Product Security Manager II
2 weeks ago
Credit Acceptance is proud to be an award-winning company with local and national workplace recognition in multiple categories Our world-class culture is shaped by dedicated Team Members who share a drive to succeed as professionals and together as a company. A great product, amazing people and our stable financial history have made us one of the largest used car finance companies nationally.
Please make sure you read the following details carefully before making any applications.
Our Engineering and Analytics Team Members utilize the latest technology to develop, monitor, and maintain complex practices that help optimize our success. Our Team Members value being challenged, are encouraged to express their ideas, and have the flexibility to enjoy work life balance. We build intrinsic value by partnering with all functions of our business to support their success and make strategic business decisions. We focus on professional development and continuous improvement while enjoying a casual work environment and Great Place to Work culture
Outcomes and Activities:
This position will work from home; occasional planned travel to an assigned Southfield, Michigan office location may be required. However, this position is permitted to work at a Southfield, Michigan office location if requested by the team member.
Leads and mentors team members on product security including both application and platform security
Integrates security testing and automation into "Golden Path"
Collaborates with cloud engineers to ensure environment is designed and configured securely
Reports vulnerabilities to Vulnerability Management team while working with developers and engineers to perform risk assessment and remediate
Ensures Security Operations has appropriate telemetry needed to monitor for threats
Documents attack surface and risks through SCA and SBOMs
Leads security champion effort within development and platform engineering
Provides security training to key engineering resources
Identifies friction points and collaborates with Engineering team members to alleviate
Participates in work planning processes to ensure the most important work is aligned to the appropriate team, that work is broken down enough that outcomes can be delivered incrementally
Leads and mentors cross functional team members on securing world class products that deliver customer delight and business value
Builds effective teams by ensuring you have the right people and setting clear expectations
Monitors and evaluates team performance and continuously coach and mentor team members
Sets up your team for operational success by having a sound understanding on the system ecosystem, architecture, technologies and system domains and how these are used to achieve business outcomes
Is an active participant in on-call escalation and incident management
Competencies:
Customer Empathy: Customer Empathy is the ability to understand the perspectives, pain points, and experiences of customers. It involves actively putting oneself in the customer's shoes, comprehending their needs and challenges, and using that understanding to provide a better, more customer-centric experience.
Engineering Excellence: Engineering Excellence is about bringing great craftsmanship and thought leadership to deliver an outstanding product that delights customers and solves for the business. This involves the pursuit and achievement of high standards, best practices, innovation, and superior solutions.
One Team: A One Team mindset refers to a collaborative approach across the organization, where individuals work together seamlessly, without boundaries, as a single, cohesive team. Shared goals, open communication and mutual support create a sense of collective purpose. This enables teams to navigate challenges and pursue shared objectives more effectively.
Owner's Mindset: Owner's Mindset involves adopting a set of behaviors that reflect a sense of responsibility, accountability, strategic thinking, and a proactive approach to managing your domain. As an owner, you understand the business and your domain(s) deeply and solve for the right outcome for the domain(s) and the business.
Requirements:
Bachelor's Degree or equivalent experience
10+ years of information security experience
Minimum of 5 years' experience leading product/application security teams
Strong experience leveraging automation and integration
Strong experience with scanning tools including SAST, DAST and IAST
Experienced in Software Composition Analysis and creating SBOMs, securing cloud applications specifically in AWS, and cloud security strategies including posture management tools (CSPM, DSPM) and incident response
Proven experience in technical leadership, capable of providing mentorship, cross-functional project execution, setting and executing on technical vision and strategy
Experience in microservices design strategies and implementation including migration planning, service granularity, interservice communication, traceability, orchestration, and failure isolation
Experience with cloud migrations and working in a mixed on-prem / cloud environment (container orchestration, security, serverless)
Preferred:
Track record of identifying opportunities to improve outcomes via new tools and approaches, evaluating and measuring candidate solutions, and successfully advocating for their adoption
Experience with RASP tools
Experience in DevSecOps
Knowledge and Skills:
Application Security: Ability to understand and implement controls throughout the application lifecycle from static scanning to run-time defense
Cloud Security: Understanding of cloud environment, tech stack and inherent risks of cloud environment
Thought leader with deep technical expertise with the proven ability to influence and partner with business to innovate and drive outcomes
Ability to communicate complex technical information (both verbal and written) to all levels, including senior leadership
Ability to solve problems at the source by offering simple, working solutions
Ability to anticipate the impact of a change or project across multiple systems
Responds promptly and effectively to resolve incidents, tasks, and projects
Demonstrated ability and motivation to teach others
Ability to gain trust of others and builds solid relationships across and vertically throughout the organization
Effectively prioritize and execute tasks in a high-pressure environment
Target Compensation: A competitive base salary range from $180,000 $220,000. This position is eligible for an annual variable bonus of cash and equity, between 15-30%. Final compensation within the range is influenced by many factors including role-specific skills, depth and experience level, industry background, relevant education and certifications.
