Manager, Secure Development & Application Security

General Motors

Austin (TX)

On-site

USD 180,000 - 230,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

General Motors is seeking a strategic leader to head Secure Development & Application Security, embedding preventative and detective security controls into engineering workflows. You’ll drive cross-functional collaboration with engineering, platform, product, and security teams to improve risk reduction, coverage, and delivery velocity across modern software ecosystems.

You will translate strategy into direction for multiple teams, own operational performance with clear metrics, and shape

Qualifications

  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related field.
  • 5+ years of experience in cybersecurity, application security, software engineering security, or secure software development.
  • 3+ years of experience leading people, including hiring, coaching, performance management, and team development.
  • 3+ years of experience leading or scaling one or more application security domains such as static testing, dynamic testing, API security, AI security, threat modeling, or runtime protection.
  • Experience partnering with engineering and product organizations to embed security controls into software delivery workflows, developer tools, and release processes.
  • Experience owning operational goals, metrics, or KPIs and using them to drive prioritization, execution, and continuous improvement.
  • Working knowledge of modern software architectures and delivery environments, including cloud-native applications, APIs, containers, CI/CD pipelines, and developer tooling.
  • Ability to make independent decisions, influence across functions, and lead teams through change in a complex enterprise environment.

Responsibilities

  • Lead the Secure Development & Application Security function, including team direction, operating model, workforce planning, and delivery against business priorities.
  • Define and drive the roadmap for security controls embedded in engineering workflows, including static testing, dynamic testing, API security, AI security, and runtime resilience.
  • Own functional performance through key metrics and service outcomes, using data to prioritize investments, improve coverage, and reduce application risk at scale.
  • Partner with engineering and platform teams to integrate security controls into development pipelines and release processes in ways that are effective, reliable, and usable.
  • Guide leaders and team members through complex technical and operational decisions, removing roadblocks and enabling consistent execution across multiple teams.
  • Build strong cross-functional relationships to align policy, tooling, detection, remediation, and governance across the software development lifecycle.
  • Develop talent, strengthen succession pipelines, and lead organizational change that improves team capability, accountability, and impact.

Skills

Security leadership
Application security
CI/CD pipelines
Cloud-native architectures
API security
Threat modeling
Developer tooling
Cross-functional collaboration
Data-driven decision making

Education

Bachelor’s degree in CS/Cybersecurity/IT/Engineering
Master’s degree (preferred)

Job description

At General Motors, software is central to how we build vehicles, platforms, and digital experiences. We are looking for a people leader to lead Secure Development & Application Security, a key Cybersecurity function focused on embedding preventative and detective security controls into engineering workflows before software reaches production.

This function includes areas such as static application security testing, dynamic application security testing, API security, AI security, and runtime resilience. This role is ideal for a leader who can help scale practical, developer-friendly security across modern software environments while improving risk reduction, coverage, and engineering partnership.

The Role

As Manager, Secure Development & Application Security, you will lead a distinct Cybersecurity function responsible for improving how secure software is designed, built, tested, and operated across GM. You will translate strategy into clear direction for teams, set priorities, allocate resources, and own the operational performance of the function. You will partner closely with engineering, platform, product, infrastructure, and other security teams to embed practical, developer-friendly controls that reduce risk without slowing delivery. You will help shape scalable security services and workflows that improve consistency across the software lifecycle. This is a high-impact leadership role for someone who can build strong teams, influence across organizations, and lead change through measurable outcomes.

What You’ll Do
  • Lead the Secure Development & Application Security function, including team direction, operating model, workforce planning, and delivery against business priorities.
  • Define and drive the roadmap for security controls embedded in engineering workflows, including static testing, dynamic testing, API security, AI security, and runtime resilience.
  • Own functional performance through key metrics and service outcomes, using data to prioritize investments, improve coverage, and reduce application risk at scale.
  • Partner with engineering and platform teams to integrate security controls into development pipelines and release processes in ways that are effective, reliable, and usable.
  • Guide leaders and team members through complex technical and operational decisions, removing roadblocks and enabling consistent execution across multiple teams.
  • Build strong cross-functional relationships to align policy, tooling, detection, remediation, and governance across the software development lifecycle.
  • Develop talent, strengthen succession pipelines, and lead organizational change that improves team capability, accountability, and impact.
Your Skills & Abilities (Required Qualifications)
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related field.
  • 5+ years of experience in cybersecurity, application security, software engineering security, or secure software development.
  • 3+ years of experience leading people, including hiring, coaching, performance management, and team development.
  • 3+ years of experience leading or scaling one or more application security domains such as static testing, dynamic testing, API security, AI security, threat modeling, or runtime protection.
  • Experience partnering with engineering and product organizations to embed security controls into software delivery workflows, developer tools, and release processes.
  • Experience owning operational goals, metrics, or key performance indicators and using them to drive prioritization, execution, and continuous improvement.
  • Working knowledge of modern software architectures and delivery environments, including cloud-native applications, APIs, containers, continuous integration and delivery pipelines, and developer tooling.
  • Demonstrated ability to make independent decisions on significant matters, influence across functions, and lead teams through change in a complex enterprise environment.
What Will Give You A Competitive Edge (Preferred Qualifications)
  • Master’s degree in a relevant field.
  • 8+ years of experience in cybersecurity or software security, including enterprise-scale application security leadership.
  • Experience building or maturing secure development programs in large, highly distributed engineering environments.
  • Experience with developer-friendly security practices such as security automation, policy as code, self-service enablement, and risk-based remediation.
  • Familiarity with regulated environments, third-party software risk, and secure-by-design approaches across the software lifecycle.
  • Relevant industry certifications such as CISSP, CSSLP, GIAC, or cloud security certifications.
  • Experience in automotive, mobility, manufacturing, or other large-scale product and technology organizations.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager, Software Supply Chain Security
Manager, Software Supply Chain Security

General Motors • Warren (MI)

On-site
USD 170,000 - 250,000
Relocation benefits
Head of Secure Dev & Application Security - Hybrid
Head of Secure Dev & Application Security - Hybrid

General Motors • Warren (MI)

Hybrid
USD 140,000 - 210,000
Head of Secure Development & App Security
Head of Secure Development & App Security

General Motors • Austin (TX)

On-site
USD 180,000 - 230,000
Manager, Secure Development & Application Security
Manager, Secure Development & Application Security

General Motors • Warren (MI)

Hybrid
USD 140,000 - 210,000
Staff Product Cybersecurity Engineer - Secure Product Engineering
Staff Product Cybersecurity Engineer - Secure Product Engineering

General Motors • Warren (MI)

Hybrid
USD 140,000 - 200,000
Sr. Security Software Engineer - Security Operations
Sr. Security Software Engineer - Security Operations

General Motors • Austin (TX)

Hybrid
USD 120,000 - 150,000
Senior Cybersecurity Engineer - Security Operations
Senior Cybersecurity Engineer - Security Operations

General Motors • Austin (TX)

Hybrid
USD 120,000 - 150,000
Relocation benefits
Comprehensive health benefits
Employee discounts
Manager - Product Cyber Security Compliance
Manager - Product Cyber Security Compliance

General Motors • Warren (MI)

Hybrid
USD 140,000 - 200,000
Manager - Product Cyber Security Compliance
Manager - Product Cyber Security Compliance

General Motors • United States

Hybrid
USD 140,000 - 210,000
Hybrid work
Senior Product Cybersecurity Engineer, Product Security Validation
Senior Product Cybersecurity Engineer, Product Security Validation

General Motors • Warren (MI)

Hybrid
USD 120,000 - 180,000