Manager, Security Engineering

Cohere Inc.

United States

Remote

USD 140,000 - 210,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Lunch stipend
Health benefits
RRSP matching
Parental leave top-up
Education stipend
Vacation days
Travel to offices
Remote-friendly culture
Home office stipend

Job summary

Cohere Inc. seeks a Manager of Security Engineering to lead a high-performing team focused on securing our platform and products.

You will drive vulnerability management, ensure secure SDLC integration, and oversee SAST/DAST and penetration testing across applications, APIs, and infrastructure. You will collaborate with executives and engineering leaders to align security with product strategy, manage incident response, and implement scalable security controls in a large-scale, remote-friendly

Qualifications

  • You have extensive experience in application security and security engineering with focus on vulnerability management, SDLC and bug bounty programs.
  • Proven expertise with SAST, DAST, and penetration testing methodologies and tools.
  • Strong programming skills (Python, GoLang, etc.) and web technologies.
  • Experience with cloud platforms (AWS, GCP, Azure) and container security.
  • Excellent communication and stakeholder influencing abilities.
  • Proven track record building and managing high-performing security teams.

Responsibilities

  • Serve as trusted advisor to leadership and partner teams by articulating business risks.
  • Execute long-term security vision aligned with product and business goals.
  • Collaborate with leadership to prioritize high-impact initiatives and engagements.
  • Lead vulnerability management governance and tooling across the organization.
  • Establish and manage SAST/DAST programs within CI/CD pipelines.
  • Direct penetration testing across web, API, and network surfaces.

Skills

Security engineering
Vulnerability management
SDLC security
Bug bounty programs
Leadership
Python/GoLang
Cloud security
Communication

Tools

SAST tools
DAST tools
Penetration testing
CI/CD security
Bug bounty management

Job description

Who are we?

Cohere is the leading security-first enterprise AI company. We build cutting-edge foundation AI models and end-to-end products that are designed to solve real-world business problems.

We’re training and deploying frontier models for enterprises who are building AI systems. We believe that our work is instrumental to the widespread adoption of AI and we are looking for folks that want to be part of that.

We obsess over what we build. Each one of us is responsible for contributing to increasing the capabilities of our models and the value they drive for our customers. Cohere is a team of researchers, engineers, designers, and more, who are all passionate about their craft.

We are a global technology company headquartered in Toronto with key offices in London, New York City, San Francisco, Montreal, Paris, Berlin and Seoul. Join us!

As a Manager of Security Engineering, your key responsibilities include:
  • Serve as trusted advisor to team’s leadership and partner teams by clearly articulating business risks associated with security issues

  • Execute the long-term vision for the Security team in alignment with Cohere’s product and business goals.

  • Collaborate closely with leadership to prioritize high-impact initiatives and strategic customer engagements.

  • Vulnerability Management: Develop and implement enterprise-wide vulnerability management processes and tooling, including identification, prioritization, remediation tracking, and reporting, including customer artifacts

  • Static Application Security Testing (SAST): Establish SAST programs, integrate tools into CI/CD pipelines, and analyze results to identify and remediate security flaws in source code

  • Dynamic Application Security Testing (DAST): Implement DAST methodologies, configure scanning tools, and conduct regular assessments of running applications

  • Penetration Testing: Lead and oversee internal and external penetration testing engagements, including web application, API, network and agentic AI platform including managing our bug bounty program

  • Security Architecture Review: Collaborate with development teams to review and validate security architecture and design patterns

  • Secure SDLC Integration: Embed security practices throughout the software development lifecycle, working closely with engineering and product teams

  • Team Leadership: Lead and grow a high-performing team of Security engineers through hiring, coaching, and mentorship

  • Metrics and Reporting: Establish key security metrics, generate regular reports for leadership, and communicate security posture to stakeholders

  • Compliance and Standards: Ensure application security practices align with industry standards (OWASP Top10 for LLMs, ISO 27001) and regulatory requirements

You may be a good fit if:
  • You have 8+ years of previous experience in Application Security / Security Engineering with a strong focus on vulnerability management, SDLC and bug bounty programs.

