{"schemaVersion":"jobsearcher.job.v1","id":"cd2c946474c652c8b828ec8f","url":"https://jobsearcher.com/jobs/cd2c946474c652c8b828ec8f","canonicalUrl":"https://jobsearcher.com/jobs/cd2c946474c652c8b828ec8f","title":"Engineering Manager - Security Engineering","description":"Aircall is a unicorn, AI-powered customer communications platform used by 22,000+ companies worldwide to drive revenue, resolve issues faster, and scale customer-facing teams. We're redefining customer communications by bringing voice, SMS, WhatsApp, and AI together into one seamless workspace.\nOur momentum comes from a simple idea: help teams work smarter, not harder. Aircall's AI Voice Agent automates routine calls, AI Assist streamlines post-call work, and AI Assist Pro delivers real-time guidance so people can do their best work. The result is higher revenue, faster resolutions, and teams that scale with confidence.\nAircall is headquartered in Paris, our European HQ, with a strong North American presence anchored in Seattle, our North American HQ, and teams across Madrid, London, Berlin, San Francisco, New York City, Sydney, and Mexico City. We've built a product customers love and a business that's scaling quickly, backed by world-class investors and driven by rapid AI innovation across multiple product lines.\nAt Aircall, you'll join a company in motion. We're ambitious, product-driven, and execution-focused, with visible impact, fast decisions, and real growth.\n\nHow we work at Aircall: We're customer-obsessed, data-driven, and focused on delivering meaningful outcomes. We value ownership, continuous learning, and thoughtful speed. If you thrive in a collaborative, fast-moving environment where trust and impact matter, you'll feel at home here.\n\nWe are looking for a seasoned Engineering Manager to lead Aircall's Security Engineering organisation. This is a high-impact leadership role spanning four pillars: Product Security, Infrastructure Security, Detection & Response, and Governance, Risk & Compliance (GRC). You will grow an established team of security engineers, set the technical direction, and partner closely with Engineering, Product, Legal, IT and Finance to embed security deeply across the company. You'll scale the team through high impact AI engineering across all 4 pillars.\nYou will be both a skilled people manager and a credible technical leader — someone who can roll up their sleeves when needed but who ultimately scales their impact through their team. You bring empathy, clear communication, and a bias for pragmatic security outcomes over security theatre.\n\nScope of Responsibility:\nProduct Security\nOwn the Secure Software Development Lifecycle (SSDLC) from threat modelling through to production deployment.\nSecure Agentic development practices by automating threat modeling, code reviews, internal pentesting and vulnerability remediation by building in-house security AI agents.\nPartner with engineering to embed security reviews, static analysis (SAST), dependency scanning (SCA), and secrets detection into CI/CD pipelines.\nLead the Aircall Bug Bounty and Vulnerability Disclosure Program (VDP), triaging and remediating reports with engineering teams.\nDrive regular penetration testing cycles for web, mobile, and API surfaces; oversee remediation tracking.\nChampion a developer-centric security culture through security champions, training, and tooling that makes the secure path the easy path.\nInfrastructure Security\nDefine and maintain the security architecture of Aircall's cloud infrastructure (AWS), with a strong emphasis on zero-trust, least privilege, and defence in depth.\nOwn, maintain and expand security observability through CSPM, CNAPP and CWPP tools like Wiz.\nEnable agentic auto-remediations for security vulnerabilities.\nOwn network segmentation, secrets management, certificate lifecycle, identity & access management (IAM), and workload isolation, and secure hosting of internal AI applications\nLead infrastructure hardening programs: CIS benchmarks, container security, Kubernetes policy enforcement (OPA), and immutable infrastructure practices.\nManage the security posture of third-party SaaS tools and vendor risk assessments.\nCollaborate with Infrastructure engineering and Product Engineering on shared security responsibilities and runbooks.\nDetection & Response\nBuild and mature Aircall's threat detection capability — SIEM tuning, alert triage playbooks, and investigation workflows.\nOwn incident response: develop and test the IR plan, lead tabletop exercises, and act as incident commander for significant security events.\nDrive threat intelligence and threat hunting programs to stay ahead of adversaries targeting the cloud communications sector.