Sr Manager, Cyber Defense & Engineering
Listed on 2026-08-12
-
IT/Tech
Cybersecurity
Gong harnesses the power of AI to transform how revenue teams win. The Gong Revenue AI Operating System unifies data, insights, and workflows into a single, trusted system that observes, guides, and acts alongside the world’s most successful revenue teams. Powered by the Gong Revenue Graph, AI-powered intelligence, specialized agents, and trusted applications, Gong helps more than 5,000 companies around the world deeply understand their teams and customers, automate critical sales workflows, and close more deals with less effort.
For more information, visit (Use the "Apply for this Job" box below). At Gong, you will join a company built on innovative products, ambitious goals, and passionate people. We are shaping the future of revenue intelligence and we want people who are excited to build what comes next. You will work with a team that dreams big, moves fast, and cares deeply about the craft and about each other.
Here, transparency and trust are core to how we operate, and every person has the opportunity to make a visible impact. If you want to grow, stretch, and do work that truly matters, Gong is the place to do the best work of your career. We're looking for a visionary corporate cyber defense leader to architect and scale the security foundations that protect how Gong employees work across devices, identity, AI, SaaS, email, collaboration, and access.
OWN
The strategy, operating model, and execution of Corporate Security Engineering within Gong's Cyber Defense group. Leading the Corporate Security Engineering team and growing a high-performing organization with strong technical depth, execution rigor, and clear ownership. Endpoint security across a global macOS, Windows, and Linux fleet, including EDR coverage, sensor health, policy, exclusions, and hardening baselines with IT and MDM partners. Identity and access security, including SSO, phishing-resistant MFA, passwordless adoption, conditional access, device trust, privileged access management, joiner-mover-leaver controls, and service account hygiene.
Email and collaboration security, including anti-phishing and BEC controls, DMARC/SPF/DKIM enforcement, malicious-content protection, and reported-phish automation with DRE. SaaS security posture management, including OAuth and third-party app governance, shadow SaaS discovery, and security review partnership with GRC and Procurement. Zero trust and corporate network security for a distributed workforce, including ZTNA, office security, segmentation, certificate trust, and Wi-Fi security. Data protection and insider-risk tooling across endpoint, email, browser, and SaaS channels, with focus on Gong's crown-jewel data paths.
Corporate vulnerability and baseline management, including patch policy, SLAs, hardening standards, and operational accountability with IT. Security guardrails for employee use of AI tools, with an enablement-first mindset rather than a blanket-blocking approach. Metrics and operating discipline across coverage, health, adoption, SLA performance, remediation speed, and security friction.
Building strong preventive security controls without creating unnecessary friction for employees or slowing the business down. Designing a scalable corporate defense program for a globally distributed workforce that depends on endpoint, identity, SaaS, collaboration, and secure access systems every day. Governing risky OAuth access, shadow IT, and employee AI-tool adoption in ways that enable the business safely. Improving protection over Gong's crown jewels, including customer conversation data, revenue data, source code, and AI/ML assets, across the egress paths that matter most.
Building a durable partnership model across IT, DRE, Legal, People, GRC, Procurement, and Net Eng so security controls are adopted, operationalized, and maintained over time. Creating a team structure and operating rhythm that can scale with Gong's growth while maintaining high standards for reliability, responsiveness, and execution. Turning Corporate Security Engineering into a function that is measurable, automation-minded, and tightly connected to downstream detection and response workflows.
IMPACT
Strengthening Gong's security posture across endpoints, identity, SaaS, email, collaboration, access, and data protection. Building a preventative security program that is increasingly automated, scalable, and secure by default. Driving measurable improvement in corporate security KPIs such as EDR deployment coverage, phishing-resistant MFA adoption, SSO coverage, PAM coverage, patch SLAs, OAuth remediation, DLP path coverage, ZTNA adoption, and vulnerability MTTR. Reducing risky OAuth grants, insecure SaaS configurations, unmanaged endpoints, dormant privileged access, and operational friction across the employee environment.
Helping Gong move faster with distributed work, SaaS adoption, and employee AI tooling because the right guardrails exist. Raising the leadership, engineering, and execution bar for corporate cyber…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).