Please click on the Apply to verify the status of jobs posted more than 15 days ago, as they may have expired. Similar Jobs
Job Description
Prevent issues from becoming incidents.?
About The Role
As the Director of Product Security, you will lead our team of engineers and product security architects in driving the security posture and maturity of the products Qualys builds and delivers. This is a management role for an experienced professional with a proven track record of developing and scaling security programs and engineering solutions for SaaS platforms. You will play a critical role at a enterprise software company as you ensure the security of our products, services, and infrastructure while enabling innovation and speed in our development lifecycle.
About Qualys & Product Security
Qualys delivers a leading-edge security platform for enterprise organizations. We process over 2 trillion security events each year across the +20 products in our portfolio. These products consume and process rich data from the more than 6 billion IPs that we scan for customers across all sectors of the global economy at organizations in +100 countries.
What we build is important to the world. That is why the Product Security team identifies and resolves problems early, working in-line with development as both a security partner and coach. This allows us to reduce friction, increase adoption, and drive accountability by delivering a program designed to imbed security into the product, champion that change, and enable the continuous improvement over what we build and deliver.?
Key Responsibilities
Leadership and Strategy
- Lead and mentor a team of Security Engineers and Security Architects, fostering a culture of innovation, collaboration, and delivery.
- Develop the ability to work across and influence a portfolio of products to develop their product security maturity.
- Execute the strategic vision for Product Security and as a leader and player.
- Lead security architecture reviews, deliver threat modeling, and publish requirements.
- Collaborate with Product Management, Engineering, and DevOps teams to integrate security into the development lifecycle effectively.
- Work in partnership with Threat & Vulnerability management teams, Security Operations, and Governance, Risk, and Compliance leads.
- Act as a trusted advisor to leadership on product security risks and strategies.
- Improve and scale an existing product security program, including Secure Software Development Lifecycle (SDLC), threat modeling, security standards, design review, and security champions capabilities.
- Develop Product Security Maturity Model capabilities aligned to OWASP SAMM, NIST SSDF, and/or BSIMM.
- Support delivery of the Product Security Incident Response Team (PSIRT) programs and processes, enabling incident response and escalation management.
- Collaborate with engineering teams to develop solutions that address product security issues at scale.
- Identify and design security architectures and technical controls that enhance the Secure by Design experience of Qualys.
- Oversee the development and delivery of a Security Design Library, security standards, and a dedicated pod of engineering resources to produce capabilities and code in partnership with Engineering.
- Partner with Compliance teams to ensure alignment with security standards and frameworks such as FedRAMP, ISO 27001, and other frameworks.
- Author findings, improvement recommendations, risk registry issues, and develop business intelligence to bolster maturity in how we communicate on product security risks.
Experience
- 10+ years in application security, with at least 5 years in product-focused SaaS platforms.
- 5+ years in engineering, with at least some time as a senior engineering lead.
- 5+ years management experience in a leadership role.
Looking to get Placed? Try our Placement Guarantee Plan
- Expertise in web application security at an enterprise organization.
- Expertise in secure software development practices, secure coding standards, and application security testing.
- Mastery in delivering and also training others to deliver threat model, design reviews, and security assessments.
- Hands-on experience with modern development practices, CI/CD pipelines, containerization technologies, and both web as well as client-side applications such as agents and appliances.
- Proven ability to build, scale, and lead high-performing teams.
- Measurable experience building capability maturity through influence.
- Strong stakeholder management and communication skills to work across Engineering, Product, and Executive teams.
- Opportunity to lead and grow a critical function at a company whose reach includes protecting institutions that billions of people use every day.
- The ability to lead a creative, capable, and growing team so that we can do more together.
- Competitive salary and benefits, including performance bonuses and equity options.
Skills
DevopsSoftware DevelopmentTestingIf an employer asks you to pay any kind of fee, please notify us immediately. Jobaaj does not charge any fee from the applicants and we do not allow other companies also to do so.
About Company
Qualys, Inc. is a pioneer and leading provider of cloud-based security and compliance solutions in the IT industry. Founded in 1999 and headquartered in Foster City, California, Qualys helps organizations streamline their security and compliance solutions by providing them with powerful tools for vulnerability management, policy compliance, web application scanning, malware detection, and many other security functions, all within a single integrated suite.
The company’s services are built on its flagship platform, Qualys Cloud Platform, which offers scalable solutions for global businesses to monitor and protect their IT assets and data across on-premises, cloud, and mobile environments. Qualys is well-known for its continuous security intelligence solutions, enabling businesses to identify threats, monitor unexpected changes, and reduce risk by ensuring compliance with internal and external regulations.
Important dates & deadlines?
Application Deadline
13 Jun 25, 02:13 PM IST
Similar Jobs
View All