\nEstablish and track key security metrics: MTTD, MTTR, alert-to-incident conversion rates, and coverage gaps.\nEnsure 24×7 detection coverage through tooling, automation, and on-call rotations, balancing reliability and engineer wellbeing.\nGovernance, Risk & Compliance (GRC / Information Security)\nOwn and continuously improve Aircall's information security management program, aligned to SOC 2 Type II, and applicable data-protection regulations (GDPR, CCPA).\nLead audit preparation and evidence collection for external certifications and customer security questionnaires.\nMaintain the corporate risk register for information security, presenting findings and remediation plans to senior leadership and the board as required.\nDefine and enforce security policies, standards, and exception processes across the organisation.\nAct as the primary security liaison for enterprise customers, prospects, and partners conducting security due diligence.\nPeople Leadership\nLead, mentor, and grow a multi-disciplinary security team of 6–10 engineers across the four pillars.\nRun structured 1:1s, career-development conversations, and quarterly goal-setting aligned to company OKRs.\nHire and onboard exceptional security talent; contribute to employer-branding initiatives in the security community.\nCreate an environment where engineers feel psychologically safe to raise concerns, experiment, and learn from failures.\nBalance hands-on technical involvement with delegation — staying close enough to the work to be credible, but trusting the team to execute.\nPartner cross-functionally with Engineering leadership, Legal, People Ops, and Finance to align security initiatives with business priorities.\n\nWhat We're Looking For:\n7+ years of professional experience in security engineering.\n3+ years in an engineering management or technical lead role with direct reports.\nProven track record of building and scaling security teams in a cloud-native, SaaS environment.\nDeep technical fluency across at least two of the four pillars (Product Security, Infrastructure Security, D&R, GRC).\nHands-on experience with major cloud platforms (AWS strongly preferred, GCP or Azure a plus) and infrastructure-as-code (Terraform, CDK, or equivalent).\nExperience owning or contributing to SOC 2 Type II, ISO 27001, or equivalent compliance programmes.\nDemonstrated ability to communicate security risk clearly to non-technical executives and board members.\nExperience running security incident response — from detection through containment, eradication, and post-mortem.\n\nPreferred / Nice to Have:\nBackground in a high-growth B2B SaaS or cloud-communications company.\nFamiliarity with VoIP, real-time communications, or telephony security considerations.\nExperience embedding Agentic AI practices into security engineering workflows and securing internal AI tooling and implementation.\nRelevant certifications: CISSP, CISM, AWS Security Specialty, GIAC (GWAPT, GCIA, GCIH), or equivalent.\nExperience running a Bug Bounty programme (HackerOne, Bugcrowd, or similar).\nContributions to the open-source security community, conference speaking, or published research.\nFamiliarity with DORA metrics and the relationship between deployment frequency and security posture.\nWhy join us?\nKey moment to join Aircall in terms of growth and opportunities\n‍️ Our people matter, work-life balance is important at Aircall\nFast-learning environment, entrepreneurial and strong team spirit\n45+ Nationalities: cosmopolite & multi-cultural mindset\nCompetitive salary package & benefits\n\nDE&I Statement:\nAt Aircall, we believe diversity, equity and inclusion – irrespective of origins, identity, background and orientations – are core to our journey.\nWe pride ourselves on promoting active inclusion within our business to foster a strong sense of belonging for all. We're working to create a place filled with diverse people who can enrich and learn from one another. We're committed to ensuring that everyone not only has a seat at the table but is valued and respected at it by providing equal opportunities to develop and thrive.\nWe will constantly challenge ourselves to make sure that we live up to our ambitions around diversity, equity and inclusion, and keep this conversation open. Above all else, we understand and acknowledge that we have work to do and much to learn.\n\nWant to know more about candidate privacy? Find our Candidate Privacy Notice here.