Director, Trust & Safety

Docusign
19hRemote

About The Position

As the most trusted brand in its industry, Docusign seeks a Director of Trust & Safety to lead all aspects of its platform protection program. Reporting to the Chief Information Security Officer, this product-focused leader will manage the development of features to proactively combat platform abuse, fraud, and activities that could harm users. The Director will lead a team of developers and analysts to build a Trust & Safety platform that leverages product data and threat intelligence to identify and detect risks. By integrating with Product and Technology teams, you will ensure the platform employs robust security by design from initial development through post-release. Ultimately, this high-visibility role requires a blend of technical expertise and leadership to safeguard Docusign products and integrate trust into the core of the platform. This position is a people manager role reporting to the Group Vice President, Chief Information Security Officer.

Requirements

  • 10+ years in trust and safety, product management, software development, or security or security- related disciplines, with 8+ years in leadership roles
  • Bachelor’s degree in computer science, data science, artificial intelligence, machine learning, cybersecurity, risk management, or a related technical field
  • Proven experience designing and leading trust and safety programs
  • Strong understanding of product security, including secure development lifecycle and CI/CD best practices, platform abuse risks, and secure coding practices
  • Deep knowledge of threats presented by fraud TTPs (on-platform, off-platform, and hybrid fraud), with substantial experience in developing code-based solutions to ensure security by design and default, designing and implementing proactive mitigation measures, and producing and reporting on measurable results
  • Substantive experience working with threat intelligence, T&S, CSIRT, PSIRT,CSA, Product, and Engineering teams, other businesses, and governmental agencies to combat threat actor activities
  • Experience defining KPIs, metrics pipelines, and executive reporting frameworks

Nice To Haves

  • A Master’s degree or higher
  • Proven experience with a modern programming language (e.g., C#/.NET Core, Java, Python) and SQL Databases
  • Experience building and maintaining APIs and developing single-page applications (SPAs)
  • Foundational Skills: Experience with large-scale distributed systems, the full Software Development Lifecycle (SDLC), and Agile methodologies
  • Proficiency with version control systems (e.g., Git) and writing maintainable, high-quality code
  • Cloud & Deployment: Experience shipping highly available, scalable services on a Cloud Platform (e.g., Azure, AWS, GCP) and managing CI/CD pipelines
  • Deep experience with microservice architecture and complex system design
  • Experience with NoSQL Databases (e.g., Cassandra, CosmosDB) in addition to relational systems
  • Familiarity with Docker and Kubernetes
  • Experience developing security or fraud detection platforms; knowledge of threat intelligence and data correlation
  • Strong problem-solving, analytical, and technical leadership skills (e.g., driving improvements and owning standards)
  • Experience with Test-Driven Development (TDD) and working effectively in a dynamic, fast-moving environment
  • Expertise integrating platforms using the JIRA/JSM APIs for workflow automation and data exchange
  • Proven ability to translate complex data findings into actionable coaching to improve the investigative rigor and technical proficiency of a local team
  • Demonstrated success proactively identifying gaps in platform safety and recommending architectural or system fixes to close vulnerabilities and improve operational efficiency
  • Experience collaborating with Platform or Data Engineers to define requirements for internal anti-fraud tools, automated detection models, or data pipelines
  • A proactive approach to learning new technology stacks and encouraging a climate of continuous improvement, curiosity, and brainstorming within a global team
  • Excellent stakeholder management and communication skills across technical and business audiences
  • Strong cross-functional collaboration and stakeholder management skills, especially with Product, Engineering, Data, Privacy, and executive teams
  • Excellent collaboration and communication management skills across technical and non-technical audiences

Responsibilities

  • Drive the development of product features to provide for the security, trust, and safety of the Docusign platform
  • Design and execute the organization’s trust and safety strategies, focusing on proactive risk reduction through secure software development, code development integrating security by design and default, and tools and mechanisms to proactively combat threat actors
  • Build a high-performing, product-driven team focused on measurable outcomes and continuous improvement
  • Lead and grow a team of Trust & Safety developers, platform engineers, and data and operations analysts, fostering a culture of technical innovation, ownership, and high performance
  • Develop and implement technical, code-based solutions to proactively protect the platform against emerging threats and abuse patterns
  • Oversee the investigation and response to platform abuse and fraud, including building or leveraging tools that mitigate threat actor tactics, techniques, and procedures
  • Integrate product data, telemetry, threat intelligence, and indicators of compromise to establish a comprehensive risk picture and drive measurable reductions in platform abuse
  • Serve as a key advisor to executive leadership and support the Chief Information Security Officer in advising the Docusign Board on Trust & Safety matters
  • Translate technical risk into business impact, providing clear updates, trade-off discussions, and recommendations to executives, providing clear, concise, and strategic updates on product roadmaps, feature enhancements, risk posture and mitigation
  • Serve as the face of the Trust & Safety program across the company and the broader industry, representing Docusign's commitment to trust, safety, and security while serving as a thought leader within the community
  • Collaborate with AI/ML teams and supporting vendors to implement secure model development practices, including secure training pipelines, data governance, and model monitoring in support of Trust & Safety requirements
  • Partner with Product, Engineering, and Security leaders to embed secure-by-design and default principles into products, systems, data platforms, and workflows
  • Define measurable success criteria and report outcomes to leadership
  • Collaborate with customer-facing security teams, customers, and external officials to support trust and safety and broader security assurance activities where required

Benefits

  • Bonus: Sales personnel are eligible for variable incentive pay dependent on their achievement of pre-established sales goals. Non-Sales roles are eligible for a company bonus plan, which is calculated as a percentage of eligible wages and dependent on company performance.
  • Stock: This role is eligible to receive Restricted Stock Units (RSUs).
  • Paid Time Off: earned time off, as well as paid company holidays based on region
  • Paid Parental Leave: take up to six months off with your child after birth, adoption or foster care placement
  • Full Health Benefits Plans: options for 100% employer paid and minimum employee contribution health plans from day one of employment
  • Retirement Plans: select retirement and pension programs with potential for employer contributions
  • Learning and Development: options for coaching, online courses and education reimbursements
  • Compassionate Care Leave: paid time off following the loss of a loved one and other life-changing events
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service