Manager, Security Engineering (corporate Systems)

Contentful Contentful · Enterprise · New York, NY · Security

Manager, Security Engineering (Corporate Systems) at Contentful. This role focuses on owning security engineering for Contentful's corporate systems, including tooling and platforms for the internal security team. It involves people leadership, hands-on technical execution in areas like IAM and data security, and scaling security controls. The role requires expertise in cloud platforms (AWS, GCP, Azure), infrastructure-as-code (Terraform), and modern programming languages. While the role will accelerate the adoption of AI, it is not directly building AI models or systems.

What you'd actually do

  1. Develop a team, providing coaching, mentorship, goal setting, and performance feedback.
  2. Define roles and make hiring decisions to grow the team in line with department needs.
  3. Remain hands on, balancing technical leadership with direct implementation work.
  4. Own execution and prioritization across projects and operations, using agile delivery practices.
  5. Scale and mature effectiveness and efficiency by improving processes and tooling.

Skills

Required

  • 8+ years of progressive engineering and security experience.
  • 3+ years managing people and security engineering teams.
  • Comfort operating in ambiguity, balancing strategic thinking, security, and practicality.
  • Expertise with AWS, GCP, and Azure.
  • Strong hands-on experience designing, implementing, and operating security controls at scale.
  • Demonstrated experience securing endpoint, SaaS, and cloud environments.
  • Experience working within identity and access management and data security programs.
  • Software development experience in modern programming language (Python, Go, etc)
  • Hands-on experience using Terraform and infrastructure-as-code.
  • Experience applying modern practices to improve efficiency and scalability or security programs.
  • Experience using metrics to measure impact, optimize execution, and guide investment decisions.
  • Strong communication skills with the ability to explain technical topics to non technical audiences.
  • Ability to support occasional off-hours incident response efforts.
  • Familiarity with attacker techniques in cloud-native and traditional environments.
  • Hands-on experience owning security technologies (e.g., EDR, AntiVirus, etc.)
  • Proven ability to lead cross-functional initiatives and influence outcomes without direct authority.
  • Experience owning end to end security programs, proactively driving incremental improvement.
  • Strong systems thinking, with the ability to design security solutions that scale through efficiency.

Nice to have

  • Candidates must be located in the eastern time zone

What the JD emphasized

  • own security engineering across Contentful’s corporate systems
  • partner closely with product security teams
  • balancing people leadership with hands-on technical execution
  • designing, building, and operating security controls at scale
  • identity and access management, data security, and SaaS platforms
  • provide strategic guidance and lead initiatives while remaining directly involved in implementation
  • Accelerate adoption of AI, balancing practicality enablement, and risk management.