[Remote] Staff Engineering Manager, Cloud Security
Note: The job is a remote job and is open to candidates in USA. GitHub is the world’s leading platform for agentic software development, and they are seeking a Staff Engineering Manager to lead the Cloud Security engineering team. This role involves leading a team to protect GitHub's cloud infrastructure at a global scale, partnering with various teams to enhance security measures and ensure effective execution of security initiatives.
Responsibilities
- Lead and grow a distributed Cloud Security engineering team, creating clarity around priorities, ownership, execution, and impact
- Partner with Security, Infrastructure, Platform, Product, and Engineering leaders to define and deliver a technical roadmap that reduces cloud security risk across GitHub
- Drive cloud security initiatives across areas such as secure infrastructure configuration, identity and access, vulnerability and exposure management, incident response readiness, and secure-by-default platform capabilities
- Guide the team in designing scalable, reliable, and observable security systems that integrate effectively with GitHub's engineering workflows
- Build strong operating mechanisms for prioritization, execution, stakeholder communication, dependency management, and measurable security outcomes
- Coach and develop engineers, support career growth, manage performance, and foster a culture of ownership, learning, inclusion, and continuous improvement
- Champion engineering excellence through automation, tooling, standardization, and operational practices that make secure outcomes easier for GitHub engineering teams
- Partner with incident response, governance, risk, and compliance teams to ensure cloud security investments improve both real-world security posture and auditability
- Help the team balance proactive risk reduction with responsive security work, ensuring urgent issues are handled effectively without losing sight of long-term strategic goals
Skills
- 10+ years experience in security analysis, security research, cyber security, security engineering, or relevant area, OR Associate's Degree AND 9+ years experience in security analysis, security research, cyber security, security engineering, or relevant area, OR Bachelor's Degree AND 8+ years experience in security analysis, security research, cyber security, security engineering, or relevant area, OR Master's Degree AND 6+ years experience in security analysis, security research, cyber security, security engineering, or relevant area, OR Doctorate AND 4+ years experience in security analysis, security research, cyber security, security engineering, or relevant area, OR equivalent experience
- 2+ years people management experience
- 5+ years experience with securing one or more cloud platforms, such as Azure, AWS, or Google Cloud
- 3+ years experience with cloud security posture management, IaC security, container/Kubernetes security, IAM, secrets management, vulnerability management, detection engineering, or incident response
- 2+ years experience operating in large-scale SaaS, developer platform, enterprise software, or high-compliance environments
- 2+ years experience working with application security tools (SAST, DAST, SCA) and/or performing security review activities (threat modeling, security design and architecture review, application security testing and code review) within the development lifecycle
Benefits
- Annual bonus
- Stock
- Opportunity to earn sales incentives based on revenue or utilization, depending on the terms of the plan and the employee's role
- Generous learning and growth opportunities
- Excellent benefits to support you, wherever you are
Company Overview
Company H1B Sponsorship