Talent.com
Product Security Portfolio Lead

Product Security Portfolio Lead

HCLSoftwareBengaluru, Republic Of India, IN
20 days ago
Job description

HCLSW seeks a Director, Head of Product & Application Security. The successful candidate will lead the end to end Product Security portfolio within HCL Software. Maintains and strengthens the risk posture across the organization through discovery and remediation of product security vulnerabilities and supply chain security. Establishes and communicates strategic vision for the programs, and ensures they align with development goals and opportunities. Leads a dynamic group of Application Security professionals worldwide, with expectations to expand team over time.

  • This individual is also expected to contribute to additional tasks in a cross-functional security team, especially assisting the Threat Management team;
  • network and operating system vulnerability management;
  • continuous monitoring and reporting;

security incident handling, and participation in vendor and third-party application security reviews.

Key Responsibilities :

  • Develop and execute secure software development strategy in the form of Secure SDLC for the enterprise, including policies, standards and governance
  • Advance and execute a software supply chain security development strategy to include Identify security risk and vulnerabilities across client's supply chain partners as well and track implementation of corrective action plans by supply chain partners
  • Identify and manage risks involved with use the of AI within products and within the development of products
  • Manage Product Risk management and risk profiling
  • Lead the updating of the Secure Engineering Framework.
  • Manage the Vulnerability and Penetration Testing Team
  • Manage relationships with multiple 3rd party penetration testing vendors
  • Oversee the security portion of release management
  • Manage Product Security incident response program and team
  • Make data-based decisions and considers measurable metrics as part of the initiative
  • Consult with Development, Operations and Product groups on technical security issues.
  • Closely partner with PISOs, Development Leads to integrate security tool automation such as SAST, DAST, Container Analysis and other security tools
  • Directly engage development leaders to understand their challenges, roll-up sleeves when needed and understand / address their issues at a technical level
  • Lead Comprehensive Penetration Testing Activities, to include both staff and vendor relationships
  • Manage Delivery of Developer Security Training
  • Key Skills :

  • Proven ability to define strategic visons and lead team through execution.
  • Strong understanding of AI, LLMs and other AI technology
  • Strong planning, organizational, and leadership skills, including the ability to motivate teams, set strategic vision and approach, and resolve conflict.
  • Proven ability to learn, evaluate, and adapt to new technologies and tools.
  • SecDevOps, or DevSecOps, process framework experience.
  • Ability to build a strong network, both inside and outside the organization.
  • Excellent written and verbal communication skills, and ability to present ideas to all organizational levels.
  • Ability to work in a dynamic environment, managing multiple initiatives and commitments simultaneously with tight deadlines and changing priorities.
  • Flexibility to contribute as needed, even in areas not tightly mapped to stated responsibilities.
  • Mandatory Qualifications

  • Experienced people manager with 5-10+ years’ combined experience in application development, application security, vulnerability management, and / or network security.
  • Strong working knowledge of secure coding principles, practices, and frameworks such as OWASP Top Ten and SANS 20 Critical Security Controls.
  • Hands-on experience with application security and vulnerability management tools.
  • Working knowledge of comprehensive information security principles and practices.
  • Bachelor of Science in Computer Science or related field required. Master of Science in Information Security or related field preferred.
  • Desirable Certifications

  • CISSP, CSSLP, CISM, CISA, CEH, GPEN, GWAPT, Hyperscaler certifications
  • Create a job alert for this search

    Product Lead • Bengaluru, Republic Of India, IN

    Related jobs
    • Promoted
    Product Manager - Cyber Security Domain

    Product Manager - Cyber Security Domain

    SYD.co.inBangalore
    The client's Attack Surface Monitoring (ASM) productis used by enterprises globally to identify, monitor, and secure their external attack surface. It enables organisations to discover shadow a...Show moreLast updated: 30+ days ago
    • Promoted
    Module Lead

    Module Lead

    IDfyBengaluru, Karnataka, India
    IDfy is Asia’s leading TrustStack, trusted by the best, with global expertise and enterprise-grade tech.We’re solving trust challenges, making compliance easy, fraud detection smarter, and onboardi...Show moreLast updated: 21 days ago
    • Promoted
    Director / Product Specialist - Cyber Security & Customer Experience Platform

    Director / Product Specialist - Cyber Security & Customer Experience Platform

    Anlage Infotech (I) Pvt. Ltd.Bangalore
    Director Product Specialist - Cybersecurity & Customer Experience Platforms Location : Bangalore / : 20 - 27 years ...Show moreLast updated: 30+ days ago
    Senior Product Security Offensive Engineer

