Security Engineer Manager, SVP – Application & Product Security

The Blackstone Group L.P.

Bethpage (NY)

On-site

USD 175,000 - 250,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health benefits
Paid time off
Life insurance
401(k)
Discretionary bonus

Job summary

Blackstone is seeking a Security Engineering Manager to lead the Application Security program, overseeing a team of security engineers and partnering with Software, Platform, Cloud Infrastructure, and Security Operations teams. You will guide security reviews, risk assessments, and secure-by-design practices across the firm’s software delivery lifecycle.

The ideal candidate has 8+ years in application security and 3+ years in leadership, with deep knowledge of SDLC, threat modeling, and modern

Qualifications

  • 8+ years in application security or related field.
  • 3+ years leading security engineers or teams.
  • Deep understanding of secure SDLC, threat modeling, and vulnerability management.
  • Experience with cloud-native security, preferably AWS.
  • Experience with security tooling including SAST, SCA, DAST, and secrets scanning.

Responsibilities

  • Lead and manage Blackstone's Application Security team, mentoring engineers and overseeing performance.
  • Own the Application Security program roadmap, strategy, and execution across software, cloud-native, and AI platforms.
  • Oversee SDRs, TSRs, SCRs, vulnerability disclosure, penetration testing, and remediation programs.
  • Partner with engineering to embed security controls and secure-by-design practices throughout the SDLC.
  • Drive adoption of secure development practices (SAST, SCA, DAST, CI/CD security).
  • Lead software supply chain security initiatives.
  • Establish security standards and guardrails for cloud-native apps, AI-enabled systems, APIs, and platforms.
  • Develop metrics and KPIs to demonstrate risk reduction and program effectiveness.
  • Present findings and strategic recommendations to technology leadership and audit stakeholders.

Skills

Application security
Engineering leadership
Threat modeling
Secure SDLC
AWS security
CI/CD security
Kubernetes
SAST/SCA

Education

Bachelor’s degree in CS/Cybersecurity/Engineering

Tools

SAST
SCA
DAST
Secrets scanning
IaC tooling

Job description

Blackstone is the world’s largest alternative asset manager. Blackstone seeks to deliver compelling returns for institutional and individual investors by strengthening the companies in which the firm invests. Blackstone’s over $1.3 trillion in assets under management include global investment strategies focused on real estate, private equity, credit, infrastructure, life sciences, growth equity, secondaries and hedge funds. Further information is available at www.blackstone.com.

Blackstone Technology and Innovations (BXTI) is the technology team at the core of each of Blackstone’s businesses and new growth initiatives. Serving both internal and external clients, we work to build the next generation of systems that manage risk, create efficiency, and improve transparency within the firm and across our broad community of investors and portfolio companies.

BXTI is fast paced and entrepreneurial – our open, iterative design processes and rapid pace of development mean that everyone on the team has the opportunity to make an impact from day one. We are problem solvers who can take projects from idea to implementation. We believe in active mentoring and developing excellence. We collaborate to find the best answers for our customers and for Blackstone. We are critical to the firm maintaining its competitive edge.

Your Team and Role:

Blackstone's Security Engineering (SecEng) team is responsible for securing the firm's software, cloud, AI, and platform ecosystems through scalable controls, developer enablement, and secure-by-design engineering practices. We are seeking a Security Engineering Manager to lead Blackstone's Application Security program. This individual will be responsible for managing a team of security engineers and driving the strategy, execution, and continuous improvement of application and product security capabilities across the firm. The role partners closely with Software Engineering, Platform Engineering, Cloud Infrastructure, Security Operations, Data Science, and Technology Leadership teams to ensure security is embedded throughout the software development lifecycle. The Application Security team performs security design reviews, technical security reviews, secure code reviews, penetration testing, vulnerability management, software supply chain security, developer security enablement, and AI security assessments. The team also develops and operates internally built security tooling that enables secure software delivery at scale.