Candidates who reside in the following major metropolitan areas may be eligible for a premium on top of the posted range based on their specific zone: San Francisco, Seattle, Boston, New York City, Los Angeles and San Diego.
INDENGLP
#zip
#LI-Remote
Benefits
Excellent benefits package that includes 401(K) match, adoption assistance, parental leave, tuition reimbursement, comprehensive medical/ dental/vision and many nonstandard benefits that make us a Great Place to Work
Our Company Values:
To be successful in this role, Team Members need to be:
Positive by maintaining resiliency and focusing on solutions
Respectful by collaborating and actively listening
Insightful by cultivating innovation, accumulating business and role specific knowledge, demonstrating self-awareness and making quality decisions
Direct by effectively communicating and conveying courage
Earnest by taking accountability, applying feedback and effectively planning and priority setting
To create an environment where people do their best work, we focus on the dimensions of Organizational Health. All leaders must:
Identify the Right People by recognizing top talent
Set Clear Expectations by managing change and directing others
Train team members and focus on developing talent
Performance Manage by ensuring accountability and driving results
Create the Right Environment by establishing trust and managing conflict
Maintain the Right Number of team members needed to build an effective team
Expectations:
Remain compliant with our policies processes and legal guidelines
All other duties as assigned
Attendance as required by department
Advice
We understand that your career search may look different than others. Our hiring team wants to make sure that this would be a fit not just for us, but for you long term. If you are actively looking or starting to explore new opportunities, send us your application
P.S .
We have great details around our stats, success, history and more. We're proud of our culture and are happy to share why – let's talk
Required degrees must have been earned at institutions of Higher Education which are accredited by the Council for Higher Education Accreditation or equivalent.
Credit Acceptance is dedicated to providing a safe and inclusive working environment for all. As part of our Culture of Compliance, we are proud to be an Equal Opportunity Employer and value our culturally diverse workforce. All qualified applicants will receive consideration for employment regardless of the person's age, race, color, religion, sex, gender, sexual orientation, gender identity, national origin, veteran or disability status, criminal history, or any other legally protected characteristic.
California Residents: Please click here for the California Consumer Privacy Act (CCPA) notice regarding the personal information Credit Acceptance may collect from you.
Remote working/work at home options are available for this role.
-
Security Technical Account Manager II
2 weeks ago
united states Akamai Full timeWould you like to reduce the risk of API security vulnerabilities and cyber-attacks? Do you want to work with customers to address their greatest needs in API Security? Join our Advanced Technology Group We work with customers to address their needs in API Security, implementing our solutions for maximum impact. Our customers rely on our platform...
-
Product Manager II
5 days ago
united states Housecall Pro Full timeWhy Housecall Pro?Help us build solutions that build better lives. At Housecall Pro, we show up to work every day to make a difference for real people: the home service professionals that support Americas 100 million homes. Were all about the Pro, and dedicate our days to helping them streamline operations, scale their businesses, andultimatelysave time so...
-
Security Analyst II
1 week ago
mo, united states Tek Ninjas Full timePosition: Security Analyst IILocation: RemoteDuration: 12 Months with EXT Security analysts are responsible for analyzing system and application security and making recommendations that optimize the protection of our computer systems and information resources. Security analysts develop, test, implement and maintain security policies and programs. They are...
-
Product Manager II
2 days ago
united states Housecall Pro Full timeWhy Housecall Pro?Help us build solutions that build better lives. At Housecall Pro, we show up to work every day to make a difference for real people: the home service professionals that support Americas 100 million homes. Were all about the Pro, and dedicate our days to helping them streamline operations, scale their businesses, andultimatelysave time so...
-
Staff Software Engineer, Product Security
4 days ago
united states Rivian Full timeAbout Rivian Rivian is on a mission to keep the world adventurous forever. This goes for the emissions-free Electric Adventure Vehicles we build, and the curious, courageous souls we seek to attract. As a company, we constantly challenge what's possible, never simply accepting what has always been done. We reframe old problems, seek new solutions and operate...
-
Product Manager II
3 days ago
united states PDI Technologies Full timeLocation: US Remote Employee Level: Individual Contributor Career Level: Mid-Level What You Need: Bachelor's degree or 3 years of experience as a project administrator in the information technology or related field OR equivalent experience 2 - 5 years of experience working as a business analyst, product manager, product owner or similar role At...
