Navan Logo

Navan

Director, Product Security Engineering

Reposted 5 Days Ago
Be an Early Applicant
Easy Apply
Hybrid
2 Locations
192K-426K Annually
Expert/Leader
Easy Apply
Hybrid
2 Locations
192K-426K Annually
Expert/Leader
Lead Product Security and Security Engineering programs, architect authN/authZ and encryption services, secure LLM/AI product integrations, scale shift-left tooling (S-SDLC), build Red Team and PSIRT, and drive cross-functional remediation and security-by-design.
The summary above was generated by AI

Navan is looking for a visionary Director of Security Engineering to lead the charge in protecting our customer-facing products and internal tools. As we pivot toward a future defined by AI-driven natural language interfaces, you will be the primary architect of a security strategy that balances rapid innovation with world-class defense-in-depth.

Reporting directly to the CISO, you will oversee two critical pillars of our defense: Product Security (S-SDLC, Threat Modeling, Pentesting) and Security Software Engineering (Core AuthN/AuthZ, Encryption Services). Your mission is to ensure that security is not a bottleneck, but a built-in feature of everything Navan builds.

What You’ll Do
  • Strategic Leadership: Own the overall strategy and roadmap for the Product Security and Security Engineering programs.
  • Scale the Function: Develop and scale a "shift left" security culture by integrating automated security tooling and "Security as Code" solutions directly into the IDE / CI.
  • Architect Core Services: Oversee the design and implementation of highly scalable security frameworks for authentication, authorization, and encryption, including cutting-edge transitions to Passkeys.
  • AI & Emerging Tech: Secure the next generation of Navan products, specifically focusing on the security implications of LLM-integrated natural language interfaces and AI-driven workflows.
  • Cross-Functional Partnership: Act as a key liaison between Security, Engineering, and Product teams to drive risk remediation and ensure "Security by Design".
  • Team Building: Recruit, mentor, and manage high-performing teams, including the development of Red Team and PSIRT functions.
  • Operational Excellence: Drive visibility into application vulnerabilities and technical debt, ensuring clear prioritization and pragmatic remediation.
What We’re Looking For
  • Experience: 12+ years in Security Engineering or Software Engineering, with at least 5 years in a senior leadership role managing technical teams.
  • Technical Breadth: Deep expertise across the full stack, including Java Spring Framework, Cloud Infrastructure (AWS), and containerization.
  • Identity & Access Specialist: In-depth knowledge of modern authentication (SAML, JWT, OIDC, Passkeys) and complex multi-tenant authorization frameworks.
  • Security Domain Expertise: Proven track record in threat modeling, architecture reviews, and application penetration testing in high-risk environments (e.g., Fintech or Healthcare)
  • Tooling Mastery: Hands-on experience with S-SDLC automation, including SAST, DAST, IAST, and SCA integration.
  • Regulatory Knowledge: Familiarity with global compliance standards such as PCI DSS, SOC2, HIPAA, and FedRAMP.
  • Communication & Influence: The ability to translate complex security risks into business impact for executive stakeholders while maintaining deep technical credibility with engineers.

The posted pay range represents the anticipated low and high end of the compensation for this position and is subject to change based on business need. To determine a successful candidate’s starting pay, we carefully consider a variety of factors, including primary work location, an evaluation of the candidate’s skills and experience, market demands, and internal parity.
For roles with on-target-earnings (OTE), the pay range includes both base salary and target incentive compensation. Target incentive compensation for some roles may include a ramping draw period. Compensation is higher for those who exceed targets. Candidates may receive more information from the recruiter.

Pay Range
$191,700$426,000 USD

Top Skills

Authentication
Authorization
AWS
Ci/Cd
Containerization
Dast
Encryption
Fedramp
Hipaa
Iast
Ide Integration
Java
Jwt
Llms
Oidc
Passkeys
Pci Dss
Penetration Testing
S-Sdlc
SAML
Sast
Sca
Soc2
Spring Framework
Threat Modeling
HQ

Navan Palo Alto, California, USA Office

3045 Park Blvd, Palo Alto, CA, United States, 94304

Navan San Francisco, California, USA Office

181 Fremont St. 23rd Floor , San Francisco, CA, United States, 94105

Similar Jobs at Navan

11 Hours Ago
Easy Apply
Hybrid
2 Locations
Easy Apply
120K-160K Annually
Mid level
120K-160K Annually
Mid level
Fintech • Information Technology • Payments • Productivity • Software • Travel • Automation
Manage enterprise customer implementations for a travel and expense platform, leading projects from kickoff to go-live, building project plans, driving cross-functional coordination, delivering training, documenting processes, and ensuring excellent onboarding experiences.
Top Skills: NetSuiteQuickbooks OnlineSage Intacct
11 Hours Ago
Easy Apply
Hybrid
Palo Alto, CA, USA
Easy Apply
130K-288K Annually
Expert/Leader
130K-288K Annually
Expert/Leader
Fintech • Information Technology • Payments • Productivity • Software • Travel • Automation
As a Staff Software Engineer, you will lead feature development, mentor engineers, enhance user experiences, and adopt new technologies within a team.
Top Skills: AWSJavaSpring Boot
11 Hours Ago
Easy Apply
Hybrid
2 Locations
Easy Apply
95K-210K Annually
Senior level
95K-210K Annually
Senior level
Fintech • Information Technology • Payments • Productivity • Software • Travel • Automation
The Digital Demand Manager will drive growth through digital channels, manage campaigns, analyze performance, and collaborate with teams for high-impact projects.
Top Skills: Abm PlatformsContent SyndicationDigital MarketingExcelGoogle SheetsPaid SocialProgrammatic Display

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account