Manager SaaS Security Posture Management
About the role
The Manager of SaaS Security Posture Management (SSPM) is responsible for leading, operating, and scaling the enterprise SSPM capability. This role serves as the first-line people manager for SSPM and owns the day-to-day operations, execution, and continuous maturity of the program.
Key Responsibilities
Own day-to-day SSPM operations, including posture monitoring, findings triage, remediation workflows, exceptions, and risk acceptance.
Ensure SSPM operates in alignment with approved operating models, runbooks, and governance cadences.
Translate strategic direction into operational priorities, agile planning, and execution.
Directly manage SSPM analysts, developers, and contractors.
Provide performance feedback, coaching, and career development.
Manage workload, capacity, and coverage across SSPM functions.
Oversee operational use of SSPM tooling (e.g., Falcon Shield, Obsidian, AppOmni) and associated SaaS integrations, including any developed custom integrations.
Partner with SSPM technical leads to operationalize controls and policies.
Ensure SSPM findings are correctly prioritized and routed for remediation.
Serve as the primary operational SSPM interface for application owners, IAM, SOC, and GRC teams.
Participate in regular SaaS posture reviews and baseline recertification efforts.
Required Qualifications
Experience managing security or technology teams in a large enterprise environment.
Strong understanding of SaaS security risks including misconfigurations, identities, and integrations.
Proven ability to operationalize and scale security programs.
Strong communication and stakeholder engagement skills.
Preferred Qualifications
Experience with SaaS Security Posture Management tools or programs.
Familiarity with NIST CSF or similar security frameworks.
Experience working closely with IAM, SOC, or Cloud Security teams.