Senior Manager, Enterprise Security

Posted 2 Days Ago
Be an Early Applicant
Stravá, Loutraki-Agioi Theodoroi, GRC
Hybrid
270K-290K Annually
Senior level
News + Entertainment • Software • Sports
The Role
Lead and execute Strava's corporate security program and enterprise security engineering roadmap. Manage a small engineering team, design and operate identity, endpoint, network, email and SaaS security, and build operating models combining internal engineering with vendor partners. Architect identity and access management, Zero Trust, device hardening and automation, vulnerability management, enterprise AI and data security, and partner cross-functionally on secure-by-default experiences and corporate incident response.
Summary Generated by Built In
About Strava

Strava is the app for active people. With over 200 million athletes in more than 185 countries, it’s more than tracking workouts—it’s where people make progress together, from new habits to new personal bests. No matter your sport or how you track it, Strava’s got you covered. Find your crew, crush your goals, and make every effort count. Start your journey with Strava today.

Our mission is simple: to motivate people to live their best active lives. We believe in the power of movement to connect and drive people forward.

About This Role

Strava's Cybersecurity team protects the trust of over 200 million athletes by securing our platform, our data, and the systems our community depends on every day. Enterprise Security Engineering owns the engineering, architecture, and operation of the systems that secure Strava's workforce and corporate environment across a globally distributed company.

As the Senior Manager of Enterprise Security Engineering, you will own the strategy and execution of Strava's corporate security program. Reporting directly to the CISO, you will lead a lean, high-performing engineering team responsible for securing Strava's internal environment while partnering across the business to enable secure growth.

This is a highly technical leadership role. You'll define the long-term roadmap and operating model for the function, including which capabilities Strava owns internally versus delivers through strategic partners, while balancing strategic leadership with execution and making risk-based decisions that strengthen security without slowing the business down.

We follow a flexible hybrid model that translates to spending more than half of your time on-site in our San Francisco office, three days per week.

What You'll Do

Own and execute the enterprise security roadmap across corporate identity, endpoint, email, corporate network and SaaS security.

Lead a small team of enterprise security engineers, fostering a culture of technical excellence, operational rigor and ownership.

Stay hands-on by designing, building, and configuring security capabilities alongside your team when needed.

Build an operating model that combines internal engineering with strategic partners, determining what should be owned in-house and holding vendors accountable for measurable security outcomes.

Architect and evolve Strava's identity and access management platform, including SSO, MFA, privileged access, identity governance, lifecycle automation, and Zero Trust principles across cloud and SaaS environments.

Secure Strava's enterprise environment by driving the architecture, hardening, and automation of endpoints, enterprise networking, email, collaboration platforms, SaaS applications, and third-party integrations.

Develop and execute strategies for enterprise AI security, data security, vulnerability and exposure management, and continuous hardening of the corporate environment.

Partner closely with IT, Engineering, Legal, People, Workplace to build secure-by-default experiences.

Partner with the Detection & Response team during corporate-related security incidents.

Communicate priorities, risks, and measurable outcomes to the CISO and senior leadership.

What You'll Bring to the Team

Leadership

10+ years of experience designing, building, and operating Enterprise Security programs in modern cloud-first environments.

3+ years leading security engineering teams, with experience coaching engineers while remaining technically engaged.

Strong communication and stakeholder management skills, with the ability to influence cross-functional partners and executives through clear, risk-based decision making.

Deep expertise in operating enterprise security capabilities at scale, including MFA, SSO,OAuth, MDM, EDR, device compliance and fleet management across macOS and Windows.

Experience working with tooling such as Okta, Intune, Jamf, ZTNA, Sailpoint, GWS, Slack, Github.

Experience designing enterprise security architectures that balance strong security with employee productivity and developer velocity.

Experience managing strategic security vendors and managed service providers.

Bonus Points

Experience with DLP, CASB, SSPM, DSPM, or modern data security platforms.

Experience integrating AI governance and security into enterprise productivity platforms.

Experience building self-service security capabilities and security automation for internal users.

 
Why Join Us?

Movement brings us together. At Strava, we’re building the world’s largest community of active people, helping them stay motivated and achieve their goals.

Our global team is passionate about making movement fun, meaningful, and accessible to everyone. Whether you’re shaping the technology, growing our community, or driving innovation, your work at Strava makes an impact.

When you join Strava, you’re not just joining a company—you’re joining a movement. If you’re ready to bring your energy, ideas, and drive, let’s build something incredible together.

