At JFrog, we’re reinventing DevOps to help the world’s greatest companies innovate -- and security is a core part of our mission. Our team of industry-leading software security experts are true pioneers, constantly pushing the boundaries with original research and technology innovation. JFrog is a special place with a unique combination of brilliance, spirit and just all-around great people. Thousands of customers, including the majority of the Fortune 100, trust JFrog to manage, accelerate, and secure their software delivery from code to production -- a concept we call “liquid software.” Wouldn't it be amazing if you could join us in our journey?
We are looking for an experienced Application and Cloud Director of Product Security to lead and manage our product security initiatives across our application and cloud product portfolio. The successful candidate will be responsible for defining, developing, and executing our security strategy and roadmap. They will collaborate with cross-functional teams to ensure our products meet the highest security standards and provide a seamless and secure experience for our customers.
As a Director of Product Security at JFrog you will…
- Develop and implement the overall security strategy for application and cloud products, including policies, procedures, and best practices
- Be responsible for the overall planning, execution, and success of complex initiatives to secure our products within an agile environment
- Work closely with product development teams to ensure secure design and architecture, conducting regular security reviews, threat modelling, and risk assessments
- Oversee vulnerability management, including identifying and prioritizing vulnerabilities, coordinating remediation efforts, and tracking progress to closure.
- Collaborate with engineering, operations, and infrastructure teams to ensure cloud environments are secured, configured, and maintained according to industry standards and best practices
- Develop and maintain security metrics to measure the effectiveness of the security program and SSDLC, and provide regular reporting to stakeholders and senior leadership, in alignment with OKRs
- Provide security training and awareness programs for employees, focusing on secure coding practices, cloud security, and other relevant topics, with an emphasis on continuous improvement in an agile environment
- Ensure risks and issues are identified and managed closely while driving all stakeholders to deliver in a timely manner time in line with the required security standards
To be a Director of Product Security at JFrog you need
- At least 10 years of experience in Information Security, with a proven track record developing large scale SSDLC program
- At least 5 years of experience managing and leading Application and Cloud Product Security teams and architects
- Strong knowledge of cloud security best practices, architecture, and technologies (Docker, Kubernetes ), with experience in major cloud providers (AWS, Azure, or GCP)
- Experience with software development life cycle and secure coding practices
- Strong communication and leadership skills, with the ability to influence and work effectively with cross-functional teams
- Strong analytical and problem-solving skills
- Experience with Agile software development methodologies
- Presentation experience at industry events