Sr. Director, Product Cyber Security (chief Product Security Leader)

Honeywell Honeywell · Industrial · Atlanta, GA +1

This role is for a Sr. Director of Product Cyber Security, leading teams focused on protecting the Buildings Automation (BA) business. The leader will be responsible for driving comprehensive product cyber security programs, integrating security into the Secure Software Development Lifecycle (SSDLC), and addressing advanced cyber-threats. The role requires expertise in cloud, industrial systems, and AI-focused security assurance, with a strong preference for AI experience. The individual will work closely with engineering to ensure security mitigations are integrated into products and will develop automated approaches to identify and prevent vulnerabilities.

What you'd actually do

  1. Develop and drive programs to operationalize the security vision across the business with an emphasis on gaining measurable results.
  2. Deliver a range of security architecture and assurance activities as part of Honeywell’s Security Development Lifecycle.
  3. Develop and maintain a program that informs business unit and functional group leadership of the top security risks and overall security health of their products
  4. Work with engineering and other leaders to ensure security assurance activities occur during the software development lifecycle and appropriate security mitigations are integrated into the product.
  5. Develop and drive approaches to identify and prevent security vulnerabilities earlier in the development process in an automated scalable manner and work with engineering to deploy and utilize these approaches.

Skills

Required

  • cloud architecture
  • Industrial control systems
  • firmware
  • cloud containerization strategies
  • AI experience
  • Computer Science degree or similar
  • navigating complex problems
  • root cause analysis
  • articulating and driving solutions
  • 15+ years of professional experience
  • 5+ years of management experience
  • 3+ years of experience in Penetration Testing
  • finding vulnerabilities in online services

Nice to have

  • Strong communications and influencing skills
  • Ability to solve complex issues and drive to completion
  • Expertise and thought leadership across all aspects of SSDLC
  • Experience multiple cloud environments (Azure, AWS, Google)
  • Deep understanding of development methodologies, developer tools and processes
  • Deep understanding of security vulnerabilities (device and cloud)
  • Understanding of security and privacy regulations and standards
  • Demonstrated experience dealing with security challenges in large, global organizations
  • Proven success delivering large, complex projects and programs
  • CISSP, CISM, CISA or other related credentials

What the JD emphasized

  • AI experience