Senior Technical Program Manager, Product Security
Overview
In this Senior TPM role, you will define and drive the long-term security strategy for DocuSign products, embedding secure development practices across teams. You will act as a trusted partner to executives, translating risk into business impact and guiding roadmaps. You will lead change toward a developer-first security culture and scale secure-by-design throughout the SDLC. This is a strategic, cross-functional role with meaningful influence on product security outcomes and company risk posture. You will shape how we balance innovation with robust security.
Compensation / BenefitsHealth benefitsPaid time off and holidaysRetirement plansRSU eligibilityLearning and development optionsParental leave
ResponsibilitiesOwn and scale cross-org product security initiativesDrive secure coding, automated tooling, and early threat modeling across the SDLCPartner with engineering and product leaders to embed security into decisions and roadmapsTranslate technical risk into business impact for executives with clear trade-offsLead organizational change to scale security practices across teams and geographiesEnsure products meet internal standards, industry frameworks, and regulatory requirementsDefine measurable success criteria and report outcomes to leadershipCoordinate vulnerability response and remediation, feeding lessons back into processesImprove security processes, tools, and automation to scale security across the org
Key requirements8+ years of related experience with Bachelor's degree or 6 years with Master'sBachelor's in Technology or Computer Science or CybersecurityExperience with product security practices (secure SDLC, threat modeling, vulnerability management, cloud/security)Experience with security frameworks (OWASP, NIST, ISO 27001)Experience leading large cross-functional security/engineering programsExperience with program planning, prioritization, and cross-team accountabilityExperience with threat modeling, risk management, and vulnerability managementExcellent executive communicationStakeholder managementCollaborative and cross-functional collaborationThreat modelingSecure SDLCVulnerability management