DocuSign logo

Senior Technical Program Manager, Product Security

DocuSign
Chicago, IL, USAHybridProject / Program ManagementSenior-Level$146,400 - $206,775Posted: 8 days ago
Apply NowOpens DocuSign's site

About the role

Senior Technical Program Manager, Product Security

Security

Seattle, Washington; Chicago, Illinois

08/31/2026

Company Overview

Docusign brings agreements to life. Over 1.5 million customers and more than a billion people in over 180 countries use Docusign solutions to accelerate the process of doing business and simplify people’s lives. With intelligent agreement management, Docusign unleashes business-critical data that is trapped inside of documents. Until now, these were disconnected from business systems of record, costing businesses time, money, and opportunity.

Using Docusign’s Intelligent Agreement Management platform, companies can create, commit, and manage agreements with solutions created by the #1 company in e-signature and contract lifecycle management (CLM).

What you'll do

As a Senior TPM in Product Security, you will shape and execute the long-term strategy for building security into our products. You'll spearhead the shift-left movement, ensuring secure development practices are embedded early and consistently across all teams. You will lead organizational change by building scalable programs, driving adoption of secure-by-design principles, and aligning security priorities with business goals.

In this role, you'll act as a trusted partner to executives, influencing roadmaps and investment decisions, while enabling engineering teams to move fast without compromising security.

This position is an individual contributor role reporting to the Sr. Manager, Security Product Management.

Responsibility

Own and scale product security initiatives that span across engineering organizations, balancing risk reduction with innovation

Drive adoption of secure coding, automated security tooling, and early threat modeling across the SDLC

Partner with senior engineering and product leaders to embed security into decision-making, roadmaps, and design principles

Translate technical risk into business impact, providing clear updates, trade-off discussions, and recommendations to executives

Lead organizational change by fostering a developer-first security culture that scales across teams and geographies

Ensure products meet internal security standards, industry frameworks, and regulatory requirements

Define measurable success criteria (e.g., secure coding adoption rates, vulnerability SLAs) and report outcomes to leadership

Ensure coordinated response and remediation for vulnerabilities, leveraging learnings to continuously strengthen processes

Improve security processes, tools, and automation to scale security across the organization

Job Designation

Hybrid:

Employee divides their time between in-office and remote work. Access to an office location is required. (Frequency: Minimum 2 days per week; may vary by team but will be weekly in-office expectation)

Positions at Docusign are assigned a job designation of either In Office, Hybrid or Remote and are specific to the role/job. Preferred job designations are not guaranteed when changing positions within Docusign. Docusign reserves the right to change a position's job designation depending on business needs and as permitted by local law.

What you bring

Basic

8+ years related experience with a Bachelor's degree or 6 years related experience with a Master's degree

Bachelors or Masters degree in Technology or Computer Science or Cybersecurity

Experience with product security practices (secure SDLC, threat modeling, vulnerability management, cloud/application security)

Experience with security frameworks and standards (e.g., OWASP, NIST, ISO 27001)

Experience leading large, cross-functional security or engineering programs

Experience with program planning, prioritization, and driving accountability across teams

Experience with threat modeling, risk management, and vulnerability management

Preferred

Hands-on experience enabling shift-left security practices in product development

Proven ability to build and scale Security Champions or developer enablement programs

Familiarity with regulatory and compliance frameworks (SOC 2, ISO 27001, GDPR FedRAMP, etc.)

Experience working with product and engineering teams in an Agile environment

Familiarity with DevSecOps practices and security automation

Experience with security automation tools integrated into CI/CD pipelines

Track record of leading cultural change to foster security-first engineering practices

Relevant certifications (e.g., CISSP, CISM)

Excellent executive communication and stakeholder management skills

Experience with cloud security (AWS, Azure, GCP)

Wage Transparency

Pay for this position is based on a number of factors including geographic location and may vary depending on job-related knowledge, skills, and experience.

Based on applicable legislation, the below details pay ranges in the following locations:

Washington: $146,400.00 - $206,775.00 base salary

Minimum requirements

  • 8+ years related experience with a Bachelor's or 6+ years with a Master's in Technology, Computer Science, or Cybersecurity
  • Experience with product security practices, security frameworks (OWASP, NIST, ISO 27001), and leading large cross-functional security programs
  • Skilled in program planning, prioritization, threat modeling, risk management, and vulnerability management

This listing was parsed by AI and may not be complete. Check the official posting on DocuSign's site for the most accurate information.

Ready to apply?
Applications are handled on DocuSign's own careers site.
Apply Now

More roles at DocuSign

CS Strategy & Operations Sr Manager
Chicago, IL, USA · Hybrid
View →
Growth Specialist
Remote, USA · Remote
View →
Sr Account Executive, Commercial Sales
Chicago, IL, USA · Hybrid
View →
CS Strategy & Operations Manager
Chicago, IL, USA · Hybrid
View →
Sr. Product Marketing Manager, Platform Positioning
Chicago, IL, USA · Hybrid
View →