Senior Product Security Offensive Engineer

at iManage
🇺🇸 United States - Remote
🔒 Cybersecurity🟣 Senior

Job description

We offer a flexible working policy that supports a healthy balance between personal and professional well-being. This role requires in-office presence on Tuesdays & Thursdays to collaborate, connect, and learn from peers - while also maintaining the flexibility for meaningful work-life balance.

Being a Senior Product Security Offensive Engineer at iManage Means…

You will join this team of security engineers that will guide the global engineering teams on security considerations as well as assess and improve product security at iManage. We operate on a Zero-Trust approach, so you will play an integral role in the continued maintenance and maturity of our Zero-Trust architecture. Our focus is to ensure that our engineers ship and maintain secure code and infrastructure, and we want your help to do it. You are passionate about technology and willing to work with many industry security perspectives including threat modeling, architecture review, dynamic code review, static code reviews, cloud assessments, data security assessments, runtime/event security and penetration testing. You have a focus on offensive security activities to discover weakness in all tiers of iManage products and technology.

Here is what one of our leaders, Enterprise Product Security Sr. Director ( Jeff LaFrate ), has to say about the role:“You will work on our product security team supporting continual improvement while leveraging a wide range of industry best practices. You will work both independently and collaboratively with a global team of engineers to deliver quality, hardened, industry leading enterprise solutions. Your contributions will be noticed, impactful and rewarding.”

iM Responsible For…

  • Conducting high quality product penetration tests independently, or as part of a team.
  • Fostering collaboration with engineers and leadership to understand actual risk, remediation priority and remediation expectations.
  • Evangelizing security best practices with effective verbal and written communication skills.
  • Striving to consistently learn and improve as well as sharing knowledge with colleagues.

iM Qualified Because I Have…

  • A bachelor’s degree or higher in computer science or related field.
  • 5+ years of relevant work experience.
  • Proven experience with assessing risk and providing remediation guidance for weaknesses detected using manual penetration testing plus one or more of the following perspectives:
  • SAST, SCA, DAST, host/container security, IaC, platform security, cloud configuration, network security, data security, API security, AI security/LLMs and CI/CD process
  • Knowledge of best practices, metrics and mechanisms to improve security testing methodologies.
  • Proven experience and understanding of multi-tier web application architecture patterns.
  • Experience with software development practices, tooling and technologies.
  • Curiosity and a desire to improve customer experience, reduce risk, improve methods and prepare for new threats.
  • Ability and desire to communicate with colleagues to strategize and implement continual improvement through industry best practices, threat modeling and vulnerability triage.
  • In-depth understanding of “OWASP Top 10” risks like injection, XSS, CSRF, etc.
  • Understanding of data classification and data security control implementations.
  • Experience with common cloud security controls and best practices.

Don’t meet every qualification listed above? Studies show that women and people of color are less likely to apply to jobs unless they meet all qualifications. At iManage, we are committed to building a diverse and inclusive environment, and encourage everyone to show up as their full authentic selves. We welcome those that come with a growth mindset and a hunger for learning; so, if you are excited about this role but your past experience doesn’t align perfectly with every qualification we encourage you to apply anyways!

iM Getting To…

  • Join a rapidly evolving, industry-leading SaaS company on an exciting journey of growth and scalability!
  • Take on meaningful, high-impact challenges by leveraging cutting-edge technologies and best-in-class protocols to drive innovation.
  • Own my career path with our internal development framework. Ask us more about this!
  • Expand my skill set and earn certifications with unlimited access to LinkedIn Learning courses and interactive Microsoft courses & training.
  • Be part of a supportive and experienced team within a dynamic, inclusive, and encouraging culture.
  • Enjoy flexible work hours that empower me to balance personal time with professional commitments.
  • Collaborate in a modern, open-plan workspace featuring a gaming area, free snacks and drinks, and regular social events.

