Partner with product and engineering teams to architect secure products, providing security guidance, requirements, and guardrails throughout the development process
Own product and infrastructure security, including secure architecture design, cloud provider configuration, threat modeling, and incident response planning
Work closely with engineering teams to integrate security into the development lifecycle and provide the context needed to avoid introducing security risks
Oversee corporate security fundamentals, including endpoint protection, access management, and tool security
Support compliance certification efforts from a security and risk perspective (e.g., SOC 2, HIPAA, ISO 27001)
Requirements
Strong experience with product security and building secure applications for enterprise environments
Excellent communication skills and can effectively share security knowledge with engineering teams through writing and speaking
Deep hands-on experience with cloud infrastructure security (AWS, GCP, and/or Azure)
Software development background with the ability to both build and assess secure systems