1

Security Engineering Manager Jobs (NOW HIRING)

OR · On-site

$114.40K - $156.80K/yr

As a Senior Security Manager for Enterprise Security Engineering at Upstart, you will lead a team responsible for building and maturing security programs across enterprise security, security ...

Manager, Security Engineering Location: Leesburg, VA Company: VB Spine Looking for a career where your work truly matters? At VB Spine, you'll be part of a mission-focused team that supports surgeons ...

OR

$114.40K - $156.80K/yr

As the Senior Security Manager for Product Security Engineering at Upstart, you will lead a team responsible for scaling security engineering practices across application security, infrastructure ...

Engineering Manager - Security

Seattle, WA · On-site

$216K - $367.20K/yr

As the Engineering Manager for Security Engineering, you will lead a team of security engineers building and operating the foundational capabilities that underpin secure development across Plaid. You ...

next page

Showing results 1-20

Security Engineering Manager information

See salary details

$46.5K

$146.9K

$174K

How much do security engineering manager jobs pay per year?

As of May 31, 2026, the average yearly pay for security engineering manager in the United States is $146,868.00, according to ZipRecruiter salary data. Most workers in this role earn between $116,500.00 and $173,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Security Engineering Manager, and why are they important?

To thrive as a Security Engineering Manager, you need a strong foundation in cybersecurity principles, risk management, and team leadership, typically supported by a degree in computer science or a related field and relevant experience. Familiarity with security frameworks (e.g., NIST, ISO 27001), tools like SIEM, vulnerability scanners, and certifications such as CISSP or CISM are highly valuable. Exceptional communication, problem-solving, and mentoring skills help you guide teams and collaborate effectively across departments. These skills ensure robust security practices, cohesive team performance, and effective mitigation of evolving threats.

How does a Security Engineering Manager typically collaborate with other departments to ensure comprehensive security coverage?

A Security Engineering Manager works closely with teams such as IT, software development, and compliance to integrate security best practices throughout the organization. This often involves coordinating regular risk assessments, facilitating secure code reviews, and ensuring that new technologies meet established security standards. By fostering open communication and providing security guidance, the manager helps other departments proactively address vulnerabilities and align with regulatory requirements. This cross-functional collaboration is key to building a strong and cohesive security posture.

What does a Security Engineering Manager do?

A Security Engineering Manager leads a team of security engineers responsible for designing, implementing, and maintaining an organization's security infrastructure. They oversee security projects, coordinate responses to security incidents, and ensure best practices for protecting data and systems. The role also involves mentoring team members, collaborating with other departments, and staying updated on the latest security threats and technologies. Their ultimate goal is to minimize security risks and ensure compliance with industry standards.

What is the difference between Security Engineering Manager vs Security Engineer?

AspectSecurity Engineering ManagerSecurity Engineer
CredentialsTypically requires a bachelor's degree in cybersecurity, computer science, or related field; often certifications like CISSP, CISMUsually holds a bachelor's degree in cybersecurity, computer science, or related; certifications like CompTIA Security+ or CISSP are common
Work EnvironmentLeads security teams, manages projects, and develops security strategies within organizationsExecutes security measures, monitors systems, and responds to security incidents
Employer & Industry UsageFound in tech companies, finance, healthcare, and any organization with security needsWorks across similar industries, often as part of security or IT teams

The Security Engineering Manager oversees security teams and strategies, focusing on leadership and planning, while the Security Engineer implements security measures and handles technical security tasks. Both roles require relevant certifications and work in similar environments, but differ mainly in scope and responsibility.

What cities are hiring for Security Engineering Manager jobs? Cities with the most Security Engineering Manager job openings:
What states have the most Security Engineering Manager jobs? States with the most job openings for Security Engineering Manager jobs include:
Infographic showing various Security Engineering Manager job openings in the United States as of May 2026, with employment types broken down into 1% As Needed, 87% Full Time, 10% Part Time, and 2% Contract. Highlights an 90% Physical, 3% Hybrid, and 7% Remote job distribution, with an average salary of $146,868 per year, or $70.6 per hour.
Senior Security Engineering Manager, Enterprise Security

Senior Security Engineering Manager, Enterprise Security

Upstart

On-site

$114.40K - $156.80K/yr

Other

Posted 10 days ago


Job description

The Team

Upstart's Security Engineering team protects Upstart's people, systems, products, and data by building and operating security capabilities that reduce risk across the company. The team works across enterprise security, security operations, and detection security engineering to strengthen Upstart's security posture through scalable controls, effective monitoring and response, secure tooling, automation, and cross-functional security programs.

