Manager, Security Operations
About the role
Figma's Security team is growing, and we're looking for a Security Operations Manager to lead the strategy and execution of our security operations program. In this role, you'll build and scale the systems, processes, and tooling that help protect Figma and our community.
Responsibilities
Own Figma's security monitoring and incident response program, from detection engineering through post-incident review and continuous improvement
Build and automate security operations workflows, including alert triage, enrichment, investigation, and response actions using SOAR and custom tooling
Develop and maintain incident response run books, escalation procedures, and communication plans for security events of varying severity
Lead incident response preparedness initiatives, including tabletop exercises, red team engagements, and response capability assessments
Improve the effectiveness of our SIEM and SOAR platforms by reducing noise, increasing signal fidelity, and closing detection coverage gaps
Build and operationalize threat intelligence capabilities to identify adversary behaviors, prioritize investments, and strengthen detection and response programs
Partner with Legal, Privacy, and Communications teams to support breach notification and regulatory response obligations during significant security incidents
Drive security operations strategy through vendor management, operational metrics, and cross-functional initiatives spanning IAM, vulnerability management, DLP, and exposure reduction
Requirements
7+ years of experience in security operations, incident response, or a related security engineering function
Hands-on experience building and automating detection and response workflows using scripting, APIs, or security automation platforms
Deep expertise with SIEM and SOAR technologies in a cloud-native or SaaS environment
Demonstrated success building, scaling, or significantly improving a detection and response program
Experience leading complex security incidents and partnering with Legal, Privacy, and business stakeholders during high-impact events
Qualifications
Operated in a public company environment with SOX, ISO 27001, SOC 2, or FedRAMP requirements (an added plus)
Applied AI risk management frameworks such as NIST AI RMF, OECD AI Principles, or ISO 42001 (an added plus)
Utilized AI-powered tools to automate security operations workflows and improve team efficiency (an added plus)
Skills
Strong understanding of security operations, incident response, and cybersecurity principles
Experience with SIEM and SOAR technologies
Ability to triage and investigate security alerts
Knowledge of threat intelligence and adversary behavior analysis
Excellent communication and collaboration skills
Benefits
At Figma, we offer a competitive package of benefits including:
Health, dental, and vision insurance
Roth 401(k) with company match
Paternity and maternity leave
Reproductive and family planning support
Mental health and wellness benefits
Generous paid time off
Company recharge days
Learning and development stipend
Work from home stipend
Cell phone reimbursement
Pay
The annual base salary range for this role is $185,000 - $296,000 USD. Actual compensation will be decided based on factors including, but not limited to, individual qualifications objectively assessed during the interview process (including skills and prior relevant experience, potential impact, and scope of role), market demands, and specific work location.
Schedule
This is a full-time role that can be held from one of our US hubs or remotely in the United States.