Director of Engineering - Application, Cloud and Offensive Security

Snowflake Snowflake · Data AI · WA-Bellevue, United States · Engineering

Director of Engineering for Application, Cloud, and Offensive Security at Snowflake, focusing on securing the AI Data Cloud platform and its AI products against evolving threats in an AI-accelerated landscape. This role involves defining security strategy, building high-performing teams, leading offensive security programs, and embedding security into AI products and cloud architecture.

What you'd actually do

  1. Define and execute the security strategy across three core pillars: application security, cloud security assurance, and offensive security (including the red team program), setting direction and driving measurable outcomes across all three pillars.
  2. Build and develop a high-performing security engineering organization, hiring top talent and creating a culture of rigor, ownership, and continuous improvement
  3. Drive the offensive security program including red team operations, adversarial simulations, and proactive threat modeling to stay ahead of emerging attack vectors in an AI-accelerated threat landscape
  4. Partner closely with engineering, product, and infrastructure leadership to embed security into Snowflake's AI products and cloud architecture from the ground up, not as an afterthought
  5. Own the cloud security assurance function, ensuring Snowflake's cloud environment meets the security standards expected by enterprise customers and regulators worldwide

Skills

Required

  • 12+ years of progressive experience in security engineering
  • significant tenure in leadership roles overseeing multi-domain security programs
  • Deep expertise across at least two of the three pillars: application security, cloud security, or offensive security, with working knowledge across all three
  • Proven track record building and scaling high-performing security engineering teams in a fast-paced enterprise technology environment
  • Strong command of cloud security architecture across AWS, Azure, or GCP, including cloud-native security controls, identity, and infrastructure security
  • Experience leading or overseeing a red team or offensive security program, with a clear understanding of adversarial tactics, techniques, and procedures (TTPs)
  • Exceptional ability to partner with product and engineering organizations, influencing secure-by-design practices and embedding security without creating velocity drag
  • Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent experience

Nice to have

  • Experience securing AI/ML workloads, large language model infrastructure, or AI-adjacent attack surfaces
  • Familiarity with security for multi-tenant cloud data platforms at enterprise scale
  • Industry certifications such as CISSP, OSCP, GREM, or equivalent
  • Contributions to industry security research, conference presentations, or open-source security tooling

What the JD emphasized

  • security strategy
  • application security
  • cloud security assurance
  • offensive security
  • red team program
  • high-performing security engineering organization
  • AI-accelerated threat landscape
  • AI products
  • cloud architecture
  • enterprise customers
  • regulators
  • security engineering
  • leadership roles
  • multi-domain security programs
  • application security
  • cloud security
  • offensive security
  • cloud security architecture
  • red team
  • offensive security program
  • adversarial tactics, techniques, and procedures (TTPs)
  • product and engineering organizations
  • secure-by-design practices