The ideal candidate combines strong technical depth in application security with proven leadership experience managing engineers, driving security programs, and influencing stakeholders across a large enterprise environment.

Responsibilities:
  • Lead and manage Blackstone's Application Security team, providing technical leadership, mentoring, career development, and performance management.
  • Own the Application Security program roadmap, strategy, and execution across software, cloud-native, and AI-enabled platforms.
  • Oversee Security Design Reviews (SDRs), Technical Security Reviews (TSRs), Source Code Reviews (SCRs), Vulnerability Disclosure, penetration testing activities, and vulnerability remediation programs.
  • Partner with engineering organizations to embed security controls and secure-by-design principles throughout the software development lifecycle.
  • Drive adoption of secure development practices including static analysis, software composition analysis (SCA), SAST, secret scanning, CI/CD security controls, and policy enforcement.
  • Lead software supply chain security initiatives, including dependency management, artifact security, and build pipeline protections.
  • Establish security standards, reference architectures, and guardrails for cloud-native applications, AI-enabled systems, APIs, and platform services.
  • Support security architecture reviews for AWS, Kubernetes, containers, Infrastructure-as-Code, and modern developer platforms.
  • Drive vulnerability reduction programs and risk remediation efforts across application portfolios.
  • Partner with Security Operations, Infrastructure Security, IAM, and Incident Response teams during investigations involving application or software security risks.
  • Evaluate emerging security technologies and lead vendor assessments, proof-of-concepts, and strategic security tooling decisions.
  • Develop metrics, reporting, and KPIs that demonstrate risk reduction and program effectiveness.
  • Present findings, risks, and strategic recommendations to technology leadership, audit stakeholders, and senior management.
  • Stay current on emerging threats, secure development practices, AI security risks, and regulatory requirements.
Qualifications:
  • 8+ years of experience in application security, product security, software engineering, or security engineering.
  • 3+ years of experience managing security engineers or leading security engineering teams.
  • Deep understanding of application security principles, secure software development lifecycles, threat modeling, vulnerability management, and secure architecture design.
  • Experience conducting security design reviews, code reviews, penetration testing, and security assessments for modern software platforms.
  • Experience securing cloud-native architectures, preferably AWS.
  • Experience with CI/CD pipelines, developer platforms, Infrastructure-as-Code, and modern software delivery practices.
  • Experience with application security tooling including SAST, SCA, DAST, secrets scanning, and developer security platforms.
  • Strong communication skills with the experience influencing engineering and business stakeholders.
  • Experience securing AI/ML platforms, LLM-enabled applications, or data-driven systems.
  • Experience with Kubernetes, containers, APIs, and microservice architectures.
  • Experience leading software supply chain security initiatives.
  • A minimum of Bachelor’s degree (or foreign equivalent) in Computer Science, Cybersecurity, Engineering, or a related field

The duties and responsibilities described here are not exhaustive and additional assignments, duties, or responsibilities may be required of this position. Assignments, duties, and responsibilities may be changed at any time, with or without notice, by Blackstone in its sole discretion.

Expected annual base salary range: $175,000 - $250,000 Actual base salary within that range will be determined by several components including but not limited to the individual's experience, skills, qualifications and job location. For roles located outside of the US, please disregard the posted salary bands as these roles will follow a separate compensation process based on local market comparables.

  • comprehensive health benefits, including but not limited to medical, dental, vision, and FSA benefits
  • paid time off
  • life insurance
  • 401(k) plan
  • discretionary bonuses

Certain employees may also be eligible for equity and other incentive compensation at Blackstone’s sole discretion.

Blackstone is committed to providing equal employment opportunities to all employees and applicants for employment without regard to race, color, creed, religion, sex, pregnancy, national origin, ancestry, citizenship status, age, marital or partnership status, sexual orientation, gender identity or expression, disability, genetic predisposition, veteran or military status, status as a victim of domestic violence, a sex offense or stalking, or any other class or status in accordance with applicable federal, state and local laws.

