Назад
Company hidden
4 дня назад

Manager, Product Security and Trust (AI)

180 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Manager, Product Security and Trust (AI): Building and scaling application security testing, compliance, and customer trust capabilities across network, application delivery, and AI products with an accent on CI/CD integration, software supply chain security, and AI/ML security testing. Focus on automating vulnerability triage, defining product security gates, translating regulatory requirements into engineering work, and leading product security engineers.

Location: San Jose, California; hybrid work

Targeted compensation: up to $180,000 annually

Company

hirify.global develops secure application delivery and infrastructure solutions for on-premises, multi-cloud, and edge-cloud environments, including AI application security capabilities.

What you will do

  • Own and mature SAST, DAST, SCA, secrets detection, container scanning, fuzzing, and software license analysis across the product portfolio.
  • Integrate security testing into CI/CD pipelines, define build and release gates, and drive vulnerability remediation with engineering teams.
  • Develop AI and ML security testing for model risks, prompt injection, adversarial behavior, agentic workflow abuse, and AI attack surfaces.
  • Automate triage, ticket routing, SBOM generation, metrics, and security testing workflows.
  • Lead product security compliance, certification, audit evidence, customer security questionnaires, RFPs, and trust documentation.
  • Lead and mentor a small team of product security engineers while influencing engineering, product, IT, cybersecurity, sales, and legal stakeholders.

Requirements

  • 7+ years of experience in product security, application security, or a related cybersecurity discipline, including 2+ years leading a team or end-to-end program.
  • Hands-on experience with application security testing at scale, including tooling, tuning, triage, false-positive management, and developer adoption.
  • Experience integrating security testing into CI/CD pipelines and automating security workflows.
  • Knowledge of software supply chain security, SBOM generation, open-source license management, and dependency risk.
  • Experience with security compliance frameworks, audit processes, evidence collection, and customer-facing security documentation.
  • Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience.

Nice to have

  • Experience securing networking, application delivery, or infrastructure security products.
  • Familiarity with AI/ML security testing, model risk, and the OWASP Top 10 for LLM Applications.
  • Scripting or development experience for building security automation and integrations.
  • Experience with SOC 2, ISO 27001, product certifications, enterprise security due diligence, or relevant certifications such as CISSP, CSSLP, OSCP, or GIAC.

Culture & Benefits

  • Hands-on collaboration with engineering, product, IT, cybersecurity, sales, legal, and executive stakeholders.
  • Opportunity to shape security practices for products used by more than 7,000 customers.
  • Hybrid work arrangement in San Jose, California.
  • Equal opportunity employment and compliance with applicable nondiscrimination requirements.

Hiring process

  • Interviews are expected to assess the candidate's own skills and thinking.
  • AI or recording tools may not be used during live interviews unless explicitly invited or approved as a reasonable accommodation.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →