Senior Manager, Product Security
Tines · United States (Remote)
About this role
**Senior Manager, Product Security** **About Tines** Founded in 2018 with co-headquarters in Dublin and Boston, Tines powers intelligent workflow automation for companies like Canva, Databricks, Elastic, and McKesson. We're vendor-agnostic, secure by design, and built for security, IT, engineering, and finance teams. **The Role** Lead and scale our product security program in an AI-forward engineering environment. Reporting to the Head of IT Operations & Information Security, you'll set product security direction, develop a high-performing team, and partner with engineering and product leaders to ensure security keeps pace with growth. This is a hands-on leadership role blending strategy, people management, and technical execution—using AI and automation as force multipliers to match the velocity of modern development. **Key Responsibilities** • Define product security strategy, roadmap, and success metrics • Hire, mentor, and develop product security engineers • Build cross-functional partnerships with engineering, product, infrastructure, and leadership • Establish scalable secure development practices (SDLC, threat modeling, testing) • Use AI and automation to expand security coverage and reduce manual work • Identify and mitigate risks in AI-powered features and systems • Guide secure architecture and platform controls for cloud-native, multi-tenant products • Own vulnerability management lifecycle and risk prioritization • Lead security incident response and post-incident improvements • Develop security champions and foster security culture • Measure program effectiveness and communicate risks to all audiences **Required Qualifications** • 8+ years in application/product security or related roles (SaaS experience required) • 5+ years of people management or technical leadership • Strong technical foundation in modern AppSec, secure architecture, threat modeling, OWASP Top 10 • Experience with AI/automation for security scaling (LLM-assisted review, automated triage) • Cloud security experience (AWS preferred) and containerized infrastructure (Docker, Kubernetes) • Working knowledge of modern programming languages; Ruby, TypeScript, and/or Rust highly desirable • Experience with SAST, DAST, SCA, secrets detection, and CI/CD security • DevSecOps and secure-by-default developer workflow design experience • Incident response leadership and coordination experience • Excellent communication skills across technical and executive audiences • Public vulnerability disclosure or bug bounty program experience **Nice to Haves** • Experience building product security teams during rapid growth • AI/ML systems and LLM-powered feature security experience • LLM red-teaming and AI threat-modeling frameworks (MITRE ATLAS, OWASP Top 10 for LLM) • Hands-on agentic security workflow experience (Tines or similar) • Multi-tenant SaaS security expertise • FedRAMP Moderate/High or DoD Impact Level experience • Open-source security contributions or security research community participation **Location & Compensation** Remote in the United States | $250–$275k + equity *Must be authorized to work for any U.S. employer. Visa sponsorship unavailable.*
Listing freshness
CronJobs last confirmed this listing 16h ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.