跳转至内容

Director, Product Security Strategy and Enablement

地点:美国,乔治亚州,亚特兰大

地址: 1 - Corp Atlanta Ravinia, Three Ravinia Drive, 套房 100, 30346

Job number: 165603

Hiring Salary: USD 159,783.00 - 195,000.00 YEARLY

2482x804-技术工程
2482x804-技术工程

The Director, Product Security Strategy & Enablement is responsible for defining and operating the Product Security operating model and driving portfolio-level execution across the department. This leader translates Product Security strategy into scalable processes, governance, and execution — providing portfolio-level structure, visibility, and enablement so that work is prioritized, tracked, and reported consistently. Through standardization, automation, and AI-enabled capabilities, this role enables predictable delivery and measurable risk reduction across the program.

This position sits within a unified Product Security department — established to address an accelerating, AI-driven threat landscape with enterprise-wide scope across corporate and hotel-managed environments. Reporting to the Head of Product Security, this role provides the connective operating discipline across the Vulnerability Management, Exposure Management, Application Security, and Remediation and Response functions, ensuring the organization operates cohesively as a whole rather than as separate workstreams.

 

Your Day to Day

  • Set and operationalize Product Security strategy across people, process, and tooling — defining the roadmap, setting OKRs, and running planning, prioritization, and review cadences that translate strategy into execution.
  • Establish and operate the Product Security operating model — including documented processes, decision forums, decision rights, execution standards, and governance cadences across all workstreams.
  • Provide portfolio-level structure and executive visibility into outcomes — ensuring work across Vulnerability Management, Exposure Management, Application Security, and Remediation and Response is prioritized, tracked, and consistently reported through KPIs, leadership updates, and monthly and quarterly business reviews.
  • Own portfolio, budget, and vendor management — including budget forecasting, the security tool portfolio, renewals, statements of work, and vendor performance — in partnership with Finance and Procurement.
  • Define, enforce, and mature secure SDLC governance — establishing mandatory security requirements and quality gates across planning, design, build, release, and operate; governing threat modeling standards and integration; and managing exceptions, risk acceptances, compensating controls, and their expirations.
  • Lead continuous compliance and audit enablement for product-security-related controls — coordinating evidence, embedding and monitoring controls, and driving remediation of audit findings to closure.
  • Govern large and/or complex remediation programs — providing program-level structure, milestones, and escalation paths — and enable scale and efficiency through process standardization, automation, and AI-enabled capabilities that reduce manual effort and increase execution consistency.
  • Lead, coach, and develop the portfolio, programs, and compliance functions while partnering with Product Security leaders and cross-functional stakeholders across ETS, the broader Product and Technology organization, business information security officers, centers of excellence, Finance, and Procurement to align strategy, delivery, and measurement.


 

What We Need From You

  • 10+ years of progressive security experience across multiple disciplines, technologies, or processes, including 5+ years establishing organizational structure and managing subordinate teams.
  • Substantial leadership-level experience across product and application security domains — vulnerability management, application and API security, exposure and attack-surface management, and remediation operations — with a thorough understanding of the software and system development lifecycle.
  • Expert in secure SDLC governance, security controls, and quality gates, with familiarity across the full lifecycle tooling ecosystem including SAST, SCA, DAST, secrets detection, API security, cloud posture, and attack-surface and asset-management tooling.
  • Demonstrated experience defining and operating an operating model — processes, governance, decision forums, and execution cadence — across multiple functions or workstreams, with strong portfolio and program management capability from conception through implementation (milestones, risks, success criteria).
  • Proven experience owning budgets, tool portfolios, statements of work, vendor contracts, and vendor performance, with general knowledge of budgeting, cost estimation, and scheduling; skilled at defining KPIs and metrics and driving maturity improvement with strong executive reporting.
  • Working knowledge of compliance and audit enablement for product-security-related controls (e.g., PCI, SOX), including evidence coordination and control monitoring, and familiarity applying automation and AI-enabled capabilities to scale security workflows.
  • Demonstrated effectiveness in executive presentation, escalation management, and leadership by influence — able to build relationships with senior technology and business leaders, adapt to multiple management styles, and communicate highly technical information clearly across all levels of the organization.
  • Proven change agent and team builder — result-focused, action-oriented, and able to manage changing priorities in a highly dynamic environment while leading, developing, and inspiring multi-disciplined teams.


