Senior Manager, Security Assurance Engineering

BoxRedwood City, CA
3h$245,000 - $270,000Hybrid

About The Position

As Senior Manager of Security Assurance Engineering at Box, you will lead a high-impact team dedicated to elevating the security posture of our core products through an engineering-first and product-centric approach. Your mission is to deeply understand Box’s complex product ecosystem and internal stakeholders to identify critical security risks and build scalable, automated controls that enable rapid, secure innovation. You will drive the evolution of our design reviews, secure component development, penetration testing, and bug bounty programs with a strong emphasis on automation, developer enablement, and measurable risk reduction. By joining Box, you will have the unique opportunity to continue driving our platform forward. Content powers how we work. It’s the billions of files and information flowing across teams, departments, and key business processes every single day: contracts, invoices, employee records, financials, product specs, marketing assets, and more. Our mission is to bring intelligence to the world of content management and empower our customers to completely transform workflows across their organizations. With the combination of AI and enterprise content, the opportunity has never been greater to transform how the world works together and at Box you will be on the front lines of this massive shift.

Requirements

  • An engineering leader passionate about building secure products and enabling developers through practical, scalable security solutions.
  • Experienced in leading application security functions with a strong foundation in offensive security practices and secure software development.
  • Skilled at balancing security rigor with product velocity, delivering pragmatic and impactful risk mitigation strategies.
  • Adept at managing distributed teams, fostering collaboration, and driving results in ambiguous, fast-paced environments.
  • Excellent communicator who can translate complex security concepts into clear, actionable guidance for both technical and non-technical audiences.
  • Deep knowledge of modern application architectures, cloud environments, and security testing methodologies.
  • Has hands-on experience with penetration testing, threat modeling and conducting secure design reviews.

Nice To Haves

  • Experience with developing and shipping secure software components
  • Familiarity with emerging technologies including AI-assisted security and software development tooling.
  • Proven track record of partnering effectively with product and engineering teams to embed security as a foundational element of product development.

Responsibilities

  • Lead and grow a talented, hybrid team of security engineers focused on embedding application security into the product lifecycle through engineering rigor and automation.
  • Develop deep expertise in Box’s diverse product platforms and collaborate closely with product and engineering leaders to prioritize high-impact security initiatives aligned with business goals.
  • Drive right-sized, actionable security guidance and support that empowers engineering teams to reduce risk without slowing velocity.
  • Champion automation and tooling to streamline security assurance activities such as design reviews, threat modeling, penetration testing, and vulnerability management.
  • Navigate ambiguity and open-ended challenges inherent in securing fast-evolving AI-native applications and services.
  • Foster a culture of continuous learning, mentorship, and technical excellence within your team.
  • Build and maintain strong cross-functional partnerships across Product, Engineering, Security Architecture, and external security researchers to amplify impact.
  • Own and evolve metrics and KPIs and KRIs that demonstrate the effectiveness of security assurance efforts and inform strategic decisions.

Benefits

  • Box lives its values, with community and in-person collaboration being a core part of our culture. Boxers are expected to work from their assigned office a minimum of 3 days per week, with a focus on Tuesdays, Wednesdays, and Thursdays.
  • Box is committed to fair and equitable compensation practices.
  • This role is also eligible for equity and benefits.
  • For more information on benefits, check out our healthcare benefits and additional Box Benefits + Perks.
  • In accordance with OFCCP compliance, here is the Pay Transparency Provision.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service