Navan has transformed the corporate travel, payment, and expense landscape by consistently prioritizing user needs and leveraging innovative, AI-powered solutions. We are seeking a Sr. Manager of Product Security to lead, mentor, and scale a team of product security engineers. This is a highly technical, hands-on leadership role focused on securing our products by integrating security throughout the SDLC and fostering a 'shift left' security culture. You will be responsible for building strong partnerships with engineering and product teams to accelerate secure software releases at scale.
What You’ll Do:- Lead, coach, and guide a team of product security engineers, providing mentorship and technical guidance.
- Act as a hands-on technical leader for high-impact security initiatives across our portfolio you will be responsible for Security Architecture for all our products and AI initiatives.
- Guide the team in performing comprehensive threat modeling and security reviews.
- Design and develop security tools, automation, and custom solutions to continuously improve the S-SDLC.
- Partner with engineering and product teams to drive security ownership and accountability.
- Help build and mature our Red Team and PSIRT functions.
- Proven experience leading and managing a team of security engineers.
- 8-10 years of technical product security experience, with a strong focus on SDLC tooling, automation, and remediation.
- Expertise in performing threat modeling, architecture reviews, and penetration testing for complex applications, including those within financial or healthcare environments.
- Deep, hands-on knowledge of security for distributed systems at scale.
- In-depth understanding of modern Authentication and Authorization protocols (SAML, OIDC, RBAC//REBAC).
- Experience with Agile development in a containerized, microservices environment.
- Proficiency with cloud (AWS), security testing tools (SAST, DAST, etc.), and CI/CD pipelines.
- Published contributions to the security community.
- Knowledge of compliance standards like PCI DSS and SOC2.
- Experience in fast-paced, small team environments, delivering outsized impact.
The posted pay range represents the anticipated low and high end of the compensation for this position and is subject to change based on business need. To determine a successful candidate’s starting pay, we carefully consider a variety of factors, including primary work location, an evaluation of the candidate’s skills and experience, market demands, and internal parity.
For roles with on-target-earnings (OTE), the pay range includes both base salary and target incentive compensation. Target incentive compensation for some roles may include a ramping draw period. Compensation is higher for those who exceed targets. Candidates may receive more information from the recruiter.
Top Skills
Similar Jobs at Navan
What you need to know about the Los Angeles Tech Scene
Key Facts About Los Angeles Tech
- Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
- Key Industries: Artificial intelligence, adtech, media, software, game development
- Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
- Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering