×
Register Here to Apply for Jobs or Post Jobs. X

Manager, Security Engineering

Job in Somerville, Middlesex County, Massachusetts, 02145, USA
Listing for: Actblue
Full Time position
Listed on 2026-05-05
Job specializations:
  • IT/Tech
    Cybersecurity, IT Project Manager
Salary/Wage Range or Industry Benchmark: 100000 - 125000 USD Yearly USD 100000.00 125000.00 YEAR
Job Description & How to Apply Below

WHO WE ARE

Act Blue is a nonprofit organization dedicated to creating cutting‑edge technology that fuels Democratic victories and enables progressive causes to thrive.

Our vision is simple: building change through the power of people. Since our founding, we’ve been building innovative solutions to revolutionize grassroots fundraising – if you’ve donated to a Democratic campaign or a progressive organization online, you’ve probably used our platform! We believe in putting power in the hands of small‑donor donors by helping thousands of groups— from local candidates to national movements— mobilize their communities and create a lasting impact.

Every member of our team is deeply committed to advancing our shared mission and core values. Together, we are shaping the future of democracy.

THE OPPORTUNITY

The Security & Integrity department at Act Blue works to protect from threat actors that might target Act Blue, our donors, or the campaigns and organizations that fundraise on our platform. Our security program is anchored in empathy for our stakeholders, which is a primary value for our team.

We are looking for an Engineering Manager, Security to help lead our Security team. This is a role that demands a diverse skillset, you will directly manage a team of security engineers while maintaining deep hands‑on involvement in security related work. You will partner with the Sr. Director of Security and Integrity to own the security team’s strategic roadmap, drive cross‑functional partnerships with Engineering, Legal, IT, and your peers in Payments and Fraud helping the team to manage both day to day work and improvement of Act Blue’s security program.

The ideal candidate brings both strong managerial depth helping teams to plan and execute tactically as well as deep technical depth in security engineering and a genuine passion for developing people. You’ll help set the technical direction for the team, ensure we’re building the right capabilities to defend Act Blue, and create an environment where security engineers thrive and grow in their careers and skills.

WHAT

YOU WILL DO
  • Team Leadership & Development:
    Mentoring, and growing security engineers. This includes running 1:1s, career development planning, performance reviews, and building a culture of continuous learning around evolving threats and technologies.
  • Security Execution:
    Partnering with engineers on your team and the Sr. Director of Security and Integrity you’ll define and prioritize the team's quarterly and annual security initiatives, aligning them with business objectives and frameworks like NIST CSF, CIS Controls, or SOC 2. Translating risk assessments into actionable engineering work.
    • Routinely run daily standups with the team and help the team plan, coordinate, and shepherd tactical work to be done.
  • Cross-Functional Collaboration:

    Partnering with Platform, SRE, Legal, IT, Compliance, and Product teams to embed security into the SDLC, incident response processes, and vendor management workflows.
  • Incident Response & Preparedness:
    You’ll help the team to maintain the Security incident response program: runbooks, running tabletop exercises, on call schedules, and ensuring timely response to alerts and events.
  • Product and Cloud Security:
    Drive product security practices and cloud security posture across our AWS infrastructure, ensuring secure architecture, configuration, and continuous monitoring of our production environments.
  • Vulnerability &

    Risk Management:

    Overseeing application security testing (SAST, DAST, SCA), penetration testing programs (including bug bounty), and ensuring vulnerabilities are triaged, prioritized, and remediated within SLA.
    • Defining and tracking KPIs (mean time to detect/respond, vulnerability remediation rates, coverage metrics) and reporting security posture to executive stakeholders.
  • Corporate Security:
    Partnering with IT, you and the team will help ensure strong protections in corporate security including spam, EDR, and device security is mature and well executed.
  • Vendor & Third-Party Risk:
    Helping the team evaluating security vendors, and overseeing third‑party risk assessments.
  • Budget & Resource Planning:
    In coordination…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary