Allstate Logo

Allstate

Security Engineering Senior Manager

Posted 27 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in US
152K-210K Annually
Senior level
Remote
Hiring Remotely in US
152K-210K Annually
Senior level
Lead multiple product security engineering teams to design, implement, and operate security controls across Allstate's technology ecosystem. Architect secure digital products, drive DevSecOps, CI/CD, cloud-native and application security best practices, integrate IAM/SIEM/vulnerability management, influence stakeholders, manage security product roadmaps, mentor engineers, and own production security KPIs and compliance.
The summary above was generated by AI

At Allstate, great things happen when our people work together to protect families and their belongings from life’s uncertainties. And for more than 90 years, our innovative drive has kept us a step ahead of our customers’ evolving needs. From advocating for seat belts, air bags and graduated driving laws, to being an industry leader in pricing sophistication, telematics, and, more recently, device and identity protection. 

Job Description

Allstate Cybersecurity & Controls (ACC) is advancing its embedded security product strategy by launching three new engineering teams dedicated to building security controls seamlessly integrated into Allstate’s technology ecosystem.
The Security Engineering Senior Manager will be the direct leader responsible for the day-to-day development, implementation, and support of security controls across multiple product security engineering teams, working with global stakeholders. This position requires a strong, well-rounded technical leader who can quickly learn the overall business and technology processes supported by the teams, and who is eager to grow skills within the security engineering landscape, including secure software development, cloud security, application security, and modern DevSecOps practices. The role demands hands-on expertise in security engineering, along with solid integration and compliance knowledge.
This senior leader will be expected to build relationships throughout the organization to ensure whole-company alignment and support for their goals, and vice-versa. This individual architects and designs secure digital products using modern tools, technologies, frameworks, and systems. This role applies a systematic application of scientific and technological knowledge, methods, and experience to the design, implementation, testing, and documentation of secure software. This leader owns and manages running their applications in production and is accountable for the success of their digital products through achieving KPIs, including security metrics.

Key Responsibilities
  • Frequently advise others on complex security engineering matters.

  • Build foundation to translate security strategy into challenging and meaningful goals. 

  • Manage teams responsible for strategic and critical security architecture or provide functions that are of key strategic value to the business. 

  • Act as an authority in secure software best practices and propagate these throughout the broader organization, beyond their individual team. 

  • Display expertise in viewing the organization as a whole, especially in terms of risk and security posture. 

  • Leverage and influence key stakeholders to drive adoption of security controls and practices. 


Specific to Security Engineering Responsibilities:
  • Designing, implementing, and productizing security controls to address complex business and technology challenges. 

  • Working directly with business and technical teams to assess and provide security technology support. 

  • Understanding multiple end-to-end business and technology processes, with a focus on security risks and mitigations. 

  • Displaying deep knowledge of technical details, integration, and functions of security tools and platforms (e.g., IAM, SIEM, vulnerability management, cloud security). 

  • Evaluating potential system enhancements and upgrades, influencing the security product roadmap. 

  • Identifying and implementing process improvements and product simplification opportunities, especially in security operations. 

  • Providing technical or functional leadership for team members in security engineering. 

  • Ensuring industry and technology best practices are followed for secure development and operations. 


Job Qualifications
  • 10+ years of experience preferred in security engineering, with at least 3 years in a technical leadership or managerial role.

  • Deep understanding of secure software development, vulnerability management, cloud security, application security, and modern security engineering practices. 

  • Experience with secure software configuration and development, including secure APIs, authentication/authorization, encryption, and threat modeling. 

  • Experience working with modern security frameworks, tools, and methodologies (e.g., DevSecOps, CI/CD security, cloud-native security). 

  • Deep understanding of technology best practices in areas of secure development and compliance. 

  • Experience in Test Driven Development (TDD), Agile SCRUM methodologies, and secure SDLC. 

  • Excellent problem-solving skills and a passion for continuous learning in security. 

  • Strong team player with well-developed verbal, written, and interpersonal communication skills. 

  • Dedicated, self-directed, motivated, proactive, and inquisitive. 

#LI-JJ1

Skills

Application Security, CI/CD, Cloud Native Security, DevSecOps, Secure Software Development, Security Engineering, Team Leadership, Technical Leadership, Technical Problem-Solving, Test Driven Development (TDD)

Compensation

Compensation offered for this role is $151,700 – 210,000 annually and is based on experience and qualifications.

The candidate(s) offered this position will be required to submit to a background investigation.


Joining our team isn’t just a job — it’s an opportunity. One that takes your skills and pushes them to the next level. One that encourages you to challenge the status quo. One where you can shape the future of protection while supporting causes that mean the most to you. Joining our team means being part of something bigger – a winning team making a meaningful impact.