Strava builds software that makes the best part of our athletes’ days even better. Just as we’re deeply committed to unlocking their potential, we’re dedicated to providing a world-class, inclusive workplace where our employees can grow and thrive, too. We’re backed by Sequoia Capital, TCV, Madrone Partners and Jackson Square Ventures, and we’re expanding in order to exceed the needs of our growing community of global athletes. Our culture reflects our community. We are continuously striving to hire and engage teammates from all backgrounds, experiences and perspectives because we know we are a stronger team together.

Strava is an equal opportunity employer. In keeping with the values of Strava, we make all employment decisions including hiring, evaluation, termination, promotional and training opportunities, without regard to race, religion, color, sex, age, national origin, ancestry, sexual orientation, physical handicap, mental disability, medical condition, disability, gender or identity or expression, pregnancy or pregnancy-related condition, marital status, height and/or weight.

We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.

California Consumer Protection Act Applicant Notice

Skills Required

  • 10+ years designing, building, and operating Enterprise Security programs in modern cloud-first environments
  • 3+ years leading security engineering teams, coaching engineers while remaining technically engaged
  • Deep expertise operating enterprise security capabilities at scale (MFA, SSO, OAuth, MDM, EDR, device compliance and fleet management across macOS and Windows)
  • Experience with tooling such as Okta, Intune, Jamf, ZTNA, SailPoint, GWS, Slack, GitHub
  • Experience designing enterprise security architectures that balance security with productivity and developer velocity
  • Experience managing strategic security vendors and managed service providers
  • Strong communication and stakeholder management skills with executive influence and risk-based decision making
  • Ability to work on a flexible hybrid model spending more than half time on-site in San Francisco (three days per week)
  • Experience with DLP, CASB, SSPM, DSPM, or modern data security platforms
  • Experience integrating AI governance and security into enterprise productivity platforms
  • Experience building self-service security capabilities and security automation for internal users

Strava Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Strava and has not been reviewed or approved by Strava.

  • Fair & Transparent Compensation Pay is considered competitive and compensation is broadly viewed as fair, even if not consistently at the very top of the market. Overall satisfaction appears stronger when factoring in cash pay and benefits.
  • Healthcare Strength Healthcare coverage is often described as fully covered for employees and families, standing out as a core strength of the package. This reduces out-of-pocket costs while supporting comprehensive medical, dental, and vision access.
  • Wellbeing & Lifestyle Benefits Wellness-oriented perks such as health club support, event entry reimbursements, and gear or home-office stipends are highlighted as meaningful. These benefits align closely with an active, athlete-focused culture and add tangible value beyond salary.

Strava Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: San Francisco, CA
363 Employees
Year Founded: 2009

What We Do

Strava is Swedish for “strive,” which epitomizes who we are and what we do. We’re a passionate and committed team, unified by our mission to connect athletes to what motivates them and help them find their personal best. And with billions of activity uploads from all over the world, we have a humbling and audacious vision: to be the record of the world’s athletic activities and the technology that makes every effort count. Strava builds software that makes the best part of our athletes’ days even better. And just as we’re deeply committed to unlocking their potential, we’re dedicated to providing a world-class, inclusive workplace where our employees can grow and thrive, too. We’re backed by Sequoia Capital, Madrone Partners and Jackson Square Ventures, and we’re expanding in order to exceed the needs of our growing community of global athletes. Our culture reflects our community – we are continuously striving to hire and engage diverse teammates from all backgrounds, experiences and perspectives because we know we are a stronger team together.When you’re ready for a challenge and a team that will support you along the way, join us!

Similar Jobs

GC AI Logo GC AI

Head of EMEA, GTM

Artificial Intelligence • Legal Tech
In-Office or Remote
28 Locations
130 Employees

Deepgram Logo Deepgram

Account Executive

Artificial Intelligence • Machine Learning • Natural Language Processing • Software • Conversational AI
In-Office or Remote
28 Locations
150 Employees

Deepgram Logo Deepgram

Account Executive

Artificial Intelligence • Machine Learning • Natural Language Processing • Software • Conversational AI
In-Office or Remote
28 Locations
150 Employees

Pfizer Logo Pfizer

Director, HTA, Value & Evidence (HV&E), Obesity Early Pipeline

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office or Remote
29 Locations
121990 Employees
177K-294K Annually

Similar Companies Hiring

Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account