yoinka

Senior Technical Program Manager, Product Security

DocuSign

Seattle, Washington; Chicago, IllinoisFull TimeSenior$146.4k – $206.8k/yrH-1B sponsor company
Sign in to applyVerified 2h ago
Location
Seattle, Washington; Chicago, Illinois
Employment
Full Time
Work model
On-Site
Level
Senior
Salary
$146.4k – $206.8k/yr
H-1B history
71 approvals (FY2023)
Posted
2h ago

Skills

AWSAgileAzureCI/CDCybersecurityGCP

About this role

Company Overview Docusign brings agreements to life. Over 1.5 million customers and more than a billion people in over 180 countries use Docusign solutions to accelerate the process of doing business and simplify people’s lives. With intelligent agreement management, Docusign unleashes business-critical data that is trapped inside of documents. Until now, these were disconnected from business systems of record, costing businesses time, money, and opportunity. Using Docusign’s Intelligent Agreement Management platform, companies can create, commit, and manage agreements with solutions created by the #1 company in e-signature and contract lifecycle management (CLM).

What you'll do

As a Senior TPM in Product Security, you will shape and execute the long-term strategy for building security into our products. You'll spearhead the shift-left movement, ensuring secure development practices are embedded early and consistently across all teams. You will lead organizational change by building scalable programs, driving adoption of secure-by-design principles, and aligning security priorities with business goals. In this role, you'll act as a trusted partner to executives, influencing roadmaps and investment decisions, while enabling engineering teams to move fast without compromising security. This position is an individual contributor role reporting to the Sr. Manager, Security Product Management.

Responsibility

Own and scale product security initiatives that span across engineering organizations, balancing risk reduction with innovation Drive adoption of secure coding, automated security tooling, and early threat modeling across the SDLC Partner with senior engineering and product leaders to embed security into decision-making, roadmaps, and design principles Translate technical risk into business impact, providing clear updates, trade-off discussions, and recommendations to executives Lead organizational change by fostering a developer-first security culture that scales across teams and geographies Ensure products meet internal security standards, industry frameworks, and regulatory requirements Define measurable success criteria (e.g., secure coding adoption rates, vulnerability SLAs) and report outcomes to leadership Ensure coordinated response and remediation for vulnerabilities, leveraging learnings to continuously strengthen processes Improve security processes, tools, and automation to scale security across the organization Job Designation Hybrid: Employee divides their time between in-office and remote work. Access to an office location is required. (Frequency: Minimum 2 days per week; may vary by team but will be weekly in-office expectation) Positions at Docusign are assigned a job designation of either In Office, Hybrid or Remote and are specific to the role/job. Preferred job designations are not guaranteed when changing positions within Docusign. Docusign reserves the right to change a position's job designation depending on business needs and as permitted by local law. What you bring Basic 8+ years related experience with a Bachelor's degree or 6 years related experience with a Master's degree Bachelors or Masters degree in Technology or Computer Science or Cybersecurity Experience with product security practices (secure SDLC, threat modeling, vulnerability management, cloud/application security) Experience with security frameworks and standards (e.g., OWASP, NIST, ISO 27001) Experience leading large, cross-functional security or engineering programs Experience with program planning, prioritization, and driving accountability across teams Experience with threat modeling, risk management, and vulnerability management Preferred Hands-on experience enabling shift-left security practices in product development Proven ability to build and scale Security Champions or developer enablement programs Familiarity with regulatory and compliance frameworks (SOC 2, ISO 27001, GDPR FedRAMP, etc.) Experience working with product

Listing verified 2h ago. Applications go through the company's official careers site.

← Back to Yoinka