Experienced Lead of Product Secure Development Lifecycle and Regulatory Compliance, Principal
San Diego, CAPosted Jul 8, 2026
Skip to main contentOur CompanyOur BusinessSearch for JobsJoin Talent NetworkFAQsProfileEnglishSign InSingle PositionView All JobsExperienced Lead of Product Secure Development Lifecycle and Regulatory Compliance, PrincipalSan Diego, California, United States of America No longer accepting applications.Job ID3093659We are seeking an experienced Product Security engineer to provide technical leadership and strength of execution across product security lifecycle for a diverse portfolio of products. This role will drive secure‑by‑design practices, product security risk reduction, and ensure that products and security processes meet both cybersecurity regulations across the globe and major international standards on cyber and product security.The ideal candidate combines deep hands‑on product security expertise, regulatory compliance experience, and strong ability to drive cross‑functional execution, with proven ability to work effectively with engineering, product management and customers.Key Responsibilities:Product Security LeadershipTranslate applicable cybersecurity regulations and international cyber and product security standards into actionable product and engineering requirements.Define, deploy, and continuously improve product security processes and controls, effectively and efficiently aligned with applicable cyber security regulations around the world and related international standards.Serve as product security compliance authority, advising engineering, system architecture, and product teams on risk, mitigation strategies, and design tradeoffs.Security Engineering & Risk ManagementPerform or guide threat modeling, security risk assessments for complex systems.Drive secure design reviews, secure code review, vulnerability assessment, and security testing activities.Provide expertise in one or more security domains, including hardware, trusted execution environments, exploit mitigation, or cloud/application security.Technical Mentorship & Organizational InfluenceMentor junior engineer in threat analysis, secure design and implementation, and advanced security techniques.Lead by influence across organizational boundaries rather than direct authority.Represent product security perspectives in reviews with senior leadership and executive stakeholders.Required Technical ExpertiseApplicants must have strong experience in product security and regulatory compliance, such as EU’s Cyber Resilience Act (CRA).Proven experience making products and product security processes compliant with cybersecurity regulations and international standards is required.Experience leading or significantly influencing secure development lifecycle initiatives in larger organizations is highly preferred.In addition, deep expertise in one or more of the following areas:Threat modeling and security risk assessmentSecure code review, static/dynamic analysis, and vulnerability assessmentHardware securityPlatform securityTrusted execution environments (TEE)Exploit mitigation techniquesVulnerability management, including third‑party and open‑source componentsSupply‑chain securityLeadership & Management SkillsDemonstrated leadership of medium‑size engineering teams or major cross‑functional initiatives across diverse cultures and geographic locations.Strong communication, collaboration, execution, and influencing skills, with the ability to work effectively with:Senior and executive managementProduct management and development teamsCompliance and operations stakeholdersAbility to balance technical depth with pragmatism, business impact, and product timelines.QualificationsBachelor’s degree in Computer Science, Computer Engineering, Electrical Engineering, or a related field (advanced degree preferred).Extensive industry experience (7+ years) in product security.