Gong
Senior Security Operations Engineer
Full details on LinkedIn
The complete job description, requirements, and application details are available on the original posting.
About Gong
Gong is an AI-powered revenue intelligence company that offers a platform designed to enhance productivity and drive revenue growth for revenue teams. The company focuses on understanding customer interactions and business trends by capturing and analyzing communications such as sales calls and emails. Gong's mission is to unlock full revenue potential through actionable insights and improved forecasting accuracy. The core of Gong's offering is the Gong Revenue AI Platform, which includes features like conversational intelligence to analyze sales calls, the Gong Data Engine for automating data capture, and specialized AI agents that provide insights and suggest next best actions. The platform also includes applications for pipeline management, forecasting, coaching, and engagement, enabling teams to make data-driven decisions and improve conversion rates. Gong serves over 4,500 customers globally, including major enterprises like Microsoft and LinkedIn. Its platform is utilized by executives, sales teams, and customer success teams to align efforts, enhance forecasting, and accelerate growth.
Security at Gong
Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.
Security Philosophy
- Gong frames security as a customer trust and product-quality priority and states a secure software development process and in-house AI governance.
- Public materials emphasize secure development as a process and governance (developer enablement language present), but no explicit "security champions"program wording was found.
- Gong's CISO has written about balancing business agility with risk mitigation and treating enterprise-grade security as a requirement for in-house AI models.
Security Team
- Jack Leidecker is publicly listed as Gong's CISO with responsibility for Product Security, Cyber Security, Compliance, and Corporate Security.
- No public, verifiable breakdown of AppSec org structure (centralized vs. embedded) or reporting line beyond the CISO role was found.
- No explicit public statements of AppSec team size.
- LinkedIn/people index queries returned no reliable headcount.
Key Initiatives
Gong publishes a Vulnerability Disclosure Policy that commits to acknowledging reports within 3 business days and to maintaining open dialogue with reporters. No public evidence was located for a named Security Champions program at Gong. A current DevSecOps role for Gong lists CI/CD security automation, AWS security services, Kubernetes/container security, infrastructure-as-code, and vulnerability scanning/management in its qualifications.
Preparing for an AppSec interview?
Get the weekly briefing 2,000+ security pros trust.