Manager, Security Engineering

Posted 3hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Manager of Security Engineering at Acquia leading a team on application, cloud, and AI system security. Responsible for securing cloud-native applications and services across the product portfolio.

Responsibilities:

  • Lead a specialized team of security engineers focused on application security, cloud security, and AI system security across Acquia's product portfolio.
  • Proactively research and identify systemic security gaps to build automated controls and guardrails.
  • Act as the critical nexus between Security Operations and Product Engineering, translating complex technical risks into actionable roadmaps.
  • Conduct continuous performance evaluations (quarterly and annually) to guide professional development and advocate for team promotions.
  • Define and execute a forward-looking security engineering roadmap aligned with Product Engineering needs and broader business initiatives.
  • Champion shift-left security practices, including threat modeling, secure code review, and developer security training embedded in the software development lifecycle.

Requirements:

  • Hands-on experience with SAST, DAST, and SCA tooling (e.g., Semgrep, Snyk, Veracode, or equivalents) and guiding engineering teams on remediation.
  • Deep understanding of securing cloud-native applications and services on AWS, including IAM, API Gateway, secrets management, and container workloads.
  • Working knowledge of OWASP LLM Top 10, agentic AI attack surfaces (tool abuse, prompt injection, memory poisoning), and security considerations for AI systems with external integrations.
  • Experience using AI-assisted security tools—such as AI-powered SAST, copilot-assisted code review, or agentic vulnerability triage—to scale team output.
  • Strong working knowledge of the technical implications of operating within strict compliance frameworks, including ISO/SOC, PCI, and FedRAMP.
  • Exceptional ability to translate highly technical concepts for non-technical stakeholders and the interpersonal skills required to influence engineering teams without direct reporting authority.

Benefits:

  • competitive healthcare coverage
  • wellness programs
  • take it when you need it time off
  • parental leave
  • recognition programs
  • and much more!