SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Gong is seeking a Senior DevSecOps Manager to lead the Israel-based DevSecOps team and own the security posture of Gong's cloud infrastructure. This is a hands-on leadership role combining people management, technical depth, and architectural influence.
You will manage a strong, established team of DevOps and DevSecOps engineers and define Gong's cloud security roadmap. Key responsibilities include:
- Owning the security posture of Gong's multi-cloud infrastructure across AWS, Azure, and GCP
- Managing identity governance, least-privilege access, credential lifecycle management, and cloud vulnerability management
- Embedding security controls directly into the cloud platform to enable R&D teams to build securely by default
- Securing the developer toolchain, including CI/CD pipelines, software supply chain risks, and developer-facing guardrails
- Implementing security as code to replace manual processes with scalable automation
- Leading, developing, and growing a team of DevOps and DevSecOps engineers
- Defining team roadmap, priorities, and quarterly planning aligned with Cloud Engineering and Security
- Serving as the primary cloud security partner for Product Security, R&D, and Cloud Engineering
- Establishing clear security standards, ownership boundaries, and operating practices
You will solve complex security challenges across a large, evolving environment with multiple production cells, several cloud providers, and 500+ engineers. This includes addressing gaps in cloud identity, permissions, credentials, workload protection, and vulnerability management; securing Kubernetes environments; managing risks across GitHub and CI/CD pipelines; balancing security controls with engineering velocity; and automating repetitive security work.
Your impact will extend to Gong's ability to operate a secure, resilient, and scalable multi-cloud platform supporting millions of daily customer interactions, improving engineering velocity through secure-by-default capabilities, and developing a strong team into a center of cloud security expertise.