As a Senior Security Manager for Enterprise Security Engineering at Upstart, you will lead a team responsible for building and maturing security programs across enterprise security, security operations, and detection engineering. You will help define how Upstart identifies, prioritizes, prevents, detects, and responds to security risks across corporate systems, cloud environments, business applications, endpoints, identity platforms, and critical security workflows.

This leader will shape a security engineering culture that prioritizes proactive and preventative controls over purely reactive response. By investing in durable controls, automation, detection coverage, and early risk reduction, the team can reduce costly incidents, minimize operational disruption, and focus its time on the highest-impact security risks. You will partner closely with Engineering, IT, Legal, Compliance, Risk, and business leaders to mature Upstart's security capabilities and ensure security priorities are aligned with company goals.

How you'll make an impact:

  • Lead the strategy, roadmap, and execution for security engineering programs across enterprise security, security operations, and detection security engineering.
  • Manage, coach, and develop a team of security professionals, ensuring the team has clear priorities, measurable goals, effective operating rhythms, and opportunities for career growth.
  • Build and mature proactive and preventative security controls across corporate systems, cloud environments, identity platforms, endpoints, SaaS applications, and security operations workflows.
  • Improve Upstart's ability to detect, investigate, and respond to threats by strengthening detection coverage, alert quality, logging strategy, response playbooks, automation, and operational processes.
  • Drive cross-functional security initiatives across Engineering, IT, Compliance, Legal, Risk, and business teams, aligning security priorities with company objectives, risk tolerance, and operational needs.
  • Establish and report on meaningful security engineering and operations metrics, including program health, control effectiveness, detection and response performance, remediation progress, and risk reduction outcomes.
  • Evaluate and improve security tooling, processes, and controls to reduce systemic risk, increase operational efficiency, and ensure the team is focused on the highest-value security work.
  • Raise the maturity of Upstart's security programs by identifying recurring issues, addressing root causes, and developing

What we're looking for: 

  • Minimum requirements:
    • 8+ years of experience in information security, security engineering, enterprise security, security operations, detection and response, incident response, vulnerability management, cloud security, or related security domains.
    • 3+ years of experience managing security professionals or leading security engineering programs across multiple teams or stakeholder groups.
    • Experience owning roadmaps, priorities, metrics, and execution for security programs with cross-functional dependencies.
    • Experience building or operating security capabilities in cloud-based and enterprise environments, including working knowledge of common security tooling, logging, monitoring, detection, identity, endpoint, and response practices.
    • Experience leading security incidents or operational security programs, including investigation coordination, stakeholder communications, remediation tracking, and post-incident improvement.
    • Experience partnering with Engineering, IT, Compliance, Legal, Risk, or business teams to deliver measurable security outcomes.
  • Preferred qualifications:
    • Experience leading security programs across multiple domains such as enterprise security, security operations, detection engineering, cloud security, identity and access management, endpoint security, vulnerability management, or incident response.
    • Demonstrated experience building or improving security programs that emphasize proactive and preventative controls, automation, and early risk reduction over reactive incident response.
    • Knowledge of AWS, Kubernetes, CI/CD security, endpoint security, identity and access management, vulnerability management, SIEM/SOAR, logging pipelines, and modern detection engineering practices.
    • Ability to communicate security risk, tradeoffs, and recommendations clearly to technical, non-technical, and senior leadership audiences.
    • Experience improving detection and response maturity through logging strategy, detection coverage, alert tuning, automation, playbooks, tabletop exercises, postmortems, and measurable process improvements.
    • Experience improving enterprise security programs across SaaS applications, identity providers, endpoint controls, corporate infrastructure, and employee security workflows.
    • Experience operating in a regulated environment, financial technology company, or organization with high security, privacy, or compliance requirements.
    • Security certifications such as CISSP, CISM, GIAC, AWS Security Specialty, or similar credentials.

Position location This role is available in the following locations: Remote - US

Time zone requirements The team operates on the East/West coast time zones. 

Travel requirements As a digital first company, the majority of your work can be accomplished remotely. The majority of our employees can live and work anywhere in the U.S but are encouraged to to still spend high quality time in-person collaborating via regular onsites. The in-person sessions' cadence varies depending on the team and role; most teams meet once or twice per quarter for 2-4 consecutive days at a time.

#LI-REMOTE

#LI-MidSenior