All jobs
Save

Application Security Engineering Manager

Synthesia
Contract type
Ongoing
Work mode
On-site · On-site (see listing for address)
Experience
3 years

Job description

Key details

  • Lead, support, enable and grow the AppSec team — owning hiring, onboarding, performance, and career development for a team of Senior and Staff-level Security Engineers
  • Own the formalisation of AppSec strategy and roadmap, translating team input, business risk and engineering context into a clear, prioritised programme of work with measurable outcomes
  • Be a credible technical partner to your team — able to engage substantively on threat models, security architecture, agentic tooling design, and risk decisions
  • Define and maintain the team's operating rhythm: OKRs, quarterly planning, cross-team coordination, and stakeholder communication up to leadership
  • Act as a key interface between AppSec and the rest of the organisation and leadership, building relationships with business leadership, engineering leads, the Developer Platform team, Architecture Working Group, and partner functions like Legal and Moderation
  • Participate in maintaining and evolving Synthesia's approach to AI-assisted development security, including securing agentic coding tools and assessing the security of AI-generated code
  • Own AppSec's relationship with the broader Security function, ensuring tight alignment between AppSec and other Infosec teams on shared risks, incidents, and cross-cutting initiatives
  • Represent AppSec externally where relevant — with customers, auditors, and in the context of compliance programmes such as SOC2 and ISO42001
  • Company mission
  • Information not specified

Primary stack

Core technologies

Python (Programming Language)AWSGoogle Cloud Platform (GCP)

Benefits

  • Lead a small, senior team with high autonomy, and focus on creating leverage rather than running a ticket queue
  • Work in a leading AI-company with high-growth and a very friendly culture
  • Build and ship AI-native / agentic security tooling end-to-end, from prototypes to production systems that materially change how engineering works
  • Operate at the intersection of product, platform, and security architecture, with scope to shape how secure-by-default looks in a rapidly scaling AI company

Requirements & details

  • You're a Security Engineer first, who has grown into leadership
  • Strong communicator who can operate across audiences — from deeply technical discussions with staff engineers, to clear risk framing for leadership, to pragmatic negotiation with product and engineering partners
  • Strong engineering background in application security, with hands-on experience in areas such as threat modelling, secure design review, (AI-)SAST/SCA tooling, vulnerability management, and/or security automation
  • Very comfortable with Python and JavaScript
  • Experience with AWS and/or GCP from a cloud infrastructure perspective, and familiarity with GitHub Actions
  • Meaningful people management experience — hired, grown, and performance-managed security engineers, and understand what good looks like at senior IC levels
  • Python, JavaScript, AWS, GCP, GitHub Actions
  • Python (Programming Language)
  • AWS
  • Google Cloud Platform (GCP)

Apply