Manager SaaS Security Posture Management
Role details
Job location
Tech stack
Job description
The Manager of SaaS Security Posture Management (SSPM) is responsible for leading, operating, and scaling the enterprise SSPM capability. This role serves as the first-line people manager for SSPM and owns the day-to-day operations, execution, and continuous maturity of the program. As SaaS adoption accelerates across the enterprise, SSPM provides centralized visibility into SaaS configurations, identities, integrations, and overall security posture to ensure risk is proactively identified and reduced while enabling secure business growth., Program & Operational Leadership
- Own day-to-day SSPM operations, including posture monitoring, findings triage, remediation workflows, exceptions, and risk acceptance.
- Ensure SSPM operates in alignment with approved operating models, runbooks, and governance cadences.
- Translate strategic direction into operational priorities, agile planning, and execution.
People Management & Team Development
- Directly manage SSPM analysts, developers, and contractors
- Provide performance feedback, coaching, and career development
- Manage workload, capacity, and coverage across SSPM functions
Technology & Capability Ownership
- Oversee operational use of SSPM tooling (e.g., Falcon Shield, Obsidian, AppOmni) and associated SaaS integrations, including any developed custom integrations.
- Partner with SSPM technical leads to operationalize controls and policies
- Ensure SSPM findings are correctly prioritized and routed for remediation
Risk Management & Remediation
- Drive measurable SaaS risk reduction outcomes, not just visibility
- Ensure consistent handling of remediation, false positives, exceptions, and accepted risks
Cross-Functional Engagement
- Serve as the primary operational SSPM interface for application owners, IAM, SOC, and GRC teams
- Participate in regular SaaS posture reviews and baseline recertification efforts
Requirements
- Experience managing security or technology teams in a large enterprise environment
- Strong understanding of SaaS security risks including misconfigurations, identities, and integrations
- Proven ability to operationalize and scale security programs
- Strong communication and stakeholder engagement skills, * Experience with SaaS Security Posture Management tools or programs
- Familiarity with NIST CSF or similar security frameworks
- Experience working closely with IAM, SOC, or Cloud Security teams