 

 Travel - 10% 

 

Location - Atlanta, GA: Our hybrid work structure is an expectation of three (3) days a week in office. This expectation may be adjusted to evolve with the changing needs of the business.

 

我们是谁

在洲际酒店集团及度假村,我们共同努力在全球范围内提供真正的优质服务。 洲际酒店集团在全球设有公司办事处和超过 6,000 个酒店目的地,在洲际酒店集团工作是拓宽您视野的最佳方式。 您将体验到我们独特的文化和出色的同事,他们将为您提供支持和激励。 无论您处于职业生涯的哪个阶段,无论您想要实现什么目标,IHG 都为您提供众多企业机会供您选择。

近年来,我们对公司进行了变革。我们雄心勃勃,致力于提高业绩并持续关注增长,从而成为宾客和业主喜爱的首选酒店公司。

我们的核心业务是酒店业,我们重视联系,团结帮助我们培养一种独特的归属感,同时也提高了工作效率。这就是为什么在洲际酒店集团,我们为同事提供灵活性和平衡性——以混合方式工作,将办公室和远程工作相结合。我们认识到每个角色都是不同的,这就是为什么领导者与团队合作来确定他们如何以及何时合作。

我们提供各种礼遇,旨在帮助您享受最好的工作生活。 这些措施包括我们众多物业提供的令人印象深刻的发展空间折扣、全年的充电日和志愿服务日。 通过我们的 myWellbeing 框架,我们致力于支持您的健康、生活方式和工作场所的福祉。 我们提供一种独特且包容的文化,在这里,总有自我空间可以归属、成长和发挥作用。

我们的使命是欢迎所有人并创建包容性的团队,我们寻求同存异并鼓励同事全身心投入工作。 洲际酒店集团酒店及度假村为求职者和员工提供平等的就业机会,不分种族、肤色、宗教、性别、性取向、性别认同、国籍、受保护的退伍军人身份、残疾或任何其他受适用法律保护的类别。 我们提倡信任、支持和接受的文化。 始终欢迎不同的背景、经历和观点。

虽然不完全符合所有要求,但仍然认为自己非常适合这份工作? 除非您点击 "申请 "按钮,否则我们永远不会知道。 今天就与我们一起开始您的旅程。

重要信息

  • 列出的薪资范围是从最低到最高的薪资范围,我们真诚地相信在发布此职位时我们会支付该薪资。 我们最终支付的金额可能会高于或低于公布的范围,并且该范围将来可能会进行修改。 员工在薪酬范围内的薪酬位置将基于多种因素,包括相关教育、资格、证书、经验、技能、资历、地理位置、绩效、轮班、旅行要求、基于销售或收入的指标以及业务或组织需求。
  • 任何薪酬金额,除非其被改变、既得且可确定,否则均不被视为工资或补偿。 任何奖金、佣金或可分配给特定员工的其他形式补偿的金额和可用性均由公司自行决定,除非并直至支付为止,公司可根据法律自行决定进行修改。
  • EEO Is The Law - click here for more information about Equal Opportunity Employer Minorities/Women/Protected Veterans/Disabled/Sexual Orientation/Gender Identity.
  • 如果您在申请过程中需要合理的住宿,请点击此处
  • IHG 不接受人事或招聘机构的申请、问询或未经请求的简历。 请点击此处查看我们的代理政策。
  • 如果您是华盛顿州居民或正在申请华盛顿州的职位空缺,请点击此处阅读适用的礼遇。

Hiring Salary: USD 159,783.00 - 195,000.00 YEARLY

返回页首