Full job description
Senior Manager, DevSecOps role to lead multiple teams integrating security into DevOps, CI/CD, IaC pipelines, and AI/ML workloads. Responsibilities include managing teams, securing AI/ML pipelines, establishing AI security governance, implementing automated security scanning, overseeing AI workload identity and access management, leading AI security incident response, ensuring compliance with SOC 2, ISO 27001, SOX, and MRC, defining DevSecOps strategy, creating security architecture, driving security automation improvements, establishing security metrics, fostering security culture, and collaborating with senior management. Requires 5-6+ years in Cybersecurity/DevOps/DevSecOps, leadership experience managing ~5+ engineers, strong technical expertise in AI/ML security, cloud security, application security, compliance, and automation. Bachelor's degree or equivalent required. Technologies include Terraform, Ansible, Kubernetes, Docker, Python, Bash, GitHub Actions, Jenkins, AWS, GCP, Vertex AI, SageMaker, and various AI security tools. Location: New York City, NY. Salary range $131,000 - $260,000 plus bonus, equity, and benefits.
What you'll do
- Manage and lead multiple DevSecOps teams, mentor and hire senior DevSecOps and security engineers
- Secure AI/ML pipelines and infrastructure with security controls for model deployment environments
- Establish AI security governance frameworks including policies for LLM usage, RAG systems security, MCP security, and AI supply chain risk management
- Implement automated security scanning for AI artifacts integrated into CI/CD pipelines
- Oversee security for AI workload identity and access management
- Lead AI security incident response for AI/ML specific threats
- Ensure adherence to compliance standards such as SOC 2, ISO 27001, SOX, and MRC by automating compliance evidence collection
- Define and execute DevSecOps strategy aligned with business objectives and emerging AI security best practices
- Create architecture designs for security systems and services including AI-specific security architectures
- Drive continuous improvement of security automation, AI security tooling, and processes
- Establish security metrics and KPIs to measure team effectiveness and AI risk exposure
- Foster a culture of security awareness and AI security best practices across engineering, data science, and product teams
- Collaborate with senior/executive management on security strategy, AI risk management, and cross-organizational security initiatives
Requirements
- 5-6+ years of experience in Cybersecurity/DevOps or DevSecOps
- Proven experience leading security teams of ~5+ engineers across multiple infrastructure areas
- Experience leading teams of two or more functional areas with authority over team processes, tools, and priorities
- Regular interaction with senior/executive management
- Experience leading Sev1/2 incidents and providing strategic direction during major security events
- Supervision over costs, methods, staffing, and budget for teams
- Bachelor's degree in Computer Science, Information Systems, or equivalent experience
- Technical expertise in AI/ML security, AI governance & compliance, AI pipeline security, AI identity & access, network security, encryption and cryptography, IAM, OS security, application security, threat intelligence, incident response, risk management, security architecture, automation and scripting, cloud security
- Experience with AI/ML platforms, AI security tools, cloud platforms, CI/CD tools, container orchestration, and IaC
Tech stack
DevSecOpsCI/CDInfrastructure-as-CodeIaCTerraformAnsibleCrossplaneKubernetesDockerSASTDASTSCAPythonBashGitHub ActionsGitLab CIJenkinsHarnessGCPAWSOCIVertex AISageMakerAzure MLOpenAIAnthropicGoogle AIQdrantPineconeWeaviateChromaDBLangChainLlamaIndexMLflowKeycloakTeleportACMEcertbotSonarQubeSnykAqua SecurityTwistlockPuppet
Benefits
Bonus/commission (as applicable)EquityBenefits (unspecified)