Lead and advance software security programs for a global technology organization, guiding development teams to build secure applications and mitigate risks.
Requirements
- 7+ years of development experience with languages such as JavaScript, Python, or Java.
- 5+ years working in Agile, DevOps, or CI/CD environments.
- 3+ years experience using static and dynamic analysis testing tools and performing security or risk assessments.
- Experience with cloud platforms such as AWS, Google Cloud, or Azure; familiarity with AWS Lambda, API Gateway, DynamoDB, S3, and CloudWatch.
- Knowledge of modern application and infrastructure design patterns, including microservices, containers, stateless and distributed systems.
- Hands-on experience with open-source technologies (NodeJS, OpenJDK, React, NoSQL databases).
- Proficiency with DevOps tools including Terraform/CloudFormation, GitLab pipelines, Jira, and automated deployment/testing tools.
Responsibilities
- Lead the Software Security Engineering program, maintaining and evolving the roadmap over time.
- Influence secure coding practices, cryptography, access controls, key rotation, and process automation across product teams.
- Develop patterns, templates, and standards to guide secure application and infrastructure design.
- Maintain and apply a threat pattern library to mitigate risk effectively.
- Provide guidance on security testing tools, trends, and secure coding practices to development teams.
- Recommend technical and administrative improvements to enhance overall organizational security.
- Collaborate with Site Reliability Engineers, Solution Architects, and other stakeholders to integrate security into product development.
Other
- Bachelor’s Degree in Computer Science or related field preferred; Master’s Degree preferred, or equivalent experience.
- Strong leadership and project management skills with the ability to implement complex systems independently.
- Hybrid work program offering flexibility to work from home and collaborate in-office.
- Inclusive, diverse, and collaborative work environment.