ForgeApply · Job listing
Sr. Manager, Security Engineering
6sense
See all 24 open roles at 6sense →
Tailor your resume for this 6sense job in about a minute.
ForgeApply rewrites your resume for this exact posting, then autofills the application on 6sense's site with it. You review everything before it's sent. Free trial, no card required.
About this role
Our Mission:
6sense's mission is to multiply what matters: growth, retention, and efficiency. We envision a future where companies, teams and people reach their full potential.
Our People:
People are the heart and soul of 6sense. We serve with passion and purpose. We live by our Being 6sense values of Win as One Team, Stay Curious, Do The Right Thing, Own the Outcome, and Create Belonging. Every 6sensor plays a part in defining the future of our industry-leading technology. 6sense is a place where difference-makers roll up their sleeves, take risks, act with integrity, and measure success by the value we create for our customers. We want 6sense to be the best chapter of your career.
Senior Manager, Security Engineering
Business Technology, Security
REPORTING AREA
Security - CISO
FUNCTION
Business Technology
TEAM MODEL
United States and India
LEADERSHIP SCOPE
Application/Product Security; Infrastructure/Cloud Security; Vulnerability Management
ROLE TYPE
Leader with technical depth
ENVIRONMENT
AI-first, cloud-native SaaS
Role Purpose
Lead the security engineering organization that protects 6sense's AI-enabled, cloud-native SaaS platform. This leader owns Vulnerability Operations, Infrastructure Security, and Application/Product Security, and is accountable for building scalable security capabilities that enable rapid product delivery without compromising customer trust, resilience, or compliance. The role leads a distributed team across the United States and India and combines strategic leadership with credible technical judgment.
Leadership Mandate
• Build one integrated security engineering operating model across the three teams, with clear ownership, service expectations, priorities, and measurable outcomes.
• Partner with Product, Engineering, Cloud Infrastructure, Data, AI/ML, Security Operations, Privacy, GRC, and Enterprise Technology leaders to embed security into planning and delivery.
• Create an inclusive, high-accountability culture across time zones using clear decisions, durable documentation, effective handoffs, and intentional overlap for critical work.
• Balance hands-on technical engagement with people leadership, program ownership, stakeholder influence, and executive-level risk communication.
Core Responsibilities
1. Organization and People Leadership
• Lead, coach, and develop managers and engineers across the United States and India. Establish role clarity, career paths, succession coverage, and consistent performance expectations.
• Create an operating cadence that supports asynchronous execution, reliable cross-region handoffs, rapid escalation, and shared accountability.
• Build workforce and capacity plans aligned to product growth, AI investment, risk, and business priorities.
• Foster a culture of constructive challenge, disagree and commit, continuous learning, quality, and automation-first improvement.
2. AI and Product Security
• Own the security strategy for AI-enabled product capabilities from design through production, including threat modeling, architecture review, secure development standards, testing, monitoring, and release readiness.
• Address AI-specific risks such as prompt injection, insecure tool or agent access, sensitive-data exposure, model and data pipeline integrity, excessive agency, abuse, and third-party model or service dependencies.
• Partner with AI/ML, Product, and Engineering teams to define secure patterns for models, agents, retrieval-augmented generation, application programming interfaces, data access, and human approval controls.
• Advance product security practices including secure software development lifecycle controls, code and design review, application security testing, penetration testing, security champions, and coordinated vulnerability disclosure or bug bounty.
3. Vulnerability Operations
• Own end-to-end vulnerability discovery, prioritization, remediation governance, exception management, and validation across applications, cloud infrastructure, containers, endpoints, operating systems, and third-party components.
• Move beyond severity-only prioritization by incorporating exploitability, internet exposure, asset criticality, data sensitivity, available compensating controls, and active threat intelligence.
• Improve remediation speed and predictability through automation, clear service-level objectives, transparent ownership, and decision-ready reporting.
• Establish effective coverage for software supply chain risk, including open-source dependencies, build systems, artifacts, secrets, and continuous integration and delivery pipelines.
4. Infrastructure and Cloud Security
• Own preventive and detective security guardrails for the AWS environment, infrastructure as code, containers, identity and access, network boundaries, workloads, secrets, logging, and data services.
• Partner with Infrastructure and Platform Engineering to make secure cloud patterns easy to adopt and to reduce reliance on manual review.
• Drive least privilege, secure administrative access, workload identity, segmentation, configuration assurance, and continuous cloud risk reduction.
• Ensure architecture and change reviews focus on material risk while preserving engineering velocity.
5. Strategy, Governance, and Business Partnership
• Translate business strategy, product roadmaps, AI priorities, threat trends, customer commitments, and audit requirements into a multi-quarter security engineering roadmap.
• Define quarterly objectives and key results, key performance indicators, and key risk indicators that show coverage, outcomes, trends, and remaining exposure.
• Communicate risk and tradeoffs clearly to technical leaders and executives. Escalate material risks with practical options, owners, and recommended decisions.
• Maintain policies, standards, control evidence, inventories, and operating procedures that support SOC 2, ISO 27001, privacy, customer assurance, and other applicable obligations
Salary insight
The midpoint of this range ($229k) is about 43% above the median disclosed salary for New York roles listed on ForgeApply ($161k across 9,933 jobs).
See full Security Engineer salary data for New York →
Based on live postings with disclosed pay on ForgeApply; refreshed daily. Not an estimate of this employer's offer.
Tailor your resume for this 6sense role before you apply.
Tailor my resume for this jobSimilar jobs
- Senior Manager, Security Engineering — Arctic Wolf · Remote
- Sr. Director, Security Engineering — Pinterest · Palo Alto, CA, US; San Francisco, CA, US
- Senior Engineering Manager, Security — Asana · San Francisco
- Sr. Security Engineer — Earlywarning · Scottsdale
- Sr. Security Engineer — Brave · Remote
- Sr. Engineering Manager, Application Security — Betterment · Betterment HQ - New York City
- Manager, Security Engineering — Cohere · United States
- Manager, Security Engineering — Thetradedesk · Bellevue; Denver; Los Angeles; Seattle; Ventura
More like this: Security & Cybersecurity Jobs · Security & Cybersecurity Jobs in New York · Browse all jobs
Free ATS checker · How to Autofill Greenhouse Job Applications (Without Sending Junk)