Navan Logo

Navan

Director, Product Security Engineering

Posted Yesterday
Be an Early Applicant
Easy Apply
Hybrid
New York, NY
192K-426K Annually
Expert/Leader
Easy Apply
Hybrid
New York, NY
192K-426K Annually
Expert/Leader
Lead Product Security and Security Engineering strategy and roadmap; integrate shift-left tooling and Security-as-Code; architect scalable auth/authorization/encryption services (including Passkeys); secure LLM/AI-driven interfaces; build Red Team and PSIRT; partner with Engineering and Product to drive remediation and reduce technical debt.
The summary above was generated by AI

Navan is looking for a visionary Director of Security Engineering to lead the charge in protecting our customer-facing products and internal tools. As we pivot toward a future defined by AI-driven natural language interfaces, you will be the primary architect of a security strategy that balances rapid innovation with world-class defense-in-depth.

Reporting directly to the CISO, you will oversee two critical pillars of our defense: Product Security (S-SDLC, Threat Modeling, Pentesting) and Security Software Engineering (Core AuthN/AuthZ, Encryption Services). Your mission is to ensure that security is not a bottleneck, but a built-in feature of everything Navan builds.

What You’ll Do
  • Strategic Leadership: Own the overall strategy and roadmap for the Product Security and Security Engineering programs.
  • Scale the Function: Develop and scale a "shift left" security culture by integrating automated security tooling and "Security as Code" solutions directly into the IDE / CI.
  • Architect Core Services: Oversee the design and implementation of highly scalable security frameworks for authentication, authorization, and encryption, including cutting-edge transitions to Passkeys.
  • AI & Emerging Tech: Secure the next generation of Navan products, specifically focusing on the security implications of LLM-integrated natural language interfaces and AI-driven workflows.
  • Cross-Functional Partnership: Act as a key liaison between Security, Engineering, and Product teams to drive risk remediation and ensure "Security by Design".
  • Team Building: Recruit, mentor, and manage high-performing teams, including the development of Red Team and PSIRT functions.
  • Operational Excellence: Drive visibility into application vulnerabilities and technical debt, ensuring clear prioritization and pragmatic remediation.
What We’re Looking For
  • Experience: 12+ years in Security Engineering or Software Engineering, with at least 5 years in a senior leadership role managing technical teams.
  • Technical Breadth: Deep expertise across the full stack, including Java Spring Framework, Cloud Infrastructure (AWS), and containerization.
  • Identity & Access Specialist: In-depth knowledge of modern authentication (SAML, JWT, OIDC, Passkeys) and complex multi-tenant authorization frameworks.
  • Security Domain Expertise: Proven track record in threat modeling, architecture reviews, and application penetration testing in high-risk environments (e.g., Fintech or Healthcare)
  • Tooling Mastery: Hands-on experience with S-SDLC automation, including SAST, DAST, IAST, and SCA integration.
  • Regulatory Knowledge: Familiarity with global compliance standards such as PCI DSS, SOC2, HIPAA, and FedRAMP.
  • Communication & Influence: The ability to translate complex security risks into business impact for executive stakeholders while maintaining deep technical credibility with engineers.
The posted pay range represents the anticipated low and high end of the compensation for this position and is subject to change based on business need. To determine a successful candidate’s starting pay, we carefully consider a variety of factors, including primary work location, an evaluation of the candidate’s skills and experience, market demands, and internal parity.
For roles with on-target-earnings (OTE), the pay range includes both base salary and target incentive compensation. Target incentive compensation for some roles may include a ramping draw period. Compensation is higher for those who exceed targets. Candidates may receive more information from the recruiter.
Pay Range
$191,700$426,000 USD

Top Skills

Java Spring Framework,Aws,Containerization,Passkeys,Saml,Jwt,Oidc,Llm,Ide,Ci,S-Sdlc,Sast,Dast,Iast,Sca,Threat Modeling,Penetration Testing,Authentication,Authorization,Encryption Services,Red Team,Psirt,Pci Dss,Soc2,Hipaa,Fedramp

Navan New York, New York, USA Office

115 W 18th St. 6th Floor., New York, NY, United States, 10011

Similar Jobs at Navan

Yesterday
Easy Apply
Hybrid
New York, NY, USA
Easy Apply
135K-240K Annually
Senior level
135K-240K Annually
Senior level
Fintech • Information Technology • Payments • Productivity • Software • Travel • Automation
Own and optimize the inbound demand engine: align global MarTech, define lead scoring and attribution, improve lead-to-SQO velocity, enable BDRs, and ensure CRM/marketing automation integrity across territories.
Top Skills: Marketo,Google Ads,Crm,Marketing Automation,Martech
Yesterday
Easy Apply
Hybrid
New York, NY, USA
Easy Apply
105K-140K Annually
Junior
105K-140K Annually
Junior
Fintech • Information Technology • Payments • Productivity • Software • Travel • Automation
Manage the implementation and launch of a travel and expense platform for customers, ensuring a seamless onboarding experience and driving cross-functional collaboration.
Top Skills: Project ManagementTravel And Expense Platform
2 Days Ago
Easy Apply
Hybrid
New York, NY, USA
Easy Apply
131K-175K Annually
Mid level
131K-175K Annually
Mid level
Fintech • Information Technology • Payments • Productivity • Software • Travel • Automation
The Enterprise Solutions Consultant will implement Navan Expense solutions, support Account Managers, and drive revenue by understanding client needs and leveraging expertise in accounting and finance.
Top Skills: Erp SystemsExpense Management Solutions

What you need to know about the NYC Tech Scene

As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.

Key Facts About NYC Tech

  • Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
  • Key Industries: Artificial intelligence, Fintech
  • Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
  • Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account