-
Senior Product Security Engineer
4 days ago
united states Medallia Full timeOverview Medallia is the pioneer and market leader in Experience Management. Our award-winning SaaS platform, Medallia Experience Cloud, leads the market in the understanding and management of experience for candidates, customers, employees, patients, citizens and residents. We are more than a software company. We want to be known as a company that does the...
-
Senior Product Security Engineer
1 week ago
united states Tyler Technologies Full timeDescription Tyler Technologies is seeking a passionate, talented Senior Product Security Engineer to support our Data and Insights (D&I) solutions on the Security team. This position is an exciting opportunity to influence the security posture of our D&I portfolio, augment our development processes with security-centric activities, and maintain our...
-
united states Stellent IT LLC Full timeHello, I hope you are doing well Kindly acknowledge me, are you Comfortable with this Position then please share with me your updated resume Job Title Product Security Engineer Location Remote Duration long term Job Description The Product Security Engineer will be responsible for implementing the enterprise Product Security strategy and framework...
-
Product Manager
4 days ago
united states Microsoft Full timeOverview Identity. It's what the brave new world of enterprise IT is all about We are looking for a Product Manager with knowledge in the identity and cybersecurity space with great communication skills, to join our exciting and diverse team. You will revel in delivering identity and security driven products and services to enterprises around the...
-
Cloud Product Manager
5 days ago
united states Varonis Full timeDescription Job Title: Cloud Product Manager Who We Are: Data has never been more valuable and vulnerable. As cybercriminals become more sophisticated and regulations become stricter, organizations struggle to answer one key question: "Is my data safe?" At Varonis, we see the world of cybersecurity differently. Instead of chasing threats, we...
-
Product Manager ll
2 weeks ago
united states Microsoft Full timeOverview We belong to an era that promises to change the way we think about data and computing. The Azure Storage team is at the forefront of this revolution, building and running one of the largest, most reliable, scalable and cost-efficient cloud storage platforms in existence. Do you enjoy being the voice of the customer, understanding their needs...
-
IT Security Manager
5 days ago
united states Orthofix Full timeWhy Orthofix? We are a leading global spine and orthopedics company with a premier portfolio of biologics, innovative spinal hardware, bone growth therapies, specialized orthopedic solutions and a leading surgical navigation system. Our combined company is over 1,600 strong, with products distributed in 68 countries worldwide and a global R&D, commercial and...
-
Product Marketing Manager
5 days ago
united states Varonis Full timeDescription We're seeking an experienced Product Marketing Manager to help amplify Varonis' automated data security message in the market. As a Product Marketing Manager focused on Varonis' Data Security Platform, you'll have a deep understanding of our product, buyer needs, and market trends.You'll work cross-functionally to create compelling content...
-
SOC Analyst II
5 days ago
united states Sentinel Blue Full timeSentinel Blue is on the cutting edge of cybersecurity, providing enterprise-class security solutions to small and medium-sized businesses. As we continue to innovate and expand our capabilities, we are in search of a mid-level SOC Analyst II with a passion for cybersecurity and a proven track record in security operations. This role is designed for an...
-
Private Client Relationship Manager II
1 week ago
united states Citizens Full timeAt Citizens, tailored advice, personalized experiences, and innovative ideas, products, and solutions, are central to helping clients navigate changing circumstances. In this role, you'll deepen relationships with your clients by collaborating with peers across banking, lending and investing, helping them with short- and long-term financial goals. As...
-
IT Security Manager
4 days ago
united states Citizens Full timeAs a senior member of the Digital Identity Services team, you will have responsibility for providing Citizen's customers with a best-in-class Customer Security Experience. This Customer Identity and Access Management (CIAM) role will require your focus on prioritizing and delivering security and identity products and services that empower and support our...
-
Principal Product Manager
1 week ago
united states Mattermost Full timeAt Mattermost, we build the #1 collaborative workflow solution for defense, intelligence, security, and critical infrastructure organizations. Trusted by governments, financial institutions, and technology companies, our platform enables secure, efficient operations for the world's most critical teams. We're dedicated to empowering organizations to operate...
-
Middleware Production Support Engineer
5 days ago
united states WONESE. Full timeMiddleware Production Support Engineer Location: Virginia Salary: Market Need Production Support Primary On-call resources for the below shifts. This requirement is for the Middleware team that is responsible for build, configuration and administration of Middleware technologies Weblogic, Apache, Tomcat, webMethods, Appian, IIS, MQ and JBoss. ...
-
Cloud Integrations Product Manager
1 week ago
united states Forescout Technologies Inc Full timeProduct Management, Cloud Security – API & Integrations Location: United States, Canada What We Do Overcoming Cyber Threats and Risks Forescoutis at the forefront of IT, IoT, OT security, deliveringcloud and network cybersecurity solutions for a connected world. We empower our customers to proactively defend their organizations against complex cyber...