\nWe may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.","company":"Aircallio","rawCompany":"aircallio","city":"Seattle","state":"WA","isRemote":false,"isActive":false,"createdAt":"2026-08-04T02:35:37.361Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"11-3013.01","title":"Security Managers","slug":"security-managers"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Engineering Manager - Security Engineering","description":"Aircall is a unicorn, AI-powered customer communications platform used by 22,000+ companies worldwide to drive revenue, resolve issues faster, and scale customer-facing teams. We're redefining customer communications by bringing voice, SMS, WhatsApp, and AI together into one seamless workspace.\nOur momentum comes from a simple idea: help teams work smarter, not harder. Aircall's AI Voice Agent automates routine calls, AI Assist streamlines post-call work, and AI Assist Pro delivers real-time guidance so people can do their best work. The result is higher revenue, faster resolutions, and teams that scale with confidence.\nAircall is headquartered in Paris, our European HQ, with a strong North American presence anchored in Seattle, our North American HQ, and teams across Madrid, London, Berlin, San Francisco, New York City, Sydney, and Mexico City. We've built a product customers love and a business that's scaling quickly, backed by world-class investors and driven by rapid AI innovation across multiple product lines.\nAt Aircall, you'll join a company in motion. We're ambitious, product-driven, and execution-focused, with visible impact, fast decisions, and real growth.\n\nHow we work at Aircall: We're customer-obsessed, data-driven, and focused on delivering meaningful outcomes. We value ownership, continuous learning, and thoughtful speed. If you thrive in a collaborative, fast-moving environment where trust and impact matter, you'll feel at home here.\n\nWe are looking for a seasoned Engineering Manager to lead Aircall's Security Engineering organisation. This is a high-impact leadership role spanning four pillars: Product Security, Infrastructure Security, Detection & Response, and Governance, Risk & Compliance (GRC). You will grow an established team of security engineers, set the technical direction, and partner closely with Engineering, Product, Legal, IT and Finance to embed security deeply across the company. You'll scale the team through high impact AI engineering across all 4 pillars.\nYou will be both a skilled people manager and a credible technical leader — someone who can roll up their sleeves when needed but who ultimately scales their impact through their team. You bring empathy, clear communication, and a bias for pragmatic security outcomes over security theatre.\n\nScope of Responsibility:\nProduct Security\nOwn the Secure Software Development Lifecycle (SSDLC) from threat modelling through to production deployment.\nSecure Agentic development practices by automating threat modeling, code reviews, internal pentesting and vulnerability remediation by building in-house security AI agents.\nPartner with engineering to embed security reviews, static analysis (SAST), dependency scanning (SCA), and secrets detection into CI/CD pipelines.\nLead the Aircall Bug Bounty and Vulnerability Disclosure Program (VDP), triaging and remediating reports with engineering teams.\nDrive regular penetration testing cycles for web, mobile, and API surfaces; oversee remediation tracking.\nChampion a developer-centric security culture through security champions, training, and tooling that makes the secure path the easy path.\nInfrastructure Security\nDefine and maintain the security architecture of Aircall's cloud infrastructure (AWS), with a strong emphasis on zero-trust, least privilege, and defence in depth.\nOwn, maintain and expand security observability through CSPM, CNAPP and CWPP tools like Wiz.\nEnable agentic auto-remediations for security vulnerabilities.\nOwn network segmentation, secrets management, certificate lifecycle, identity & access management (IAM), and workload isolation, and secure hosting of internal AI applications\nLead infrastructure hardening programs: CIS benchmarks, container security, Kubernetes policy enforcement (OPA), and immutable infrastructure practices.\nManage the security posture of third-party SaaS tools and vendor risk assessments.\nCollaborate with Infrastructure engineering and Product Engineering on shared security responsibilities and runbooks.\nDetection & Response\nBuild and mature Aircall's threat detection capability — SIEM tuning, alert triage playbooks, and investigation workflows.\nOwn incident response: develop and test the IR plan, lead tabletop exercises, and act as incident commander for significant security events.\nDrive threat intelligence and threat hunting programs to stay ahead of adversaries targeting the cloud communications sector.\nEstablish and track key security metrics: MTTD, MTTR, alert-to-incident conversion rates, and coverage gaps.