Product Security Lead (Contract to hire )
Quick Overview
Job Description
Technical Lead, Product Security Program & Operations
Location :: Santa clara, CA
Contract to hire
Client :: Network Product Based
Client is seeking a deeply technical and operationally strategic Technical Lead, Product Security Program & Operations. In this role, you will serve as a core link between engineering groups, external security researchers, federal stakeholders, and executive leadership.
This is not a purely administrative role; it requires a strong technical background in network operating systems, exploit mechanics, and secure software development. You will drive the product security vulnerability lifecycle, lead threat modeling and penetration testing strategies for switch architecture, integrate security mechanisms into our software development lifecycle (SDLC), and ensure our federal cloud environments maintain an aggressive security posture.
Key Responsibilities
- Technical PSIRT, Vulnerability & Exploit Analysis
- 2. Advanced Penetration Testing & Switch Architecture Security
- 3. Secure SDLC & DevSecOps Engineering
- 4. Federal Cloud Security Administration & Infrastructure Monitoring
- 5. Customer Trust & Regulatory Compliance
Job Requirements & Qualifications
Technical Knowledge & Deep-Dive Expertise
● Security Vulnerabilities & Exploit Theory: Deep understanding of software vulnerabilities, exploit mechanics (e.g., buffer overflows, race conditions, logical bypasses, dependency vulnerabilities), cryptography, and modern mitigation techniques. Strong familiarity with standard frameworks including CVSS, CWE, OWASP Top 10, and MITRE ATT&CK.
● Networking & Switch Architecture: In-depth understanding of network switch architecture, composition, and management. Knowledge of network operating system internals (ideally Linux-based, such as Arista EOS), control plane protection, data plane forwarding, ASIC-level considerations, and protocols (e.g., BGP, OSPF, gRPC, SNMP).
● Secure Development & SDLC: Robust knowledge of modern software engineering methodologies, version control (Git), and CI/CD pipelines. Hands-on experience integrating and managing AppSec tools (SAST/DAST) and implementing Threat Modeling practices in an enterprise environment.
Experience & Operational Skills
● Experience: 7+ years of experience in Product Security, Software Security Engineering, PSIRT operations, or Advanced Cloud Security Administration.
● Cloud Infrastructure: Proven experience hardening enterprise/federal cloud spaces, specifically Google Workspace or major cloud providers (AWS/Google Cloud Platform), with an emphasis on access controls, logging, and audit logs.
● Compliance Standards: Familiarity with Federal, State, and Local compliance regulations (e.g., FedRAMP, NIST, FIPS).
● Communication: Exceptional ability to articulate highly technical security flaws and architectural concepts clearly to software developers, enterprise customers, and non-technical business executives alike.
Thanks,
Raja Prakash
Venturesoft.ai
Skills
Similar jobs
AISR SATOPS Technician with Security Clearance
SES Space & Defense · Tampa, United States
39 minutes agoSr. Distinguished Engineer - Enterprise Security
Early Warning Services, LLC · United States
54 minutes ago$248k - $330k/yrSenior Network Architect with Security Clearance
B/Core · Chantilly, United States
54 minutes ago$175k - $195k/yrSenior AWS Cloud Systems Operations Administrator with Security Clearance
Maximus Inc · San Antonio, United States
55 minutes ago$147k - $156k/yrSenior Red Hat Enterprise Linux (RHEL) Engineer with Security Clearance
Maximus Inc · Colorado Springs, United States
55 minutes ago$120k - $125k/yrSystems Administrator - Vulnerability Mitigation with Security Clearance
Leidos · Chantilly, United States
56 minutes ago$116.3k - $210.3k/yr