As a Product Security and Privacy Architect, you will support product teams in adopting and implementing HID's security and privacy program, and define corporate wide security and privacy requirements, controls, and standards.
Requirements
- Leads day-to-day security/privacy architecture governance, escalates and obtains approval from the Chief Product Security & Privacy Architect as required.
- Define corporate wide security and privacy requirements, controls, and standards.
- Define required training content.
- Define paved roads/security and privacy-by-design patterns and libraries.
- Lead development of AI-enabled PSP Architecture capabilities: define use cases, requirements, and success criteria.
- Own the threat modeling framework and quality bars.
- Run/approve security & privacy architecture reviews.
- Lead audit/assessment planning, evidence of expectations, and defensibility.
- Responsible for tooling selection and integration related to security & privacy architecture domain.
- Architect for compliance, analyze new regulations and standards to identify gaps in the platform's capabilities, standards, and controls.
- Assess New Acquisitions Architecture and contribute to due diligence on a needed basis.
- Provide recommendations for risk acceptance and exception requests.
- Provide input on tooling strategy and integration guidance for non-architecture related domains.
- Provide guidance on security requirements for supply chain tooling, pipeline architecture, and associated standards.
- Validate that platform architecture enables enforcement of PSP security controls.
- Provide expert input on exploitability, attack paths, and mitigation options during Incident handling process
- Provide guidance on true risk vs noise for security tool outputs and penetration tests.
- Provide subject-matter depth during training delivery: advanced Q&A, edge cases, Offer office hours or follow-ups for complex topics
- Technical Skills: Experience contributing to at least one Secure Software Development Lifecycle (SSDL) program, either as a security architect, security champion, or similar role.
Benefits
- Generous Paid Time Off
- 401k Matching
- Retirement Plan
- Visa Sponsorship
- Four Day Work Week
- Generous Parental Leave
- Tuition Reimbursement
- Relocation Assistance