Job Details

ID #12329608
State Georgia
City Atlanta
Job type Permanent
Salary USD TBD TBD
Source COX Enterprises
Showed 2021-04-17
Date 2021-04-16
Deadline 2021-06-15
Category Security
Create resume

Senior Product Security Manager

Georgia, Atlanta, 30301 Atlanta USA

Vacancy expired!

Primary Location: 6305 Peachtree Dunwoody Rd, Atlanta, GA, USA

Division: Cox Communications Inc

Job Level: Manager/Senior Manager

Travel: No

Schedule: Full-time

Shift: Day Job

Requisition Number: 212066 Cox Communications is searching for a Product Security Senior Manager. This role is responsible for providing thought leadership for all products as part of Coxs product portfolio. This role will develop, socialize, and drive execution of the overall Product Security program for all generally available products. This program should be risk-based with a focus on security risk and revenue risk. The Product Security Sr. Manager will also provide security consulting for Coxs innovative product development teams, including but not limited to: Product, Strategy and New Growth, Engineering, Sales, etc. Strong technical expertise along with an up-to-date understanding of information security industry trends are foundational skills required for the Product Security Sr. Manager.

Responsibilities:
  • Build, implement, socialize, and manage the Product Security Program, including but not limited to product risk ranking, security testing schedule and program governance.
  • Provide product security expertise and leadership while defining and prioritizing product security enterprise initiatives.
  • Engage with other information security teams to create management action plans, as a result of product security threat models, penetration tests and other security testing/assessments.
  • Create and manage the product security risk assessment and risk response processes.
  • Actively participate in product security projects.
  • Provide input and support to product development teams throughout the product development lifecycle on a variety of product security requirements, including but not limited to: secure coding and configuration, software testing, third-party component management and security defect management.
  • Maintain up-to-date inventory entries for all products, including product lifecycle status, risk profile and relevant reviews conducted.
  • Maintain a close relationship with the technical product security testing team to deliver against the strategic priorities and projects.
  • Provide advice and insights into the maintenance of product security procedures, directives, and technology controls.
  • Assist with the design of a controls framework related to product security that provides the greatest amount of coverage while remaining scalable and efficient.
  • Lead third-party risk assessments, completed by the technical testing team.
  • Integrate the Product Security Program into the relevant stages of the product development lifecycle.
  • Ensure product development teams are adhering to product security requirements by performing design and architecture reviews, validating that information security artifacts are created and align with industry standards and regulations and performing risk assessments.
  • Assist with product development remediation and mitigation activities.
  • Escalate risk and issues to senior technology or company leadership, as needed.
  • Create and report on metrics to the product security steering committee and other business unit stakeholders.
  • Maintain current knowledge on existing security procedures, directives and technology controls including application testing, threat modeling and attack, penetration testing, data classification and handling.
  • Participate in industry working groups and provide insights back to product development teams on leading practices and regulations.
  • Perform project management and change management duties, as assigned.
  • Perform critical analysis and develop executive decision support content, as assigned.
  • Perform other duties and responsibilities, as assigned.

Qualifications:

Minimum:
  • 7+ years information security controls, information technology audit or security risk management. 5+ years of experienced required if candidate possesses an advanced degree.
  • Experience creating executive level presentations.
  • Experience creating business cases to obtain funding and resource approval.
  • 2+ years of management and leadership experience, including coaching, consensus building, and ability to effectively manage resources to address competing priorities.
  • Ability to manage cross functional teams to achieve desired business results.
  • Ability to translate a business agenda into technology terms and vice versa.
  • Excellent interpersonal, written and verbal communications skills; demonstrated ability to communicate highly technical concepts to non-technical audiences.
  • Strong understanding and experience with information security technologies.
  • Ability to adjust to multiple demands, changing priorities, ambiguity, and rapid change, while multitasking effectively.
  • Ability to coordinate multiple teams in accomplishing process review and improvement.

Preferred:
  • Big Four audit/consulting background.
  • Bachelors degree in Computer Science or a related field.
  • Masters Degree/Advanced Degree
  • Telecom/Cable industry experience
  • Product Security experience.
  • Professional information security certification (CISSP, CCSP, CSSLP, GICSP, GWAPT, GWEB, etc).
#LI-102

COMPANY OVERVIEW: Cox Communications and its subsidiaries are Equal Opportunity Employers. We have a tradition of encouraging a wide diversity of talents through a broad range of hiring practices. Please note those individuals submitting resumes online or by mailing a resume are not considered an applicant for employment until a signed employment application form is completed, usually at the time of interview. For more information about Cox Communications and its subsidiaries, please click here www.cox.com, www.coxmedia.com, www.coxbusiness.com. Statement to ALL Third-Party Agencies and Similar Organizations: Cox Communications accepts resumes only from agencies with which we formally engage their services. Please do not forward resumes to our applicant tracking system, Cox Communications employees, or send to any Cox Communications facility. Cox Communications is not responsible for any fees or charges associated with unsolicited resumes. Who We Are

About Cox Communications Cox Communications is committed to creating meaningful moments of human connection through broadband applications and services. The largest private telecom company in America, we proudly serve six million homes and businesses across 18 states. Were dedicated to empowering others to build a better future and celebrate diverse products, people, suppliers, communities and the characteristics that makes each one unique.

About Cox We are the Cox family of businesses. Weve been making our mark since 1898 by building and evolving world-class businesses, staying true to our values, and encouraging top talent to always look for growth and impact while building a career with us. Our primary divisions - Cox Communications and Cox Automotive - are driving a new wave of innovation, powering smart cities with powerhouse broadband communications and pioneering greener, more progressive transportation alternatives for individuals and fleet operators. Were also expanding into new spaces like cleantech and healthcare to rev up our momentum toward building a better future for the next generation. Were looking for the talent today who will be our leaders tomorrow. Sound intriguing? Learn more about where we are today, where we hope youll be going with us, and the common purpose that unites us at coxenterprises.com. Cox is an Equal Employment Opportunity employer - All qualified applicants/employees will receive consideration for employment without regard to that individuals age, race, color, religion or creed, national origin or ancestry, sex (including pregnancy), sexual orientation, gender, gender identity, physical or mental disability, veteran status, genetic information, ethnicity, citizenship, or any other characteristic protected by law. Statement to ALL Third-Party Agencies and Similar Organizations: Cox accepts resumes only from agencies with which we formally engage their services. Please do not forward resumes to our applicant tracking system, Cox employees, Cox hiring manager, or send to any Cox facility. Cox is not responsible for any fees or charges associated with unsolicited resumes.

Vacancy expired!

Subscribe Report job