跳到內容

Director, Product Security Strategy and Enablement

地點:美國,喬治亞州,亞特蘭大

地址: 1 - Corp Atlanta Ravinia, Three Ravinia Drive, 套房 100, 30346

Job number: 165603

Hiring Salary: USD 159,783.00 - 195,000.00 YEARLY

2482 × 804-技術工程
2482 × 804-技術工程

The Director, Product Security Strategy & Enablement is responsible for defining and operating the Product Security operating model and driving portfolio-level execution across the department. This leader translates Product Security strategy into scalable processes, governance, and execution — providing portfolio-level structure, visibility, and enablement so that work is prioritized, tracked, and reported consistently. Through standardization, automation, and AI-enabled capabilities, this role enables predictable delivery and measurable risk reduction across the program.

This position sits within a unified Product Security department — established to address an accelerating, AI-driven threat landscape with enterprise-wide scope across corporate and hotel-managed environments. Reporting to the Head of Product Security, this role provides the connective operating discipline across the Vulnerability Management, Exposure Management, Application Security, and Remediation and Response functions, ensuring the organization operates cohesively as a whole rather than as separate workstreams.

 

Your Day to Day

  • Set and operationalize Product Security strategy across people, process, and tooling — defining the roadmap, setting OKRs, and running planning, prioritization, and review cadences that translate strategy into execution.
  • Establish and operate the Product Security operating model — including documented processes, decision forums, decision rights, execution standards, and governance cadences across all workstreams.
  • Provide portfolio-level structure and executive visibility into outcomes — ensuring work across Vulnerability Management, Exposure Management, Application Security, and Remediation and Response is prioritized, tracked, and consistently reported through KPIs, leadership updates, and monthly and quarterly business reviews.
  • Own portfolio, budget, and vendor management — including budget forecasting, the security tool portfolio, renewals, statements of work, and vendor performance — in partnership with Finance and Procurement.
  • Define, enforce, and mature secure SDLC governance — establishing mandatory security requirements and quality gates across planning, design, build, release, and operate; governing threat modeling standards and integration; and managing exceptions, risk acceptances, compensating controls, and their expirations.
  • Lead continuous compliance and audit enablement for product-security-related controls — coordinating evidence, embedding and monitoring controls, and driving remediation of audit findings to closure.
  • Govern large and/or complex remediation programs — providing program-level structure, milestones, and escalation paths — and enable scale and efficiency through process standardization, automation, and AI-enabled capabilities that reduce manual effort and increase execution consistency.
  • Lead, coach, and develop the portfolio, programs, and compliance functions while partnering with Product Security leaders and cross-functional stakeholders across ETS, the broader Product and Technology organization, business information security officers, centers of excellence, Finance, and Procurement to align strategy, delivery, and measurement.


 

What We Need From You

  • 10+ years of progressive security experience across multiple disciplines, technologies, or processes, including 5+ years establishing organizational structure and managing subordinate teams.
  • Substantial leadership-level experience across product and application security domains — vulnerability management, application and API security, exposure and attack-surface management, and remediation operations — with a thorough understanding of the software and system development lifecycle.
  • Expert in secure SDLC governance, security controls, and quality gates, with familiarity across the full lifecycle tooling ecosystem including SAST, SCA, DAST, secrets detection, API security, cloud posture, and attack-surface and asset-management tooling.
  • Demonstrated experience defining and operating an operating model — processes, governance, decision forums, and execution cadence — across multiple functions or workstreams, with strong portfolio and program management capability from conception through implementation (milestones, risks, success criteria).
  • Proven experience owning budgets, tool portfolios, statements of work, vendor contracts, and vendor performance, with general knowledge of budgeting, cost estimation, and scheduling; skilled at defining KPIs and metrics and driving maturity improvement with strong executive reporting.
  • Working knowledge of compliance and audit enablement for product-security-related controls (e.g., PCI, SOX), including evidence coordination and control monitoring, and familiarity applying automation and AI-enabled capabilities to scale security workflows.
  • Demonstrated effectiveness in executive presentation, escalation management, and leadership by influence — able to build relationships with senior technology and business leaders, adapt to multiple management styles, and communicate highly technical information clearly across all levels of the organization.
  • Proven change agent and team builder — result-focused, action-oriented, and able to manage changing priorities in a highly dynamic environment while leading, developing, and inspiring multi-disciplined teams.


