DoorDash USA-posted 2 months ago
$231,200 - $340,000/Yr
Full-time • Senior

We are hiring a hands-on Senior Manager (L7) to lead our Enterprise Security Engineering function. This team builds the security guardrails—baselines, controls, and automated assurance—that make our enterprise secure by design. You will set vision and roadmaps, scale and mentor security engineering teams, and deliver security that is built-in, not bolted on. The work blends strategy and execution: design the playbook, coach leaders and senior engineers, and lean in directly when the stakes are high. Success in this role stems from a deep technical engineering understanding of the enterprise domain and effective cross-functional partnership and collaboration. You will work closely with IT service owners to embed guardrails into enterprise platforms and services, ensuring controls scale with reliability and business enablement. We prioritize crown-jewel systems and data through explicit risk tiering, focusing engineering efforts where they matter most.

  • Define and deliver enterprise guardrails.
  • Ship and drive adoption of hardened baselines across identity, endpoints, SaaS, networks, and data.
  • Hold SLAs/SLOs and automated attestation for control health and adoption of Zero Trust primitives.
  • Advance Zero Trust by enforcing identity-aware access with continuous attestation for device/user signals.
  • Implement micro-segmentation to adopt user- and machine-bound identities.
  • Enable a hardened VPN-free environment.
  • Protect data in motion and at rest by defining and scaling data classification and context-aware DLP.
  • Enforce managed browsers for session isolation and data egress control.
  • Lead SaaS hardening, discovery, and control with IT.
  • Establish a hardening baseline for sanctioned SaaS applications.
  • Continuously monitor for and identify shadow SaaS.
  • Enforce a data-egress policy across the SaaS portfolio.
  • Drive threat models, trust boundaries, and data-flow/abuse-case reviews.
  • Build policy engines and change gates for identity, device, SaaS, and network control planes.
  • Oversee secrets hygiene and detect plaintext secrets in SaaS and on endpoints.
  • Review third-party and AI integrations to set pre-production minimums.
  • Support phishing resilience and managed browsers adoption.
  • Implement corrective controls in partnership with Detection and Response, the Red Team, and Leadership.
  • Define key control metrics and enterprise control health indicators.
  • 10+ years in security or infrastructure; 5+ years managing.
  • Player-coach who sets technical direction and mentors managers and senior engineers.
  • Demonstrated ability to make high-stakes calls with incomplete information.
  • Strong orientation toward policy-as-code, infrastructure-as-code, and automated assurance pipelines.
  • Ability to hold, organize, and transparently manage multiple dynamic priorities.
  • Bachelor’s degree or equivalent experience required; advanced degree preferred.
  • History of building durable partnerships with IT.
  • Record of defining metrics, publishing results, and driving measurable reductions in risk exposure.
  • 401(k) plan with employer matching.
  • 16 weeks of paid parental leave.
  • Wellness benefits.
  • Commuter benefits match.
  • Paid time off and paid sick leave.
  • Medical, dental, and vision benefits.
  • 11 paid holidays.
  • Disability and basic life insurance.
  • Family-forming assistance.
  • Mental health program.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service