Own the security and compliance functions related to our digital sovereign commercial product offerings and environments.
Lead technical discussions across multi-functional engineering teams, product and sales teams, as well as with third party auditors.
Support the continuous improvement of Red Hat Product Security through designing, developing, and implementing automation at scale to enable the maturation of processes.
Mentor and aid the growth of junior team members.
Support the downstream integration of open-sourced projects; collaborate to develop and implement Red Hat specific capabilities from the upstream.
Serve as an evangelist of security and compliance both inside Red Hat and externally, with partners, customers, or within the open-source community.
Requirements
Experience working with Kubernetes, OpenShift, Podman, or similar technologies.
Demonstrable knowledge of applying cloud security principles and best practices to a cloud or hybrid cloud environment.
Have developed and delivered secure and attested software in programming languages such as Go and Python is a plus.
Experience using AI tools like Cursor AI, Claude, or others to accelerate product development delivery timelines.
Ability to analyze security controls, assess risks, and design control measures in alignment with a variety of standards and frameworks (NIST 800-53, PCI DSS, ISO 27001, etc.).
Proven track record of being effective when working remotely with a global organization and in a self-directed capacity.
Strong communication skills, capable of presenting technical compliance concepts to both technical and non-technical audiences.
Relevant certifications, such as CISSP, CISM, CCSP, or CISA, are a plus.