 

 Travel - 10% 

 

Location - Atlanta, GA: Our hybrid work structure is an expectation of three (3) days a week in office. This expectation may be adjusted to evolve with the changing needs of the business.

 

我們是誰

在洲際酒店集團酒店及度假村,我們共同努力在全球範圍內提供真正的友善待客之道。 洲際酒店集團在全球設有公司辦公室和 6,000 多個酒店目的地,在 IHG 就職是開闊您視野的完美途徑。 您將體驗我們獨特的文化和傑出的同事,他們將支持和激發您。 無論您處於職業生涯的哪個階段,無論您想要實現什麼目標,洲際酒店集團都有大量企業機會可供選擇,總有您專屬的客房。

近年來,我們已經改變了我們的公司。我們雄心勃勃,致力於提高業績並持續專注於成長,從而成為房客和業主喜愛的首選酒店公司。

我們是一家酒店業務的核心,重視聯繫,並且在一起有助於我們培養獨特的歸屬感,同時也支持生產力。這就是為什麼 IHG,我們為同事提供靈活性和平衡的原因 — 以混合方式工作,集體地融合辦公室和遠程工作。我們認識到每個角色都是不同的,這就是為什麼領導者與團隊合作來決定他們如何和何時進行合作的原因。

我們提供各種禮遇,旨在幫助您過上最好的工作生活。 其中包括我們眾多酒店的令人印象深刻的客房折扣、全年充電日和志願服務日。 通過我們的 MyWellbeing 框架,我們致力於支持您的健康,生活方式和工作場所的福祉。 我們提供獨特且包容的文化,總有您專屬的客房可以歸屬、成長並有所作為。

我們的使命是歡迎所有人,創造包容性團隊,頌揚與眾不同,鼓勵同事在工作中全力以赴。 IHG ®洲際酒店集團為申請人和員工提供平等的就業機會,不考慮種族、膚色、宗教、性別、性取向、性別認同、國籍、受保護的退伍軍人身份、殘疾或任何其他受適用法律保護的類別。 我們促進信任、支持和接受的文化。 始終歡迎不同的背景、經驗和觀點。

不太滿足每一項要求,但仍然相信您非常適合這份工作? 除非您點擊“應用”按鈕,否則我們永遠不會知道。 今天就和我們一起開始您的旅程。

重要資訊

  • 列出的薪酬範圍是從最低到最高的薪酬表,我們誠信我們會在發布時為此職位支付。 我們最終可能會支付比發佈範圍更多或少,並且範圍可能在將來會被修改。 僱員在薪酬範圍內的薪酬位置將取決於多個因素,包括相關的教育、資格、認證、經驗、技能、資深、地理位置、績效、輪班、旅行要求、銷售或收入為基礎的指標,以及業務或組織需求。
  • 在賺取積分、歸屬和可確定之前,任何薪資都不被視為工資或報酬。 可分配給特定員工的任何獎金、佣金或其他形式的報酬的金額和可用性仍由公司全權決定,除非及直至支付為止,且公司可在符合法律的情況下全權決定修改。
  • EEO Is The Law - click here for more information about Equal Opportunity Employer Minorities/Women/Protected Veterans/Disabled/Sexual Orientation/Gender Identity.
  • 如果您在申請過程中需要合理的調整,請按此
  • IHG 不接受人員或招聘機構的申請,查詢或未經請求的 CV/簡歷。 請點擊此處了解我們的代理政策。
  • 如果您是華盛頓州居民或正在申請華盛頓州的職缺,請點擊此處閱讀適用的禮遇。

Hiring Salary: USD 159,783.00 - 195,000.00 YEARLY

返回頁首