高级经理,安全运营与产品安全
Senior Manager, Security Ops & Prod Security
##### **你能获得什么?**
准备好产生重大影响吗?已有数百万人依赖 Calendly,而我们正处于激动人心的产品增长阶段——现在加入我们正是时候。你在这里所做的每一件事都会加速你的职业发展。如果你希望与你曾合作过的最优秀的人一起学习、成长,并做出一生中最好的工作,那么我们希望你能考虑让 Calendly 成为你职业旅程的一部分。
**关于团队和机会**
Calendly 让安排时间变得简单,让我们的客户有更多时间专注于真正重要的事情。我们的软件受到全球数百万用户的信任,每天还有成千上万的新用户加入。为了维持快速增长,我们正在寻找顶尖人才,帮助塑造我们产品的未来,并持续为客户提供卓越价值。
**为什么加入 Calendly 的安全团队?**
加入 Calendly 的安全团队是一个独特的机会,成为一家快速成长、影响力巨大的公司的一员,这家公司正在改变人们安排会议的方式。我们致力于培养强大的安全和工程文化,吸引那些在动态、创新环境中茁壮成长的主动型人才。如果你对安全充满热情,并且渴望探索未知领域,这里就是你的理想之地。
**在 Calendly 担任高级经理,产品安全与安全运营的一天**
我们正在寻找一位技术能力强且具有战略眼光的高级经理,负责产品安全与安全运营团队,领导、成熟并扩展这两个职能。这位领导者将与产品和工程团队建立牢固的合作关系,将安全嵌入整个软件开发生命周期,并增强 Calendly 检测和应对威胁的能力。
理想的候选人应具备产品和应用安全的深度知识,同时拥有丰富的安全运营经验。他们将领导团队,制定战略,并足够贴近工作,以指导架构评审、漏洞修复、检测工程、调查和高严重性事件。
**主要职责:**
- 领导产品安全和安全运营团队,培养人才并确保团队对可衡量的结果负责。
- 制定战略、运营计划、指标和资源优先级,与 Calendly 最高风险保持一致。
- 与安全团队及关键跨职能团队建立牢固的合作关系,统一风险、响应和修复策略。
- 与产品和工程团队紧密合作,确保安全措施贯穿整个开发流程。
- 建立和维护安全运营流程,提高威胁检测和响应能力。
- 与外部安全社区互动,保持对最新安全趋势和技术的了解。
- 管理安全事件响应流程,确保及时有效地处理安全问题。
查看英文原文
##### **What’s in it for you?**
Ready to make a serious impact? Millions of people already rely on Calendly, and we’re still in the midst of exciting product growth — it’s a fantastic time to join us. Everything you’ll work on here will accelerate your career to the next level. If you want to learn, grow, and do the best work of your life alongside the best people you’ve ever worked with, then we hope you’ll consider allowing Calendly to be a part of your professional journey.
**About the team and opportunity**
Calendly takes the work out of scheduling, giving our customers more time to focus on what truly matters. Our software is trusted by millions of users worldwide, with thousands more joining us every day. To sustain our rapid growth, we’re seeking top talent to help shape the future of our product and continue delivering exceptional value to our customers.
**Why Join Calendly’s Security Team?**
Joining Calendly’s Security team offers a unique opportunity to be part of a fast-growing, high-impact company that’s transforming how people schedule meetings.We’re committed to fostering a strong security and engineering culture that attracts self-starters who thrive in dynamic, innovative environments.If you’re passionate about security and excited to explore uncharted territory, this is the place for you.
**A day in the life of a Senior Manager, Product Security & Security Operations at Calendly**
We are seeking a highly technical and strategic Senior Manager of Product Security & Security Operations to lead, mature, and scale both functions. This leader will build strong partnerships across Product and Engineering, embed security throughout the software development lifecycle, and strengthen Calendly’s ability to detect and respond to threats.
The ideal candidate combines product and application security depth with strong security operations experience. They will lead teams, set strategy, and remain close enough to the work to guide architecture reviews, vulnerability remediation, detection engineering, investigations, and high-severity incidents.