  • Proven experience with SAST, DAST, and penetration testing methodologies and tools

  • Proficiency with programming languages (Python, GoLang, etc.) and web technologies

  • Experience with cloud platforms (AWS, GCP, Azure) and container security

  • Excellent communication and interpersonal skills with ability to influence technical and non-technical stakeholders

  • Experience building and managing high-performing security teams

  • You are comfortable with ambiguity and are able to make informed decisions with little data.

  • You employ a flexible and constructive approach when solving problems.

  • You are able to make trade-offs between build vs. buy decisions—help build solutions and be able to review what tools are available.

  • You understand secure engineering best practices, can articulate problem statements, and propose solutions to both technically savvy and non-technical audiences.

  • You have a deep technical understanding of common security vulnerabilities and risks, as well as countermeasures and compensating controls.

Working Location:

Remote US or Canada

Full-Time Employees at Cohere enjoy these Perks:
  • A weekly lunch stipend of $75/£75 or equivalent in your local currency for lunch.

  • Full health and dental benefits, including a separate budget for mental health.

  • RRSP matching, 401K, Pension Scheme.

  • 100% Parental Leave top-up for up to 6 months, for either parent.

  • Annual enrichment benefits:

    Arts & culture, fitness/wellness, quality time, and a workspace improvement credit.

    Education & learning stipend for conferences, courses, and coaching.

  • 6 weeks of paid vacation (30 working days!)

  • Budget for traveling to other offices if you are remote, plus an annual company offsite.

How and Where We Work:
  • Cohere is remote-friendly, but we also have offices in Toronto, London, New York City, San Francisco, Montreal, Paris, Berlin and Seoul with more opening soon.

  • For those in the office: a daily lunch program, plenty of snacks, and regular community and social events.

  • For those not near an office: a co-working benefit so you can work alongside others in your city.

  • Everyone receives a $500 home office stipend to set up your workspace properly.

We strive to create an inclusive work environment for all; we welcome applicants from all backgrounds and are committed to providing equal opportunities. Should you require any accommodations during the recruitment process, please submit an Accommodations Request Form, and we will work together to meet your needs.

We may use AI-enabled tools to screen and assess applicants against the criteria for this position. This helps our recruiters identify potentially qualified candidates, but it doesn't limit the applications our recruiters may review or consider.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

Cohere • New York (NY)

On-site
USD 130,000 - 180,000
Weekly lunch stipend
Health and dental benefits
RRSP matching / Pension scheme
+4
Manager, Security Engineering
Manager, Security Engineering

Cohere • United States

On-site
USD 120,000 - 160,000
Inclusive culture
Weekly lunch stipend
Full health and dental benefits
+2
Manager, Security Engineering
Manager, Security Engineering

Cohere • San Francisco (CA)

On-site
USD 140,000 - 180,000
Open and inclusive culture
Weekly meals and snacks
Comprehensive health and dental benefits
+4
Product Security Engineer, North Security
Product Security Engineer, North Security

Cohere Inc. • California (MO), Northern (KY)

Hybrid
USD 140,000 - 190,000
Lunch stipend
Health and dental benefits
RRSP/401K Pension matching
+4
Senior Security Engineer
Senior Security Engineer

Jaide Health • San Francisco (CA)

On-site
USD 120,000 - 160,000
Inclusive culture
Weekly lunch stipend
Full health and dental benefits
+4
Senior Security Engineer
Senior Security Engineer

Cohere • San Francisco (CA)

On-site
USD 120,000 - 150,000
Open and inclusive culture
Team on the cutting edge of AI research
Weekly lunch stipend
+5
Software Engineer, Security
Software Engineer, Security

Cohere • United States

Hybrid
USD 140,000 - 200,000
Lunch stipend
Health benefits
RRSP matching
+4
Software Engineer, Security Agents
Software Engineer, Security Agents

AI Chopping Block • San Francisco (CA), Northern (KY)

On-site
USD 150,000 - 190,000
Weekly lunch stipend
Comprehensive health and dental
RRSP / 401K / Pension
+3
Software Engineer, Security
Software Engineer, Security

Cohere • San Francisco (CA)

Hybrid
USD 180,000 - 325,000
Lunch stipend
Health and dental benefits
RRSP matching/401K
+4
Software Engineer, Security
Software Engineer, Security

Cohere • New York (NY)

Hybrid
USD 214,000 - 291,000
Lunch stipend
Health & dental benefits
RRSP matching
+5