Manager, Secure Development & Application Security
General Motors · Austin, TX · Yesterday
HybridInformation TechnologyFull-time
About the role
At General Motors, software is central to how we build vehicles, platforms, and digital experiences. We are seeking a leader to manage Secure Development & Application Security, a critical Cybersecurity function focused on integrating security controls into engineering workflows.
Responsibilities
- Lead the Secure Development & Application Security function, including team direction, operating model, workforce planning, and delivery against business priorities.
- Define and drive the roadmap for security controls embedded in engineering workflows, including static testing, dynamic testing, API security, AI security, and runtime resilience.
- Own functional performance through key metrics and service outcomes, using data to prioritize investments, improve coverage, and reduce application risk at scale.
- Partner with engineering and platform teams to integrate security controls into development pipelines and release processes in ways that are effective, reliable, and usable.
- Guide leaders and team members through complex technical and operational decisions, removing roadblocks and enabling consistent execution across multiple teams.
- Build strong cross-functional relationships to align policy, tooling, detection, remediation, and governance across the software development lifecycle.
- Develop talent, strengthen succession pipelines, and lead organizational change that improves team capability, accountability, and impact.
Requirements
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related field.
- 5+ years of experience in cybersecurity, application security, software engineering security, or secure software development.
- 3+ years of experience leading people, including hiring, coaching, performance management, and team development.
- 3+ years of experience leading or scaling one or more application security domains such as static testing, dynamic testing, API security, AI security, threat modeling, or runtime protection.
- Experience partnering with engineering and product organizations to embed security controls into software delivery workflows, developer tools, and release processes.
- Experience owning operational goals, metrics, or key performance indicators and using them to drive prioritization, execution, and continuous improvement.
- Working knowledge of modern software architectures and delivery environments, including cloud-native applications, APIs, containers, continuous integration and delivery pipelines, and developer tooling.
- Demonstrated ability to make independent decisions on significant matters, influence across functions, and lead teams through change in a complex enterprise environment.
Qualifications
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related field.
- 5+ years of experience in cybersecurity, application security, software engineering security, or secure software development.
- 3+ years of experience leading people, including hiring, coaching, performance management, and team development.
- 3+ years of experience leading or scaling one or more application security domains such as static testing, dynamic testing, API security, AI security, threat modeling, or runtime protection.
- Experience partnering with engineering and product organizations to embed security controls into software delivery workflows, developer tools, and release processes.
- Experience owning operational goals, metrics, or key performance indicators and using them to drive prioritization, execution, and continuous improvement.
- Working knowledge of modern software architectures and delivery environments, including cloud-native applications, APIs, containers, continuous integration and delivery pipelines, and developer tooling.
- Demonstrated ability to make independent decisions on significant matters, influence across functions, and lead teams through change in a complex enterprise environment.
Skills
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related field.
- 5+ years of experience in cybersecurity, application security, software engineering security, or secure software development.
- 3+ years of experience leading people, including hiring, coaching, performance management, and team development.
- 3+ years of experience leading or scaling one or more application security domains such as static testing, dynamic testing, API security, AI security, threat modeling, or runtime protection.
- Experience partnering with engineering and product organizations to embed security controls into software delivery workflows, developer tools, and release processes.
- Experience owning operational goals, metrics, or key performance indicators and using them to drive prioritization, execution, and continuous improvement.
- Working knowledge of modern software architectures and delivery environments, including cloud-native applications, APIs, containers, continuous integration and delivery pipelines, and developer tooling.
- Demonstrated ability to make independent decisions on significant matters, influence across functions, and lead teams through change in a complex enterprise environment.
Benefits
General Motors offers competitive benefits including health insurance, retirement plans, and paid time off. Specific details are available upon request.
Pay
Compensation is competitive and commensurate with experience. Details are available upon request.
Schedule
The role is categorized as hybrid, requiring at least 3 days per week of in-office attendance. Details about the schedule are available upon request.