achieve sustained high velocity • Lead employee career development by providing coaching and mentoring to junior engineers, while guiding senior contributors to deliver on their potential • Collaborate across teams on best practices to build, test and operate services at scale in AWS environments, enabling high performance and availability • Contribute to technical deep dives and right-sizing of the engineering investment relating to modernization initiatives and service enhancements • Collaborate with Product Managers, Architects and Product Engineering partners to develop and drive a technical roadmap for your team that is aligned with the wider Platform Engineering organization and enables the achievement of defined quarterly objectives and key results • Communicate effectively with your leaders and peers, as well as internally within your team, distilling complex thoughts and articulating concepts and project plans through written and verbal communication • Be highly data driven, leveraging metrics and Service Level Indicators and Objectives to identify gaps in systems, services and processes and lead your team to develop and implement solutions to address them • Empower your team to participate actively in post incident reviews and to identify and take ownership for learnings and follow-up actions that improve Twilio’s responsiveness to service failures • Carry out periodic audits and risk assessments to identify opportunities to improve the security and reliability of Twilio’s services • Drive initiatives that increase the use of automation to reduce TOIL and manual intervention by product engineering teams to deploy and operate their services • As part of the Engineering Management team, foster leadership principles and behaviors throughout the organization and help to groom the next generation of leaders

Ireland
Job Closed