Sr. Manager, Product Security

SimpliSafeBoston, MA
Hybrid

About The Position

We’re a high-tech home security company that’s passionate about protecting the life you’ve built and our mission of keeping Every Home Secure. And we’ve created a culture here that cares just as deeply about the career you’re building. Ours is a no ego culture of collaboration and innovation where those seeking their next challenge can find big opportunities and make a huge impact on the lives of all those who we protect. We don’t just want you to work here. We want you to grow and thrive here. We’re embracing a hybrid work model that enables our teams to split their time between office and home. Hybrid for us means we expect our teams to come together in our state-of-the-art office on two core days, typically Tuesday, Wednesday, or Thursday – working together in person and choosing where they work for the remainder of the week. We all benefit from flexibility and get to use the best of both worlds to get our work done. Why are we hiring? Well, we’re growing and thriving. So, we need smart, talented, and humble people who share our values to join us as we disrupt the home security space and relentlessly pursue our mission of keeping Every Home Secure. What You’ll Do As Senior Manager, Product Security, you will be the driving force behind embedding security into every product and service we release. Reporting directly to the CISO, you will lead a team of passionate security engineers who partner with Software Engineering, Hardware, Cloud, and Product Management to ensure that the devices and services protecting our customers’ homes are also protected themselves. This is a high-impact, high-visibility role for someone who wants to own product security end-to-end—from threat modeling and secure design through launch and beyond. You’ll help set the direction for how SimpliSafe builds security into our DNA, not as an afterthought, but as a core feature of everything we create.

Requirements

  • Up to 7 years of progressive experience in information security, with at least 3 years focused on product or application security in a product-driven company.
  • 3+ years of people management experience leading security engineering teams.
  • Deep technical fluency in AWS and at least one or more of: IoT/embedded security, mobile security (iOS/Android), API security, and secure SDLC practices.
  • Proven ability to perform and lead threat modeling, security architecture reviews, and vulnerability assessments at scale.
  • Track record of building and scaling product security programs from the ground up—or dramatically raising the bar in an existing one.
  • Strong communicator who can translate complex security risk to both technical engineers and non-technical executives with equal clarity.
  • Experience working in an Agile/DevSecOps environment; comfortable with CI/CD security tooling (SAST, DAST, SCA, container scanning).

Responsibilities

  • Security Leadership & Strategy
  • Own and drive the product security roadmap, partnering with the CISO to define and evolve the program.
  • Establish security standards/guidelines for IoT, mobile, cloud, data, and third-party integrations, while staying ahead of emerging threat trends.
  • Team Management & Development
  • Lead, mentor, grow, and recruit top product security engineering talent.
  • Foster a no-ego culture of collaboration where security is everyone’s responsibility.
  • Secure Product Development
  • Embed security into the SDLC by leading threat modeling, architecture reviews, and championing security automation and tooling.
  • Drive a vulnerability management program (firmware, mobile, APIs, cloud) from identification through remediation.
  • Oversee penetration testing and red team exercises, translating findings into actionable engineering improvements.
  • Cross-Functional Collaboration
  • Collaborate with Engineering and Product to incorporate security throughout the product lifecycle, serving as a trusted advisor to translate risk into business impact.
  • Represent Product Security in cross-functional planning, architecture forums, and executive briefings.
  • Partner with Legal and Compliance to meet applicable regulatory requirements and industry standards.
  • Customer & Brand Trust
  • Protect customer trust by ensuring the highest security standards, and coordinating responsible disclosure and external vulnerability reporting.
  • Contribute to customer-facing security communications when incidents or significant findings require transparency.

Benefits

  • A mission- and values-driven culture and a safe, inclusive environment where you can build, grow and thrive
  • A comprehensive total rewards package that supports your wellness and provides security for SimpliSafers and their families (For more information on our total rewards please click here)
  • Free SimpliSafe system and professional monitoring for your home.
  • Employee Resource Groups (ERGs) that bring people together, give opportunities to network, mentor and develop, and advocate for change.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service