Position Purpose:
The SaaS Security Manager is responsible for leading a team that continuously assesses and improves the security posture of The Home Depot’s SaaS applications across the enterprise. This role owns the SaaS Security program, establishes standards and guardrails for SaaS platforms, and partners with product, engineering, and enterprise teams to protect customer, associate, and company data in third-party cloud services.
Key Responsibilities:
-
100% Deliver Execution, Plans & Aligns, Develop Others - Collaborate across teams to reduce vulnerabilities, risks, and incident management; Drive execution of solution delivery; Guide teams in strategy, alignment, analysis, and execution to ensure priorities, objectives/deliverables are met; Provide leadership, mentoring, and coaching to direct reports
Direct Manager/Direct Reports:
-
This position typically reports to Sr. Manager or Director
-
This position has 6-10 Direct Reports
Travel Requirements:
Physical Requirements:
-
Most of the time is spent sitting in a comfortable position, and there is frequent opportunity to move about. On rare occasions, there may be a need to move or lift light articles.
Working Conditions:
-
Located in a comfortable indoor area. Any unpleasant conditions would be infrequent and not objectionable.
Minimum Qualifications:
-
Must be eighteen years of age or older.
-
Must be legally permitted to work in the United States.
-
5+ years of experience in Information Security, with at least 2 years focused on Cloud or SaaS security.
-
2+ years of people management or technical leadership experience.
-
Proven experience securing major enterprise SaaS platforms (e.g., Google Workspace, Microsoft 365, Salesforce, ServiceNow, Slack, Atlassian).
Preferred Qualifications:
-
Bachelor's degree in Computer Science, Information Systems, or a related field.
-
Industry certifications: CISSP, CISM, CCSP, or vendor-specific certifications (e.g., Salesforce Certified Security Specialist).
-
Experience with scripting/automation (Python, PowerShell) to automate governance tasks.
-
Experience implementing Data Loss Prevention (DLP) policies across SaaS environments.
Minimum Education:
-
The knowledge, skills and abilities typically acquired through the completion of a bachelor's degree program or equivalent degree in a field of study related to the job.
Preferred Education:
Minimum Years of Work Experience:
Preferred Years of Work Experience:
-
No additional years of experience
Minimum Leadership Experience:
Competencies:
-
Leadership: Proven ability to lead, motivate, and develop a team of security professionals.
-
Technical Expertise:
-
Strong knowledge of Identity protocols: SAML, OIDC, SCIM, and OAuth.
-
Familiarity with API security and interconnected SaaS risks (shadow IT, third-party app integrations).
-
Strategic Thinking: Ability to prioritize risks in a fast-paced environment and translate technical security risks into business language for stakeholders.
-
Communication: Excellent written and verbal communication skills.
-
Collaboration: Proven ability to work effectively with cross-functional teams (IT, HR, Sales, etc.) to achieve common goals.