\nEnsure 24×7 detection coverage through tooling, automation, and on-call rotations, balancing reliability and engineer wellbeing.\nGovernance, Risk & Compliance (GRC / Information Security)\nOwn and continuously improve Aircall's information security management program, aligned to SOC 2 Type II, and applicable data-protection regulations (GDPR, CCPA).\nLead audit preparation and evidence collection for external certifications and customer security questionnaires.\nMaintain the corporate risk register for information security, presenting findings and remediation plans to senior leadership and the board as required.\nDefine and enforce security policies, standards, and exception processes across the organisation.\nAct as the primary security liaison for enterprise customers, prospects, and partners conducting security due diligence.\nPeople Leadership\nLead, mentor, and grow a multi-disciplinary security team of 6–10 engineers across the four pillars.\nRun structured 1:1s, career-development conversations, and quarterly goal-setting aligned to company OKRs.\nHire and onboard exceptional security talent; contribute to employer-branding initiatives in the security community.\nCreate an environment where engineers feel psychologically safe to raise concerns, experiment, and learn from failures.\nBalance hands-on technical involvement with delegation — staying close enough to the work to be credible, but trusting the team to execute.\nPartner cross-functionally with Engineering leadership, Legal, People Ops, and Finance to align security initiatives with business priorities.\n\nWhat We're Looking For:\n7+ years of professional experience in security engineering.\n3+ years in an engineering management or technical lead role with direct reports.\nProven track record of building and scaling security teams in a cloud-native, SaaS environment.\nDeep technical fluency across at least two of the four pillars (Product Security, Infrastructure Security, D&R, GRC).\nHands-on experience with major cloud platforms (AWS strongly preferred, GCP or Azure a plus) and infrastructure-as-code (Terraform, CDK, or equivalent).\nExperience owning or contributing to SOC 2 Type II, ISO 27001, or equivalent compliance programmes.\nDemonstrated ability to communicate security risk clearly to non-technical executives and board members.\nExperience running security incident response — from detection through containment, eradication, and post-mortem.\n\nPreferred / Nice to Have:\nBackground in a high-growth B2B SaaS or cloud-communications company.\nFamiliarity with VoIP, real-time communications, or telephony security considerations.\nExperience embedding Agentic AI practices into security engineering workflows and securing internal AI tooling and implementation.\nRelevant certifications: CISSP, CISM, AWS Security Specialty, GIAC (GWAPT, GCIA, GCIH), or equivalent.\nExperience running a Bug Bounty programme (HackerOne, Bugcrowd, or similar).\nContributions to the open-source security community, conference speaking, or published research.\nFamiliarity with DORA metrics and the relationship between deployment frequency and security posture.\nWhy join us?\nKey moment to join Aircall in terms of growth and opportunities\n‍️ Our people matter, work-life balance is important at Aircall\nFast-learning environment, entrepreneurial and strong team spirit\n45+ Nationalities: cosmopolite & multi-cultural mindset\nCompetitive salary package & benefits\n\nDE&I Statement:\nAt Aircall, we believe diversity, equity and inclusion – irrespective of origins, identity, background and orientations – are core to our journey.\nWe pride ourselves on promoting active inclusion within our business to foster a strong sense of belonging for all. We're working to create a place filled with diverse people who can enrich and learn from one another. We're committed to ensuring that everyone not only has a seat at the table but is valued and respected at it by providing equal opportunities to develop and thrive.\nWe will constantly challenge ourselves to make sure that we live up to our ambitions around diversity, equity and inclusion, and keep this conversation open. Above all else, we understand and acknowledge that we have work to do and much to learn.\n\nWant to know more about candidate privacy? Find our Candidate Privacy Notice here.\nWe may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.","datePosted":"2026-08-04T02:35:37.361Z","dateModified":"2026-08-04T02:35:37.361Z","hiringOrganization":{"@type":"Organization","name":"Aircallio","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Seattle","addressRegion":"WA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"cd2c946474c652c8b828ec8f"},"url":"https://jobsearcher.com/jobs/cd2c946474c652c8b828ec8f"}}