Pure Storage is looking to solve the problem of protecting its cloud services through Infrastructure Security, Product Security, and DevSecOps initiatives.
Requirements
- Proven expertise in cloud security posture management
- Solid knowledge of identity management
- Ability to evaluate third party SaaS security controls
- Ability to evaluate networking security controls
- Proven expertise in managing projects throughout the entire SDLC, delivering products on schedule, and ensuring feedback loops from customers into the development
- Solid knowledge of end-to-end quality and security best practices
- Strong customer focus
Responsibilities
- Evaluate and implement security controls around third party cloud provider configurations
- Work with central security teams on security policies around networking
- Evaluate security controls around usage of third party SaaS vendors
- Lead and scale the Product Security program, aligning security strategy with business and engineering objectives
- Coordinate and ensure the timely remediation of identified risks and vulnerabilities
- Lead a team of engineers to build tooling to support other teams in following security best practices
- Own and drive DevSecOps initiatives, implementing shift-left security tooling such as static analysis, dependency scanning, and secrets detection
Other
- 2+ years of technical management experience while staying hands-on
- 5+ years of hands-on software development experience, preferably in cloud services and security-related areas
- Ability to successfully manage multiple projects simultaneously
- Strong analytical and problem-solving skills
- Excellent written and verbal communication skills