Allstate generally does not sponsor individuals for employment-based visas for this position.

Effective July 1, 2014, under Indiana House Enrolled Act (HEA) 1242, it is against public policy of the State of Indiana and a discriminatory practice for an employer to discriminate against a prospective employee on the basis of status as a veteran by refusing to employ an applicant on the basis that they are a veteran of the armed forces of the United States, a member of the Indiana National Guard or a member of a reserve component.

For jobs in San Francisco, please click “here” for information regarding the San Francisco Fair Chance Ordinance.

For jobs in Los Angeles, please click “here” for information regarding the Los Angeles Fair Chance Initiative for Hiring Ordinance.

To view the “EEO Know Your Rights” poster click “here”. This poster provides information concerning the laws and procedures for filing complaints of violations of the laws with the Office of Federal Contract Compliance Programs.

To view the FMLA poster, click “here”. This poster summarizing the major provisions of the Family and Medical Leave Act (FMLA) and telling employees how to file a complaint.

It is the Company’s policy to employ the best qualified individuals available for all jobs. Therefore, any discriminatory action taken on account of an employee’s ancestry, age, color, disability, genetic information, gender, gender identity, gender expression, sexual and reproductive health decision, marital status, medical condition, military or veteran status, national origin, race (include traits historically associated with race, including, but not limited to, hair texture and protective hairstyles), religion (including religious dress), sex, or sexual orientation that adversely affects an employee's terms or conditions of employment is prohibited. This policy applies to all aspects of the employment relationship, including, but not limited to, hiring, training, salary administration, promotion, job assignment, benefits, discipline, and separation of employment.


Allstate provides a comprehensive technology setup, including a laptop, monitors, headset, keyboard, and mouse. Employees eligible to work from home also receive a monthly connectivity reimbursement to help offset internet costs.


When working from home, you must have a dedicated, private workspace free from distractions, along with appropriate desk and seating. Reliable internet is required, with minimum speeds of 50 MB download and 5 MB upload.

Allstate Charlotte, North Carolina, USA Office

Charlotte, United States

Allstate Rock Hill, South Carolina, USA Office

Rock Hill, United States

Similar Jobs

24 Days Ago
Easy Apply
Remote
United States
Easy Apply
168K-245K Annually
Senior level
168K-245K Annually
Senior level
Cloud • Security • Software • Cybersecurity • Automation
Lead GitLab’s Security Posture Management team within Product Security. Drive governed security capability rollouts across the software estate, establish secure configuration baselines, build software supply chain security, manage risk registers and posture metrics, support audit evidence, and provide customer-zero feedback to Product and Engineering. Hire, coach, and develop the team while representing GitLab’s security practices externally and driving measurable risk reduction in a remote, asynchronous environment.
Top Skills: DevsecopsGitlabSoftware Bill Of Materials (Sbom)
12 Days Ago
Remote
5 Locations
248K-391K Annually
Senior level
248K-391K Annually
Senior level
Artificial Intelligence • Computer Vision • Hardware • Robotics • Metaverse
Leads a distributed team securing NVIDIA DGX Cloud’s large-scale GPU infrastructure. Responsibilities include hiring and developing engineers, setting strategy for security control planes and foundational services, delivering measurable risk reduction, maintaining engineering standards, communicating security risks to executives, and collaborating with platform, SRE, networking, and security teams. The role requires strong engineering management, infrastructure or security expertise, cloud-native fluency, and influence across partner organizations.
Top Skills: Cloud-Native ArchitectureDistributed SystemsGpu InfrastructureHigh-Performance ComputingIdentity And Access ManagementKubernetesPolicy EnforcementVulnerability Management
16 Days Ago
Remote
USA
9K-17K Annually
Senior level
9K-17K Annually
Senior level
Other • Retail
Leads Ferguson’s enterprise Security Engineering function, including vulnerability management, DevSecOps, penetration testing, application and cloud security, endpoint and email protection, edge security, configuration management, and security tooling. Builds and develops technical teams, establishes roadmaps and metrics, prioritizes risk-based remediation, oversees vendors and service operations, and communicates security posture and investment needs to executives and technology partners.
Top Skills: Api SecurityBot ManagementCdn SecurityCertificate ManagementCis BenchmarksCloud SecurityContainer SecurityCspmEdrIdentity SecurityIso 27001/27002It Service ManagementMS OfficeMicrosoft Security EcosystemMitre Att&CkNist CsfOwaspSastSecrets ManagementSecure SdlcSIEMSoftware Composition AnalysisVulnerability ScannersWaf

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account