Director of Software Security
Core
Lead enterprise DevSecOps strategy, secure software architecture, and regulatory compliance (CMMC, NIST) to embed security throughout the software lifecycle.
Role type
Director of Software Security
Builds
Secure CI/CD pipelines, cloud-native architectures, and enterprise application security programs
Domain
Cybersecurity, DevSecOps, Cloud Security, Regulatory Compliance
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
DevSecOps strategy, Secure SDLC, Cloud-native architecture, Regulatory compliance (CMMC/NIST/ISO), Threat modeling, Supply chain security, Executive communication
Preferred skills
SAST/DAST/SCA tool expertise, Kubernetes/Docker security, Zero Trust principles, CISSP/CISM certifications
Technologies
AWS, Azure, Google Cloud, IBM Cloud, Jenkins, GitHub Actions, Kubernetes, Docker
Responsibilities
Define and execute enterprise DevSecOps strategy, Lead compliance initiatives for CMMC 2.0 and NIST frameworks, Secure DevOps pipelines across cloud platforms, Build and scale AppSec program, Lead teams of AppSec and DevSecOps engineers, Report security posture to executive leadership
Seniority
Director, strategic leadership & team management