Manager, Product Security
crypto:securityengineeringM2Security
Compensation
Not disclosed
About the role
We are looking for a Product Security Manager to lead a team focused on cloud, application, and AI security within our Product Security organization.
This role is responsible for securing our cloud infrastructure, protecting applications, and enabling safe adoption of AI across our products and internal systems. You will work closely with engineering, product, and platform teams to ensure that Chime applications and systems are designed and operated securely.
While cloud and application security are core pillars of this role, AI security is an increasingly critical area of focus. You will help define how we safely leverage AI technologies while managing risks such as data exposure, misuse, and insecure integrations.
This role operates within a flexible POD model, requiring you and your team to move fluidly across security domains based on business priorities.
The base salary offered for this role and level of experience will begin at $152,000 and up to $210,000. Full-time employees are also eligible for a bonus, competitive equity package, and benefits. The actual base salary offered may be higher, depending on your location, skills, qualifications, and experience.
In this role, you can expect to
Own the security posture of cloud infrastructure, application systems, and AI-enabled applications across product surfaces
Influence platform teams' roadmaps and drive alignment on security priorities without direct authority
Partner with engineering and product teams to embed security into system design and development workflows
Lead and grow a team of security engineers, setting a high bar for technical execution, ownership, and impact
Define and execute strategy for securing cloud-native architectures and applications at scale
Establish guardrails and secure design patterns for AI adoption, including safe integration of third-party and internal AI systems
Identify and mitigate risks related to AI systems, including prompt injection, data lea