**Key Responsibilities:**
- Lead the Product Security and Security Operations teams, developing talent and holding the teams accountable for measurable outcomes.
- Define strategy, operating plans, metrics, and resource priorities aligned with Calendly’s highest risks.
- Build strong partnerships across Security and with key cross-functional teams to align on risk, response, and remediation.
- Communicate priorities, risk tradeoffs, and program performance to senior leadership and cross-functional stakeholders.
- Scale product security capabilities, including threat modeling, application security testing, vulnerability management, and developer enablement.
- Lead detection engineering, incident response, threat intelligence, monitoring, and threat hunting capabilities.
- Guide high-severity incidents, complex investigations, and security reviews, driving durable remediation of systemic issues.
- Establish standards for control coverage and effectiveness across applications, cloud, identity, and endpoints.
- Manage program budgets and strategic security vendors.
**What We’re Looking For**
This opportunity is for you if you have:
- 7+ years of cybersecurity experience across product, application, or infrastructure security, plus security operations, incident response, or detection engineering.
- 4+ years managing experienced security engineers or multidisciplinary technical teams.
- Strong communication skills and the ability to navigate sensitive decisions with technical teams and senior leaders.
- Experience defining strategy and delivering measurable outcomes across multiple security disciplines.
- Experience building or scaling product security programs with Product and Engineering teams.
- Strong knowledge of secure software development, threat modeling, application security testing, vulnerability management, and cloud-native architectures.
- Strong knowledge of incident response, detection engineering, SIEM, EDR, cloud security, and identity security.
- Experience translating ambiguous risks into prioritized, cross-functional programs and driving remediation through influence.
- Experience managing budgets, MSSPs, testing firms, or other security providers.
- Authorization to work in the United States, as Calendly does not provide immigration sponsorship at this time.
Tier 1 Salary Hiring Range
$265,582—$312,450 USD
Tier 2 Salary Hiring Range
$243,451—$286,412 USD
Tier 3 Salary Hiring Range
$221,319—$260,375 USD
The ranges listed above are the expected annual base salary for this role, subject to change.
Calendly takes a number of factors into consideration when determining an employee’s starting salary, including relevant experience, relevant skills sets, interview performance, location/metropolitan area, and internal pay equity.
Base salary is just one component of Calendly’s total rewards package. All full-time (30 hours/week) employees are also eligible for equity awards, and competitive benefits. Eligible Sales employees also qualify for a Sales Incentive program.
Calendly uses the zip code of an employee’s remote work location, or the onsite building location if hybrid, to determine which metropolitan pay range we use. Current geographic zones are as follows:
- Tier 1: San Francisco, CA, San Jose, CA, New York City, NY
- Tier 2: Chicago, IL, Austin, TX, Denver, CO, Boston, MA, Washington D.C., Philadelphia, PA, Portland, OR, Seattle, WA, Miami, FL, and all other cities in CA.
- Tier 3: All other locations not in Tier 1 or Tier 2
**If you are an individual with a disability and would like to request a reasonable accommodation as part of the application or recruiting process, please let your Recruiter know when first connecting with them. Calendly is registered as an employer in many, but not all, states. If you are located in Alaska, Delaware, Hawaii, Idaho, Iowa, Montana, Nebraska, North Dakota, Rhode Island, South Dakota, and West Virginia, you will not be eligible for employment. Note that all individual roles will specify location eligibility.**
**All candidates can find our Candidate Privacy Statement [here](https://docs.google.com/document/d/1UarTnO5b7rIEKowqiyRvw1Zz81mROP7tq-NR7sCmhBM/edit)**
**Candidates residing in California may visit our Notice at Collection for California Candidates here: [Notice at Collection](https://docs.google.com/document/d/1d58_uJ1S0ti5jMlekLhXRswLfJAdw0A6/edit#bookmark=id.gjdgxs)**
This role may require occasional travel for company events, team collaboration, or offsites.