Product Security Lead
Tasks
- Build container security scanning pipelines
- Build security documentation audit evidence and reporting
- Collaborate with engineering compliance and mission teams
- Conduct penetration testing
- Conduct security architecture reviews
- Define validate enforce security requirements
- Deliver developer security training
- Deploy and manage SAST and DAST tools
- Design cryptographic controls for data at rest and in transit
- Enforce security policies in CI CD
- Establish secure coding standards
- Evaluate cryptographic library selection
- Harden GitOps workflows for security
- Hire and develop product security engineers
- Identify remediate cryptographic weaknesses
- Implement audit logging for secrets platforms
- Implement key management architecture
- Implement security review gates
- Integrate security validation into CI CD pipelines
- Manage certificate lifecycle
- Manage penetration testing findings remediation validation
- Own product security across software development lifecycle
- Own secrets management infrastructure
- Perform software composition analysis
- Perform threat modeling
- Review harden infrastructure as code
- Run dependency analysis
- Run vulnerability management program
- Secure artifact management signing supply chain integrity
Perks/Benefits
- N/A
Skills/Tech-stack
800-171 | Access Control | Admission controllers | Application Security Testing | Architecture Review | ArgoCD | Artifact signing | Asymmetric Encryption | Audit Logging | CI/CD | CI/CD Security | CMMC | Certificate Lifecycle Management | Certificate lifecycle | Certificate management | Composition analysis | Container Security | Container security scanning | Cryptographic Library | Cryptographic Library Evaluation | Cryptographic Weakness Remediation | Cryptography | Data encryption | Dependency analysis | Dynamic Application Security | Dynamic Application Security Testing | FedRAMP | GitOps | GitOps Security | GitOps workflows | Go | HashiCorp Vault | Infrastructure as Code | Key Management | Library evaluation | Lifecycle Management | Microservices Security | NIST | NIST 800 | NIST 800-171 | PKI | PKI Certificate | PKI certificate management | Penetration Testing | Policy enforcement | Protocol Design | Python | Rust | SBOM | SLSA | Secrets management | Secure Architecture | Secure Coding | Secure Protocol Design | Secure architecture review | Security Scanning | Security Testing | Sigstore | Software Composition | Software Composition Analysis | Software Supply Chain | Software supply chain security | Static Application Security Testing | Supply Chain | Supply chain integrity | Supply chain security | Symmetric encryption | Terraform | Threat modeling | Vulnerability Management | “as-code”
Education
N/A
Regions
Countries
States
Related jobs
-
Senior Security Engineer, Cloud Red Team, Cloud CISO USD 174K-253KAttack scenario design | Bash | Cloud Security | Cloud automation | Custom exploitsSenior-level Full TimeZürich, Switzerland; New York, NY, USA1h ago
-
Security Engineer, Cloud Red Team, Cloud CISO USD 147K-211KBash | Cloud Security | DevSecOps | Ethical Hacking | GoMid-level Full TimeZürich, Switzerland; New York, NY, USA1h ago
-
Lead Cyber Security Architect USD 126K-189KApplication Security | Cloud Security | Cyber Security | Enterprise Architecture | Network ArchitectureDental insurance | Health care | Paid time off | Retirement plans | Sick leaveSenior-level Full TimeCreve Coeur, Missouri, US4h ago
-
Technical Lead Java/AWS - Miami USD 125K-170KAPI Gateway | AWS Cloud | AWS Cloud Development Kit | AWS CloudFormation | AWS cloud developmentGrowth opportunities | High autonomy | High visibility role | International team collaboration | Long-term contractSenior-level Contract Full TimeMiami, Florida11h ago
-
Cybersecurity Engineer, USD 90K-185KAccess Control | Access Control Lists | Active Secret | Agile | Authorization and AccreditationMedical dental 401k ESOP PTO education reimbursement work life balance parental leaveSenior-level Full TimeBedford, Massachusetts11h ago
-
Security Operations Manager USD 108K-140K800-171 | AWS GovCloud | Bash | Behavioral analytics | CMMCTS SCI clearance process | TS clearance or higherMid-level Full TimeTorrance, CA12h ago
-
