Skip to main content
Back to jobs

Senior Manager - Application Security

External
Miro logoMiro · Copenhagen, Denmark
Full-timeRemote3w ago
AgileApplication SecurityCI/CDComplianceGDPRLeadership
Cover LetterConnect

Prepare for this interview

Elite

AI-generated questions, company research, and talking points tailored to this role


About the role

The Senior Manager of Application Security leads a global team responsible for embedding security into Miro's Software Development Lifecycle (SDLC)-from concept to code to customer impact. This team partners closely with product and engineering to proactively mitigate risk while accelerating developer velocity and innovation.The role focuses on enabling secure-by-default development through secure design support, automated tooling, vulnerability management, offensive testing, and developer engagement. It also plays a critical role in integrating security into Miro's Discover, Define, Deliver product lifecycle and aligning with our AMPED Ways of Working (Analytics, Marketing, Product, Engineering, Design) and AMPED Operating Model. As Miro embraces AI-supported software development and explores Agentic AI workflows that empower engineers, product teams, and security teams alike, this role will contribute to adapting and securing those evolving working methods-ensuring that innovation and trust go hand in hand. As Senior Manager of Application Security, you will define and operationalize Miro's application security strategy in alignment with our industry-leading software development lifecycle and AMPED framework. You will lead a multidisciplinary team of application security engineers and offensive security specialists who work directly with developers, product teams, and platform engineering across multiple regions. You will embed security into all phases of the product lifecycle-from early discovery and architecture threat modeling, to design reviews and secure delivery pipelines, and ongoing monitoring and testing post-release. Your team will also support Miro's AI-driven development tooling and guide secure adoption of Agentic AI workflows, which enable both developers and security teams to collaborate more efficiently and proactively. The role requires a pragmatic, hands-on leader who thrives in fast-moving environments and has a deep understanding of both software engineering and security, as well as a passion for empowering teams to build securely and autonomously.

Responsibilities

  • Lead and mentor a globally distributed team of security engineers focused on application security, offensive testing, secure architecture, and vulnerability remediation.
  • Lead and coordinate the team's initiatives and help provide project management leadership to the team members.
  • Coordinate cross function and cross stream initiatives and projects.
  • Drive integration of security into Miro's Discover, Define, Deliver lifecycle through the lens of the AMPED Ways of Working and Operating Model.
  • Oversee execution of bug bounty and third-party testing programs, ensuring vulnerabilities are triaged, communicated, and remediated effectively.
  • Build and scale Miro's Security Champions program to embed security ownership within each engineering team.
  • Guide secure adoption of AI-augmented software development tools, including LLMs used for code generation, reviews, or architectural assistance.
  • Help envision and safely operationalize Agentic AI-driven developer and security workflows, including policy-driven autonomous agents supporting security automation and decision-making.
  • Provide structured guidance, patterns, and reference architectures that support developers in implementing secure, scalable, and privacy-respecting features.
  • Define and report on KPIs and success metrics for secure development adoption, vulnerability resolution, and developer engagement.
  • Collaborate with Privacy, Legal, and Compliance teams to ensure alignment with regulatory requirements (ISO 27001, SOC 2, GDPR, and emerging AI regulations).
  • Foster a strong team culture based on collaboration, learning, and continuous improvement.

Requirements

  • 10+ years of experience in software, application, or product security, including significant experience in secure software development.
  • 3+ years of technical leadership or management experience in a security-focused role.
  • Extensive experience with threat modeling methodologies (e.g., STRIDE, PASTA) and risk assessment, particularly within a SaaS or product-centric organization.
  • Deep expertise in Secure Software Development Lifecycles (SSDLC), including integrating security into agile and custom development frameworks.
  • Demonstrated experience running Security Champions programs and scaling developer engagement.
  • Experience leading offensive security programs (penetration testing, red teaming, bug bounty).
  • Practical understanding of governance and assurance frameworks such as ISO 27001, SOC 2, and OWASP SAMM.
  • Familiarity with AI/LLM tooling (e.g., Curs

Benefits

Vision insurance

Your Match

How well this role fits your profile.

Company Intel

What employees say

Worked at Miro? Share your experience

Interested in this role?

Apply on the company's website.

Cover LetterConnect