Lead a team dedicated to embedding security within products and ensure products are secure by design and compliant with security standards and regulations.
Partner with the Product Owner, Technical Product Owner, and Engineering Lead to advocate for and influence security measures within product development.
Conduct comprehensive threat modelling to identify potential threats and vulnerabilities and perform detailed risk assessments.
Develop and implement secure design principles and secure coding practices for development teams.
Lead regular security testing including static and dynamic analysis and penetration testing; evaluate and prioritize vulnerability fixes and eliminate false positives.
Ensure products comply with relevant security standards and regulations; maintain and update documentation and evidence of compliance and support audits.
Develop and maintain product-specific incident response plans and provide expert support to the SOC for incident management.
Continuously improve security practices and processes within the product development lifecycle and stay updated with latest security threats and technologies.
Requirements
A degree in Computer Science, Cybersecurity, Information Technology, or a related field.
Relevant cybersecurity certifications such as CISSP, CISM, CEH, or equivalent preferred.
10-15 years of experience in cybersecurity or related fields.
At least 5 years of specific experience in product security, ideally in FinTech related roles.
Proven leadership skills with a minimum of 3-5 years in a managerial role, overseeing cybersecurity teams or projects.
In-depth knowledge of cybersecurity principles, secure coding, vulnerability management and risk assessment.
Proficiency in modern cloud technologies (AWS, Azure, GCP), containerization (Docker), and orchestration (Kubernetes).
Strong understanding of serverless computing, API security, OS hardening, SDLC and network security.
Strong analytical skills to analyze and mitigate security risks and vulnerabilities.
Effective collaboration skills to work with cross-functional teams.
Commitment to staying updated with the latest security trends and technologies.
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.