    Senior Product Security Offensive Engineer

    iManageBengaluru, Karnataka, IN
    Quick Apply
    We offer a flexible working policy that supports the health and well-being of our iManage employees.As an organization, we value collaborating and learning from our peers in person, while providing...Show moreLast updated: 13 days ago
    • Promoted
    Lead Plant Security

    Lead Plant Security

    Tata ElectronicsHosur, Tamil Nadu, India
    Head of Security (Corporate) TEPL.Electronics Manufacturing Services, Semiconductor Assembly & Test, Semiconductor Foundry, and Design Services. Established in 2020 as a greenfield venture of the Ta...Show moreLast updated: 21 days ago
    • Promoted
    • New!
    Lead Data Scientist

    Lead Data Scientist

    KenvueVadigenhalli, Karnataka, India
    Kenvue is currently recruiting for a : .At Kenvue , we realize the extraordinary power of everyday care.Built on over a century of heritage and rooted in science, we're the house of iconic brands - ...Show moreLast updated: 8 hours ago
    • Promoted
    Pluralsight - Product Security Engineer - SAST / DAST

    Pluralsight - Product Security Engineer - SAST / DAST

    PluralsightBangalore
    Job Description : The Product Security Engineers work closely with engineering teams to secure our Pluralsight platform.They will work on various Secure SDL programs ...Show moreLast updated: 30+ days ago
    Product Security - Practice Head

    Product Security - Practice Head

    Saaki Argus & Averil ConsultingBangalore Rural, Karnataka, India
    Quick Apply
    Our client is a leading Engineering & R&D company, having presence globally.Product Security - Practice Head.Bangalore, Pune (Work from Office). Understand client pain points and provide pro...Show moreLast updated: 30+ days ago
    • Promoted
    Product Security Engineer II

    Product Security Engineer II

    FICOBengaluru, Karnataka, India
    Join our world-class team today and fulfill your career potential!.As a Product Security Engineer II in Cyber Security, you will be supporting security governance for a wide set of customer-facing ...Show moreLast updated: 30+ days ago
    • Promoted
    Cybersecurity Product Specialist

    Cybersecurity Product Specialist

    FICOBengaluru, Republic Of India, IN
    Join our world-class team today and fulfill your career potential!.As a Product Security Engineer II in Cyber Security, you will be supporting security governance for a wide set of customer-facing ...Show moreLast updated: 30+ days ago
    • Promoted
    Product Manager - Cyber Security

    Product Manager - Cyber Security

    HyreSnapBangalore
    Description : Responsibilities : - Lead the product roadmap and vision for BeVigil, aligning with enterpris...Show moreLast updated: 18 days ago
    • Promoted
    Product Security Specialist - SAST / DAST

    Product Security Specialist - SAST / DAST

    Nazztec Private LimitedBangalore
    Job Title : Product Security Specialist Job Type : Permanent Work Mode : Hybrid (Bangalore / Pune) Show moreLast updated: 30+ days ago
    • Promoted
    Product Security Engineer Ii

    Product Security Engineer Ii

    FICOBengaluru, Republic Of India, IN
    Join our world-class team today and fulfill your career potential!.As a Product Security Engineer II in Cyber Security, you will be supporting security governance for a wide set of customer-facing ...Show moreLast updated: 30+ days ago
    • Promoted
    Application Security Manager (Technical Lead)

    Application Security Manager (Technical Lead)

    PearsonBengaluru, Karnataka, India
    This job is with Pearson, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly.At Pearson, we a...Show moreLast updated: 8 days ago
    • Promoted
    Product Sales Specialist (Cyber Security)

    Product Sales Specialist (Cyber Security)

    airtelBengaluru, Karnataka, India
    Business Development experience, able to work with Sales teams to generate opportunities for Security Product offerings.Design, Presents, demonstrates the Network Architecture for the Security doma...Show moreLast updated: 30+ days ago
    • Promoted
    Application Security Leadership Executive

    Application Security Leadership Executive

    HCLSoftwareBengaluru, Republic Of India, IN
    Director, Head of Product & Application Security.The successful candidate will lead the end to end Product Security portfolio within HCL Software. Maintains and strengthens the risk posture across t...Show moreLast updated: 20 days ago
    • Promoted
    Information Security Program Lead

    Information Security Program Lead

    NaviBengaluru, Republic Of India, IN
    At Navi, the InfoSec team safeguards our digital ecosystem - ensuring the confidentiality, integrity, and availability of critical systems and data. We lead the charge on cyber risk management, regu...Show moreLast updated: 10 days ago
    • Promoted
    • New!
    Lead Solution Architect

    Lead Solution Architect

    KenvueDoddaballapura, Karnataka, India
    Kenvue is currently recruiting for a : .At Kenvue , we realize the extraordinary power of everyday care.Built on over a century of heritage and rooted in science, we're the house of iconic brands - ...Show moreLast updated: 8 hours ago