Manager, Secure Product Engineering
About the role
The Manager, Secure Product Engineering leads the Secure Product Engineering pillar within GM’s Product Cybersecurity organization, partnering closely with product engineering teams to ensure software and systems are implemented securely throughout the build phase of development. This role shapes the technical guidance, tooling, and workflows that enable secure software and systems engineering to scale across GM’s product portfolio, including embedded vehicle software, mobile experiences, and other key software and services.
Responsibilities
- Lead a team of product cybersecurity engineers focused on secure software and systems engineering.
- Define and evolve a robust set of secure engineering services and capabilities for GM products.
- Establish close partnerships with product engineering teams to support secure implementation.
- Mature SAST, DAST, fuzzing, runtime security, and OS security hardening for core code bases.
- Formalize technical guidance, reusable patterns, and security guardrails across product environments.
- Partner with adjacent teams to improve tooling and embed security requirements into engineering workflows.
Requirements
- 8+ years of cybersecurity experience in application security, product security, or similar domains.
- 4+ years of leadership experience in relevant security or engineering-focused roles with direct team ownership.
- Expertise in application security, secure software engineering, and providing practical technical guidance.
- Experience with SAST, DAST, fuzzing, code review, and secure SDLC workflows across platforms.
- Ability to read and write software in multiple programming languages to support team execution.
- Demonstrated success working closely with engineering teams to materially improve security without unnecessary friction.
- A high-ownership leadership style with strong product instincts and a pragmatic security mindset.
- A commitment to internal customer partnership and technically credible security support.
- Deep technical expertise that enables clear guidance, strong mentorship, and opinionated planning.
- A bias toward scalable improvement that continually strengthens Secure Product Engineering.
Qualifications
- Prior experience in the automotive industry or a similarly complex, deadline-driven, and regulated field (preferred).
- Published cybersecurity research (e.g., conference talks, blog posts, or public code repositories) (preferred).
- Familiarity with embedded software/OS security, mobile applications, and backend development (preferred).
- Experience building custom security tooling and/or extending functionality in related technologies (preferred).
Skills
- Ability to read and write software in multiple programming languages to support team execution.
- Ability to partner with engineering teams to improve security without unnecessary friction.
- Ability to manage multiple complex priorities with clear milestones and measurable outcomes.
- A bias toward scalable improvement that continually strengthens Secure Product Engineering.
Benefits
Company Vehicle: Upon successful completion of a motor vehicle report review, you will be eligible to participate in a company vehicle evaluation program, through which you will be assigned a General Motors vehicle to drive and evaluate. Note: program participants are required to purchase/lease a qualifying GM vehicle every four years unless one of a limited number of exceptions applies.
Pay
Details about pay will be provided during the interview process.
Schedule
This role is categorized as hybrid. This means the selected candidate is expected to report to a specific location at least 3 times a week {or other frequency dictated by their manager}.