Cybersecurity Engineer, Journeyman - Secret USD 90K-175KCompliance Assessment | Linux | Nessus | Networking concepts | Powershell401k | Dental | ESOP | Education reimbursement | Leave programsMid-level Full TimeBedford, Massachusetts13h ago
-
Cybersecurity Architect USD 172K-216KAccess Management | Certificate Lifecycle Management | Certificate lifecycle | Certificate revocation | Conditional AccessSenior-level Full TimeSan Jose, California, United States R14h ago
-
Security Operations Engineer I USD 125K-155KAccess Management | Alert triage | Automation | Azure AD | Cortex XDR401k retirement plan | Dental coverage | Medical coverage | Stock options | Vision coverageMid-level Full TimeRedondo Beach15h ago
-
Consultant - Senior Power Platform Security Engineer USD 100K-125KAccess Management | Admin API | BI Administration | Compliance Automation | Data Loss Prevention401k match | Flexible holidays | Health insurance | Paid Company Holidays | Paid time offSenior-level Full TimeSeattle, WA17h ago
-
Principal Security Engineer USD 191K-315KAWS | Access Management | Authentication | Azure | CI/CDBonuses | Disability insurance | Life insurance | Paid parental leave | Paid time offSenior-level Full TimeRemote, United States R18h ago
-
Cybersecurity Director USD 230K-245KAWS | Access Controls | Access Management | Application Security | Audit compliance401k match | Fitness allotment | Health benefits | Mental health resources | Paid time offExecutive-level Full TimeSan Francisco, CA/Hybrid R19h ago
-
Systems Cybersecurity Journeyman USD 155K-170KAccess Control | Access Control Lists | Agile | Authorization and Accreditation | Awareness TrainingSenior-level Full TimeBedford, Massachusetts, United States19h ago
-
Information Security Engineer USD 135K-170K800-171 | 800-53 | AWS GovCloud | Azure Government | Azure SecurityCompany non profit matching | Global volunteer day | Mindfulness app membership | Paid parental leave | Paid time offMid-level Full TimeUnited States; Remote R20h ago
-
Senior-level Full TimeHanover, MD20h ago
-
System Engineer I USD 126K-179KAccess Control | Attribute-Based Access Control | Attribute-based access | Confluence | Entitlements management247 support schedule | Collaborative environmentSenior-level Full TimeHanover, MD20h ago
-
Senior-level Full TimeHanover, MD20h ago
-
Application Security Engineer (Senior) ID71672 USD 144K-174KApplication Security | CI/CD | Code remediation | DAST | DevSecOpsEducation budget | Fitness budget | Flextime | Mentorship | Office optionsSenior-level Full TimeBaltimore, United States22h ago
-
Application Security Engineer (Senior) ID71672 USD 144K-174KApplication Security | Automation | CI/CD | Code Scanning | Code remediationFlextime | Mentorship | Office options | Personalized growth roadmaps | Remote work optionsSenior-level Full TimePort Charlotte, United States22h ago
-
Application Security Engineer (Senior) ID71672 USD 144K-174KCI/CD | DAST | DevSecOps | Java | PythonFlextime | Mentorship | Office options | Personalized growth roadmaps | Professional growthSenior-level Full TimeAustin, United States22h ago
-
Application Security Engineer (Senior) ID71672 USD 144K-174KApplication Security | CI/CD | DAST | DevSecOps | JavaEducation budget | Fitness budget | Flexible schedule | Mentorship | Professional growthSenior-level Full TimeTallahassee, United States22h ago
-
Application Security Engineer (Middle) ID71671 USD 110K-150KAppSec | CI/CD | DAST | DevSecOps | Hardened BaselineFlexible schedule | Office options | Professional growth | Remote work optionsMid-level Full TimeBoca Raton, United States22h ago
-
Application Security Engineer (Tech Lead) ID71666 USD 150K-192KApplication Security | CI/CD | Cloud Security | Code review | DevSecOpsEducation budget | Fitness budget | Flexible schedule | Mentorship | Personalized growth roadmapsSenior-level Full TimeJacksonville, United States22h ago
-
Application Security Engineer (Tech Lead) ID71666 USD 150K-192KApplication Security | Application Security Posture Management | CI/CD | Cloud Security | Code reviewEducation budget | Fitness budget | Flextime | Mentorship | Office optionsSenior-level Full TimeMiami, United States22h ago
-
Application Security Engineer (Tech Lead) ID71666 USD 150K-192KApplication Security | CI/CD | Cloud Security | Code review | DevSecOpsFlexible schedule | Mentorship | Office option | Personalized growth roadmaps | Remote work optionSenior-level Full TimeTampa, United States22h ago