This policy applies to all terms and conditions of employment, including but not limited to hiring, placement, promotion, termination, transfer, leave of absence, compensation, and training. All Blackstone employees, including but not limited to recruiting personnel and hiring managers, are required to abide by this policy.

If you need a reasonable accommodation to complete your application, please contact Human Resources at 212-583-5000 (US), +44 (0)20 7451 4000 (EMEA) or +852 3656 8600 (APAC).

Depending on the position, you may be required to obtain certain securities licenses if you are in a client facing role and/or if you are engaged in the following: Attending client meetings where you are discussing Blackstone products and/or and client questions; Marketing Blackstone funds to new or existing clients; Supervising or training securities licensed employees; Structuring or creating Blackstone funds/products; and Advising on marketing plans prepared by a sales team or developing and/or contributing information for marketing materials.

Note: The above list is not the exhaustive list of activities requiring securities licenses and there may be roles that require review on a case-by-case basis. Please speak with your Blackstone Recruiting contact with any questions.

At Blackstone, we look to attract and retain the brightest minds in the business, hiring professionals across a wide range of disciplines. Our employees are integral to the firm’s identity, contributing to a culture of integrity, professionalism and excellence.

It is their dedication and passion for their work that has helped Blackstone become a trusted partner for some of the largest institutional investors in the world. We encourage independent thinking and reward initiative, while providing services to help employees grow professionally. Our global business platform and brand reputation provide an unparalleled launch pad for growing your career.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer Manager, SVP – Application & Product Security
Security Engineer Manager, SVP – Application & Product Security

Blackstone • New York (NY)

On-site
USD 175,000 - 250,000
Blackstone Physical Security - Managing Director, Security Intelligence
Blackstone Physical Security - Managing Director, Security Intelligence

The Blackstone Group L.P. • New York (NY)

On-site
USD 275,000 - 300,000
Health benefits and 401(k)
Discretionary bonuses
Equity opportunities
+1
Blackstone Technology & Innovations – Vice President
Blackstone Technology & Innovations – Vice President

The Blackstone Group L.P. • Bethpage (NY)

On-site
USD 194,000 - 250,000
Comprehensive health benefits
Paid time off
Life insurance
+2
Software Engineering Manager, SVP – AI Platform Development
Software Engineering Manager, SVP – AI Platform Development

Blackstone • Miami (FL)

On-site
USD 175,000 - 250,000
Comprehensive health benefits
Paid time off
401(k) plan
+2
Security Operations Engineer, Associate - Security Operations Engineering
Security Operations Engineer, Associate - Security Operations Engineering

The Blackstone Group L.P. • New York (NY)

On-site
USD 106,000 - 170,000
Comprehensive health benefits
401(k) plan
Discretionary bonuses
Enterprise AI Program Manager, AVP Enterprise Technology -
Enterprise AI Program Manager, AVP Enterprise Technology -

The Blackstone Group L.P. • Miami (FL)

On-site
USD 135,000 - 170,000
Health benefits
Paid time off
Life insurance
+2
Software Engineer, Analyst - Alternative Asset Management Technology
Software Engineer, Analyst - Alternative Asset Management Technology

3M HEALTHCARE • Miami (FL)

On-site
USD 80,000 - 140,000
Comprehensive health benefits
Paid time off
401(k) plan
Director, Legal Technology
Director, Legal Technology

Lennar Homes • Miami (FL)

On-site
USD 225,000 - 275,000
SVP, Talent Acquisition - Technology
SVP, Talent Acquisition - Technology

The Blackstone Group L.P. • Miami (FL)

On-site
USD 190,000 - 275,000
Health benefits
401(k)
Discretionary bonuses
+1
Blackstone Technology & Innovations (BXTI) - Administrative Assistant
Blackstone Technology & Innovations (BXTI) - Administrative Assistant

The Blackstone Group L.P. • Bethpage (NY)

On-site
USD 78,000 - 130,000
Comprehensive health benefits
Paid time off
Life insurance
+2