Finite State
MTS Manager
United States or Canada · Staff+ · Contract
Sponsorship not specified$218k-$800kDetected 61 days ago
Code ReviewAgentic AICybersecurityPenetration TestingComplianceOKRsAccount ManagementPerformance ManagementEmbedded SystemsLeadershipCommunicationCollaborationMentoringCISSP
About the role
- Finite State partners with product security teams, the guardians of our connected world, to create transparency for their connected devices and supply chains. Our platform handles connected devices and embedded systems across all industries, including those found in enterprises, healthcare, utilities, connected vehicles, manufacturing facilities, critical
- infrastructure, and government entities.
Responsibilities
- Builds and maintains team capacity plans and skills inventories; identifies gaps and drives hiring, cross-training, certification, and external training plans to close them
- Manages utilization across the team to balance billable engagement work, capability development, and reserved capacity for new service launches and surge demand
- Leads recurring service reviews, escalation discussions, and quarterly business reviews; ensures customer outcomes are visible, measurable, and tied to renewal and expansion narratives
- Partners with Sales on scoping, statements of work, pricing alignment, and pre-sales technical engagement; provides expert input to deal qualification and risk
- Owns operational delivery against the Services ARR plan; accountable for margin discipline, utilization targets, and forecast accuracy
Requirements
- Deep working knowledge of connected and embedded device security, including firmware, microcontrollers, wireless SoCs, RTOS environments, and integrated IoT systems
- Strong understanding of SBOM standards (SPDX, CycloneDX), VEX, software composition analysis, and vulnerability correlation against CVE/CPE/PURL
- Strong understanding of vulnerability disclosure and PSIRT operating models, including ISO/IEC 29147 (vulnerability disclosure) and ISO/IEC 30111 (vulnerability handling), CVSS v3.1/v4, and CNA operating procedures
- Working knowledge of TARA methodologies (ISO/SAE 21434 for automotive, IEC 62443-3-2 for industrial, MITRE ATT&CK and EMB3D where applicable)
- Working knowledge of EU Cyber Resilience Act (CRA), including Annex I essential requirements, vulnerability handling obligations, conformity assessment routes, and post-market surveillance expectations
- Working knowledge of IEC 62443, ETSI EN 303 645, NIST IR 8259 series, NIST SSDF (SP 800-218), and US Executive Order 14028 / OMB M-22-18 SBOM requirements
- Demonstrated ability to translate technical findings into business and regulatory consequences for non-technical stakeholders
Nice to have
- Bachelor's degree in Computer Science, Mathematics, Physical Sciences, Electrical/Computer Engineering, or equivalent demonstrable experience and certifications
- advanced degree desirable
- Minimum 4 years of direct people management experience, including hiring, performance management, mentorship, and team development
- Demonstrated experience standing up new service offerings or productizing technical capabilities within a managed services or information technology environments is strongly preferred
- Ability to ramp quickly on AI and agentic AI platforms and productivity systems
- familiarity with the automated firmware/binary analysis platform category and AI-assisted vulnerability triage is preferred
Skills
- Working knowledge of applied cryptography, secure protocols, secure boot, secure update, and key management as applied to embedded systems
- Familiarity with ISO 27001, SOC 2 Type I/II, and adjacent compliance regimes as they apply to a managed services delivery organization
- Strong project and program management capability
Compensation
- Our salary ranges are categorized into two tiers based on geographic location:
Benefits
- Serves as senior delivery contact and trusted technical advisor for strategic customer accounts; owns the technical health of those relationships
- Cultivates a culture of technical excellence, intellectual honesty, customer empathy, peer review, and continuous learning; fosters psychological safety in a fully remote operating environment
Company info
- Finite State partners with product security teams, the guardians of our connected world, to create transparency for their connected devices and supply chains.
- Our platform handles connected devices and embedded systems across all industries, including those found in enterprises, healthcare, utilities, connected vehicles, manufacturing facilities, critical infrastructure, and government entities.
- We are a fast-growing series-B company with a fully distributed workforce.
- Led by a team of seasoned experts, we are a mission-driven team passionate about arming our customers with the actionable insights, critical vulnerability data, and remediation guidance necessary to mitigate product risk and protect the connected attack surface.
- We are committed to a remote first culture.
Apply directly at Finite State →Create a free account for alerts like thisView Finite State immigration profile
This listing is sourced directly from Finite State's careers page and normalized into a canonical job model.