Senior Manager - Product Cybersecurity (Remote)
United Airlines Chicago, Illinois, United States · $141K–$183K/yr
Airlines and Aviation · 10,001+ employees
About the role
The Senior Manager leads a team of cybersecurity engineers to develop and maintain end-to-end security architecture for company products and services. They are responsible for defining security vision, managing talent, and ensuring compliance with legislation and industry standards.
What they look for
Requirements
Candidates must have a bachelor's degree in a STEM field and at least 5 years of relevant experience in cybersecurity. Proficiency in threat modeling, risk management, DevSecOps, and application security testing is required.
Benefits
Full description
Achieving our goals starts with supporting yours. Grow your career, access top-tier health and wellness benefits, build lasting connections with your team and our customers, and travel the world using our extensive route network.
Come join us to create what’s next. Let’s define tomorrow, together.
Description
Connecting People. Uniting the World. There’s never been a more exciting time to join United Airlines! As a global company that operates in hundreds of locations around the world — with millions of customers and tens of thousands of employees — we have a unique responsibility to uplift and provide opportunities in the places where we work, live and fly.
We’re on a path to becoming the best airline in aviation history. Join our Cybersecurity and Digital Risk (CDR) team to help lead the industry in cyber safety, security and resilience. United's CDR team plays a critical role in protecting our operations by enabling secure and resilient systems, managing threats and vulnerabilities, and ensuring swift response and recovery. Our mission is to seamlessly embed cybersecurity and digital risk management into every aspect of our business. We help drive progress and growth through trusted digital solutions, safeguarding assets and empowering our team, all while promoting a cyber-safe and secure environment that supports resilient airline operations.
United offers a competitive benefits package aimed at keeping you happy, healthy, and well-traveled. From employee-run "Business Resource Group" communities to world-class benefits like parental leave, 401(k), and privileges like space-available travel, United is truly a one-of-a-kind place to work. Are you ready to travel the world and help us keep our airline cyber safe? Apply today!
Job Overview and Responsibilities
The Senior Manager - Product Cybersecurity is a technical leader responsible for managing a team of highly innovative cybersecurity engineers responsible for developing and maintaining end-to-end security architecture of United’s product(s)/application(s)/service(s). This person will create and implement a vision for security across all products within the United portfolio.
- Responsible for recruiting and talent development of team, including personnel management
- Define, prioritize, allocate resources, track, and provide status reporting of work assignments, projects, and programs
- Monitors changes in legislation and compliance standards that affect assigned areas of responsibility and proactively acts to update standards, best practices and architectures based on this information
- Coordinates remediation of non-compliant items to meet applicable compliance standards and best practices
- Assist with annual budgeting and monthly forecasting
Qualifications
What’s needed to succeed (Minimum Qualifications):
- Bachelor's degree required (STEM field preferred)
- At least 5 years of relevant experience
- Proficiency with OWASP Top 10
- Proficient knowledge of threat modeling
- Proficient knowledge of risk management processes
- Ability to secure AI, ML, or LLM products or familiarity with SDLC for AI, ML, or LLMs
- Proficiency with application testing (e.g., SAST, DAST, MAST, RAST, IAST, Pen Test tooling)
- Proficiency with programming languages and modern programming language structure (i.e., Object Oriented Programming, web framework)
- Proficient with DevSecOps technology stacks (i.e., AWS, Harness, TeamCity, GitHub, Artifactory, CHEF, CloudWatch)
- Proficiency with SDLC process
- Proficiency with web and app security stack (e.g., API security)
- Proven ability to lead people
- Able to build and execute a workforce transformation strategy that develops the team’s capabilities in AI-assisted security engineering, frontier-model application security testing, secure AIDLC, and agentic automation
- Ability to manage business and external partners
- Excellent problem solving, critical thinking, interpersonal, collaboration, written and verbal communication skills
- Must be legally authorized to work in the United States for any employer without sponsorship
- Successful completion of interview required to meet job qualification
- Reliable, punctual attendance is an essential function of the position
What will help you propel from the pack (Preferred Qualifications):
- Master's degree
- One or more of the following: CEH, GSEC, CISM, Security +, CISSP, CISA, SSCP, CASP, OSCP, AWS Solution Architect Pro., Networking, and Security Specializations
- 10+ years of relative experience
- Strong subject matter expertise in the fields of IT security and risk management
- Experience with technical documentation / SOP creation
- Proficient understanding of compliance frameworks (e.g., NIST 800-53) and processes
- Demonstrated experience applying security and risk-management practices to AI/ML or generative AI systems, including secure AI lifecycle reviews, AI threat modeling, adversarial testing and component supply-chain risk and runtime guardrails
- Demonstrated experience implementing or governing frontier-model-enabled application security testing, including context-aware code analysis, vulnerability discovery, exploitability validation, remediation generation, threat-model-informed testing. Experience must include human validation, secure execution environments, model and prompt governance, quality measurement and integration with developer and CI/CD workflows
- Strong knowledge of IT infrastructure security best practices, procedures, and standards
- Experience with cloud native products and in-depth understanding microservice topologies and implementations
- Expertise in application development and dev-ops security technologies and integration
- Demonstrated ability to think strategically about business, product, and technical challenges
- Experience within the transformation of traditional data center security measures into industry adopted cloud technologies
- Proven ability to work with compliance frameworks and requirements
- Ability to work in a fast-paced and Agile development environment
- Ability to perform manual security code reviews
- Ability to interpret dynamic/static analysis tools, and penetration test results
- Proficient knowledge of cloud technologies and security
- Proficiency with vulnerability management processes and providing remediation guidance
- Proficiency in cryptography
- Proficient understanding of IAM (i.e., authentication and authorization)
- Proficient understanding of networks and network security
Job Post Expiration: 10/1/2026
The base pay range for this role is $140,600.00 to $183,108.00. The base salary range/hourly rate listed is dependent on job-related, factors such as experience, education, and skills. This position is also eligible for bonus and/or long-term incentive compensation awards.
You may be eligible for the following competitive benefits: medical, dental, vision, life, accident & disability, parental leave, employee assistance program, commuter, paid holidays, paid time off, 401(k) and flight privileges.
United Airlines is an Equal Opportunity Employer. We recruit, employ, train, compensate, and promote without regard to race, color, religion, national origin, gender identity, sexual orientation, disability, age, veteran status, or any other protected category under applicable law. We provide reasonable accommodations for applicants and employees with disabilities. To request an accommodation, contact JobAccommodations@united.com
Similar roles
-
Government Cybersecurity Attorney | Government Contracts | $260K–$365K
Purple Cow Recruiting Washington, Maryland, United States · $260K–$365K/yr
-
Senior Cybersecurity Operations Analyst
DEFEND Limited Auckland, Auckland, New Zealand
-
RMF Cybersecurity Analyst II - 505767
Delaware Nation Industries Bath Township, Ohio, United States
-
AI Platform Security Engineer
Advanced Micro Devices, Inc San Diego, California, United States
-
Director of Engineering, Electrical Controls & OT Cybersecurity
Jobgether United States · $171K–$198K/yr
-
Senior Cybersecurity Solutions Engineer
Jobgether United States · $93K–$163K/yr