Product Security Manager at Drivemode leading product security program and embedding secure practices. Collaborating cross-functionally to ensure secure product lifecycle.
Responsibilities
Define and maintain product security policies, secure development lifecycle, and product security controls.
Identify, assess, and prioritize product security risks.
Lead TARA/threat modeling, vulnerability management, SBOM/OSS controls, and secure development practices.
Support PSIRT activities by ensuring appropriate triage, remediation, and engineering response from Drivemode teams.
Define and implement controls to meet and demonstrate compliance with ISO/SAE 21434, UN R155/R156, and internal governance and security requirements.
Deliver regular security posture reports, KPIs, and maintain training for engineering security champions.
Define and execute product security strategy and roadmap; set policy, risk appetite, and release acceptance criteria.
Embed secure-by-design practices across engineering: lead TARA/threat modeling, security design reviews, and security gates (CI/CD first).
Own SBOM/OSS controls and supplier security requirements; ensure evidence for audits and acceptance.
Run the product vulnerability program and coordinate remediation and evidence handover to other departments; support internal triage and verification.
Define patch/update policy and oversee secure update delivery for releases and OTA where applicable.
Report product security posture and KPIs to leadership; run the security champions and training strategy to up-skill engineering teams.
Requirements
7+ years in security roles with more than three years in management/lead capacity.
Proven experience leading product security programs, TARA/threat modeling ownership, SBOM/OSS management, and vulnerability triage coordination.
Experience with security and compliance audits.
Strong stakeholder skills and demonstrated ability to embed security practices into agile product teams.
Cybersecurity Engineer focused on threat monitoring and incident response for Verizon's network security. Collaborating on security architecture and vulnerability management across multiple locations.
Senior Manager of Application Security leading initiatives to protect applications at Nordstrom through strategic leadership and AI - driven tooling. Collaborating with engineering to ensure secure software development practices.
Information Security Engineer responsible for deploying and supporting security tools across cloud and on - premise systems. Collaborating with IT to mitigate security risks in a hybrid work environment.
Casual Retail Security Officer for MSS Security ensuring safety at Tweed Mall in Tweed Heads. Responsible for patrols, incident response, and customer service.
Financial security advisor at Desjardins developing client relationships and selling life and health insurance products. Focusing on customer satisfaction and personalized financial solutions.
Principal Information Security Consultant at Westpac focusing on security protocols and employee benefits for staff. Hybrid role centrally located with opportunities for professional development and employee perks.
Engineer supporting secure development lifecycle processes for product lines in the energy sector. Collaborating with R&D on security requirements and compliance audits.
Automation Oversight Engineer providing oversight of compliance in automated device configurations for Comcast Business. Managing configuration checks and reporting, ensuring reliable oversight and improvement strategies.
Principal Systems Engineer - Cybersecurity role in protecting our nation's products as part of Integrated Platform Solutions team. Develop solutions utilizing RMF, Anti - Tamper, Software Assurance, and more.
Agent de Sécurité assurant la sécurité des usagers du réseau de transport TBM. Rattaché au Manager de Proximité Sûreté, garantissant la qualité de service public de transport en commun.