iManage Is Supporting Me By…

  • Creating an inclusive environment where I can help shape the culture not just by fitting in, but by adding to it.
  • Providing a market competitive salary that is applied through a consistent process, equitable for all our employees, and regularly reviewed based on industry data.
  • Rewarding me with an annual performance-based bonus.
  • Offering comprehensive Health/Vision/Dental/Life Insurance, and a 401k Retirement Savings Plan with a company match up to 4%.
  • Granting enhanced leave for expecting parents; 20 weeks 100% paid for primary leave, and 10 weeks 100% paid for secondary leave.
  • Providing me with a flexible time off policy to take the time off that I need. Be it for vacation, volunteering, celebrating holidays, spending time with family, or simply taking time to recharge and reset.
  • Having multiple company wellness days each year to prioritize mental health and well-being.
  • Providing access to RethinkCare, a global behavioral health platform that enhances personal well-being, strengthens professional resilience, and empowers parental success through expert-led training and resources.

The overall US annual base salary range for this position is $122,000–$185,000 per year. Individual compensation for each candidate depends on factors such as qualifications, experience, and candidate location. This range does not include additional forms of compensation, such as bonuses, commission, or benefits. Your recruiter will provide further details about the offer range, incentives, and overall compensation during the hiring process.

iManage is committed to providing an excellent candidate experience and will never ask you to engage in recruitment activity via text and exclusively communicates from emails using the @imanage.com domain. If you have any concerns or questions about communications you have received, please send them to [email protected] so our team members can review.

About iManage…

At iManage, we are dedicated to Making Knowledge Work™. Our intelligent, cloud-enabled, and secure platform is trusted by 4,100+ customers and 430,000 users worldwide, managing over 11 billion documents and 11 petabytes of data. We empower professionals across 65+ countries to unlock the full potential of their business content and communications.

We are continuously innovating to solve the most complex professional challenges and enable better business outcomes; Our work is not always easy but it is ambitious and rewarding.

So we’re looking for people who embrace challenges. People who thrive on solving problems, pushing boundaries, and collaborating with the industry’s best and brightest. That’s the iManage way. It’s how we turn the impossible into reality, empower our employees to grow, unlock their potential, and create a meaningful impact on everything we do.

Whoever you are, whatever you do, however you work. Make it mean something at iManage.

iManage provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.

This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.

Learn more at: www.imanage.com

Please see our privacy statement for more information on how we handle your personal data: https://imanage.com/privacy-policy/

#LI-Hybrid

#LI-LM1

Share this job:
Please let iManage know you found this job on Remote First Jobs 🙏

Benefits of using Remote First Jobs

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

Advanced Filters

Filter by category, benefits, seniority, and more.

Priority Job Alerts

Get timely alerts for new job openings every day.

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

Search remote, work from home, 100% online jobs

We help you connect with top remote-first companies.

Search jobs

Hiring remote talent? Post a job

Frequently Asked Questions

What makes Remote First Jobs different from other job boards?

Unlike other job boards that only show jobs from companies that pay to post, we actively scan over 20,000 companies to find remote positions. This means you get access to thousands more jobs, including ones from companies that don't typically post on traditional job boards. Our platform is dedicated to fully remote positions, focusing on companies that have adopted remote work as their standard practice.

How often are new jobs added?

New jobs are constantly being added as our system checks company websites every day. We process thousands of jobs daily to ensure you have access to the most up-to-date remote job listings. Our algorithms scan over 20,000 different sources daily, adding jobs to the board the moment they appear.

Can I trust the job listings on Remote First Jobs?

Yes! We verify all job listings and companies to ensure they're legitimate. Our system automatically filters out spam, junk, and fake jobs to ensure you only see real remote opportunities.

Can I suggest companies to be added to your search?

Yes! We're always looking to expand our listings and appreciate suggestions from our community. If you know of companies offering remote positions that should be included in our search, please let us know. We actively work to increase our coverage of remote job opportunities.

How do I apply for jobs?

When you find a job you're interested in, simply click the 'Apply Now' button on the job listing. This will take you directly to the company's application page. We kindly ask you to mention that you found the position through Remote First Jobs when applying, as it helps us grow and improve our service 🙏

Apply