Remote job
Engineering Manager, Abuse Control Engineering
Job details
About this role
Role overview An Engineering Manager role leading an Abuse Control Engineering team that functions as a rapid-response technical defense and control incubator. When urgent abuse vectors emerge, the team uses real attacker telemetry to prototype, test, and deploy software safeguards before vulnerabilities can be exploited at scale. The manager is accountable for technical direction, people leadership, hiring, coaching, and cross-functional execution, partnering closely with Fraud, Risk, and Product Engineering.
Responsibilities - Define and communicate the team's technical strategy for identifying cross-product abuse gaps, incubating controls, and preventing recurrence of mitigated threats. - Hire, manage, coach, and develop engineers with clear expectations, feedback, and growth opportunities. - Ensure attacker evidence, product context, and measurable outcomes inform technical abuse requirements and control designs. - Partner with Application Security and product engineering to develop safeguards that are resilient, appropriately scoped, and compatible with surrounding systems. - Guide experiments that evaluate risk reduction and the effect of controls on legitimate user conversion. - Oversee the development of regression tests and durable mechanisms that detect recurrence of previously mitigated abuse patterns. - Establish clear success measures, documentation, ownership criteria, and target dates for incubated controls and complete ownership handoffs to long-term product owners. - Align security, product, engineering, and other partners around priorities, tradeoffs, responsibilities, and delivery plans, including during urgent coordination.
Requirements - Experience managing an engineering team, including setting direction, prioritizing work, and being accountable for delivery and technical outcomes. - A relevant technical foundation in software engineering, security engineering, application security, anti-abuse engineering, or a closely related field. - Experience hiring, coaching, and developing engineers at different levels, including providing actionable feedback and supporting career growth. - Experience leading cross-functional technical work across teams with different goals, expertise, or ownership boundaries. - Ability to evaluate technical designs, ask effective questions, and guide decisions involving reliability, security, risk, and product tradeoffs. - Experience communicating technical strategy, priorities, risks, and decisions to engineering teams and cross-functional stakeholders. - Ability to create clarity in ambiguous or urgent situations and translate broad risk problems into actionable plans and measurable outcomes.
Nice to have - Experience guiding experimentation or A/B testing, including balancing risk reduction against effects on legitimate user conversion. - Knowledge of threat modeling, secure systems design, or modern application security practices. - Familiarity with API safeguards and abuse controls such as rate limits, authorization checks, input validation, or step-up challenges. - Knowledge of financial-fraud patterns, attacker behavior, attack methods, or abuse infrastructure. - Experience using or overseeing large-scale data platforms to analyze system activity or measure control performance. - Experience incubating technical capabilities and transferring them to long-term owners through explicit success criteria and documentation. - Experience leading a distributed team or coordinating execution across multiple locations or time zones.