Product Security Manager

Remote
Contract Director Level 12+ years

Posted 2 weeks ago

Interested in this position?

Upload your resume and we'll match you with this and other relevant opportunities.

Upload Your Resume

About This Role

Lead and manage a team of Product Security Engineers to drive product security risk reduction across the engineering organization, embedding secure design, development, and delivery practices throughout the product lifecycle. This role involves overseeing threat modeling, guiding risk discussions, and maturing security controls to reduce vulnerabilities at scale.

Responsibilities

  • Lead, mentor, and develop a high-performing team of Product Security Engineers
  • Establish and drive a product security strategy focused on measurable risk reduction
  • Set priorities, manage team workload, and ensure consistent execution across products
  • Serve as the primary security advisor to engineering directors, product owners, and architects
  • Oversee security integration across the product lifecycle, ensuring secure design, development, and testing practices
  • Lead and scale threat modeling programs for new features, services, and architectural changes
  • Manage the Product Security tech stack including SAST, SCA, secret scanning, DAST, and dependency management
  • Drive security education, secure coding training, and engineering enablement initiatives
  • Champion NHI Governance and other product security governance programs

Requirements

  • Proven experience in product/application security, software engineering or security architecture
  • Experience leading and developing technical security teams
  • Strong communication skills capable of influencing engineering leaders
  • Hands-on understanding of secure design principles, modern application architectures, and common vulnerability classes (OWASP, cloud security, AI/LLM risks)
  • Working knowledge of engineering workflows (Git/GitHub, pull requests, CI/CD pipelines)
  • Familiarity with SAST, SCA, DAST, secrets scanning, dependency management and related tooling
  • Application Security - API Security testing
  • Application Security (application security framework/ threat modelling/ Secure SDLC/ DevSecOps/Application Security Architecture Review)

Qualifications

  • 12+ years of experience in product/application security, software engineering, or security architecture. Experience leading and developing technical security teams.

Skills

Git * CI/CD * Cloud Security * GitHub * DevSecOps * SAST * DAST * SCA * OWASP * AI/LLM risks * API Security testing * Threat Modelling * Secure SDLC * Application Security Architecture Review *

* Required skills

About Net2Source (N2S)

Professional Services
View all jobs at Net2Source (N2S) →