Manager, Product Security
JR104287
US - REMOTE
HashiCorp solves development, operations, and security challenges in infrastructure so organizations can focus on business-critical tasks. Our open source software is used by millions of users to provision, secure, connect, and run any infrastructure for any application. The Global 2000 uses our enterprise software to accelerate application delivery and drive innovation through software.
We are looking for a Product Security Manager to help scale our product security function, which works closely with engineering & product management to ensure that security is appropriately addressed across the HashiCorp suite of cloud and self-managed products.
Security at HashiCorp is a remote team. While prior experience working remotely isn't required, we are looking for team members who perform well given a high level of independence and autonomy.
In this role, your responsibilities will include:
- Oversee and contribute to product-specific and program-level security initiatives and activities being undertaken by members of the Product Security team.
- Work across various product and engineering teams to prioritize security features and bugs, and ensure implementation and mitigations.
- Lead and grow a team of high-performing security engineers.
- Develop roadmaps, track progress, and evaluate team / functions performance
- Provide mentorship, support, and career development opportunities for team members and enable the team to scale.
- Be a subject matter authority and have strategic influence
- Assist leadership to develop strategic plans and long-term roadmaps
- Monitor threats and vulnerabilities impacting HashiCorp products and services; triage reported vulnerabilities, identify mitigations and assess/communicate associated risk.
- Plan & oversee security assessments (dynamic testing, static testing, code review, etc) and threat modeling of HashiCorp’s products, services, and associated cloud infrastructure.
- Manage design & implementation of security solutions across the product life-cycle, such as standalone security tools, CI/CD pipeline integrations, product security features/fixes, etc.
- Act as SME on multiple information security areas (e.g. security architecture, application security, threat modeling etc.)
What you’ll need (basic qualifications)
- 6+ years of work experience in product security, application security, or broader security engineering areas
- Demonstrated managerial aptitude & leadership skills
- Ability to prioritize and track multiple projects in parallel
- Ability to engage with stakeholders and communicate asks / status / gaps
- Demonstrated technical experience across related security disciplines
While a managerial role, this is technically oriented and you broader skill set may include:
- Product / service architectures in modern cloud environments (IaaS, SaaS, PaaS).
- Amazon Web Services (AWS), Microsoft Azure, and/or Google Cloud Platform (GCP).
- Modern engineering practices, processes, and tools, particularly related to the Go programming language and ecosystem.
- Secure development practices, and integration into broader engineering activities.
- Secure operations practices, specifically wrt. cloud environments.
- Application and infrastructure security testing methodologies and tools.
- Security design / architecture and threat modeling.
- Vulnerabilities (old and new), and options for defense / mitigation.
- Product vulnerability management lifecycle.
- Security audits, penetration tests, and/or bug bounty programs.
- Cryptography and cryptographic libraries.
#LI-REMOTE
Individual pay within the range will be determined based on job related-factors such as skills, experience, and education or training.
“HashiCorp is an IBM subsidiary which has been acquired by IBM and will be integrated into the IBM organization. HashiCorp will be the hiring entity. By proceeding with this application you understand that HashiCorp will share your personal information with other IBM subsidiaries involved in your recruitment process, wherever these are located. More information on how IBM protects your personal information, including the safeguards in case of cross-border data transfer, are available here: link to IBM privacy statement.”

0 applies
2 views
Other Jobs from HashiCorp
Sr. Support Engineer
Sr. Resident Engineer
Sr. Resident Engineer
Sr. Support Engineer - Vault
Sr. Support Engineer - Designated Support Engineer
Sr. Engineer II - Terraform Actions
Similar Jobs
Senior Software Engineer
Senior Data Engineer
Senior Software Engineer - SRE
Lead Market Data Engineer (Vice President)
Lead Python Developer
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 452 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say