Source Job

  • Establish secure by design standards and target state security architecture across product development, covering threat modeling, secure design review, and vulnerability management.
  • Build a formal vulnerability management program encompassing traditional and AI-specific threats like prompt injection, model manipulation, and data exfiltration.
  • Provide senior technical leadership and build trusted partnerships across Product, Engineering, and Security teams.

Cybersecurity Security Architecture Vulnerability Management AI/ML Security

20 jobs similar to AVP of Product Security

Jobs ranked by similarity.

US

  • Provide strong leadership as a security thought leader across Delinea's product offerings.
  • Perform end-to-end security architecture reviews and threat modeling.
  • Maintain and mature Product Security tooling such as SAST, SCA, DAST, ASPM.

Delinea is a pioneer in securing human and machine identities through intelligent, centralized authorization. They are a global team of passionate problem-solvers, with a culture of innovation, respect, and fairness.

US 18w maternity 16w paternity

  • Contribute to secure-by-design practices and advance the S-SDLC program.
  • Mentor engineers on secure coding and career growth.
  • Evaluate and recommend AI-assisted security tooling.

Spring Health is a global mental health company eliminating every barrier to mental health. They reach more than 170 million people worldwide and are an AI-native company focused on expanding the reach, quality, and humanity of care.

Global

  • Be the security expert enterprise customers trust, owning calls and deep-dives with sophisticated security teams at Fortune 500 companies.
  • Lead AI security conversations credibly on agent behavior, MCP exposure, and governance frameworks like ISO 42001.
  • Build automation and AI agents that shrink manual security review work, turning reviews into a customer onboarding accelerator.

Atlan builds the context layer for enterprise AI, connecting business context behind data to ensure accuracy and confidence for AI agents. Backed by top investors and trusted by Fortune 500 companies like General Motors and Nasdaq, Atlan fosters an AI-native, high-trust, remote-first culture.

North America

  • Define and drive a multi-year strategy and product vision for the Vault product bundle aligned with ServiceNow’s platform priorities.
  • Own end-to-end leadership of encryption, data privacy, log export, code signing, and AI native Vault console.
  • Partner with executive leadership and cross-functional teams to shape enterprise data security and regulatory readiness.

ServiceNow is the AI control tower for business reinvention, helping 85% of the Fortune 500 work smarter, faster, and better. With a global workforce and an AI-native culture, ServiceNow empowers employees to focus on meaningful work while driving innovation at scale.

$190,800–$267,100/yr
US

  • Review and threat model AI-powered product features, LLM integrations, and agentic workflows before launch.
  • Build reusable AI security primitives like guardrails, scanners, and policy checks to secure AI development.
  • Design security tooling to detect and prevent prompt injection, jailbreaks, and data leakage in AI systems.

Reddit is a community of communities built on shared interests, passion, and trust, hosting open conversations. With over 100,000 active communities and 126 million daily active users, it is one of the largest sources of information online.

Global Unlimited PTO

  • Lead a distributed engineering organization of nine teams, setting the vision and roadmap for proprietary scanners, AI-driven detection, and agentic remediation.
  • Drive architectural decisions for security detection engines and scalable scanning infrastructure while partnering with product management to prioritize customer needs.
  • Own delivery of security capabilities and represent the Security Factory in cross-functional planning, executive reviews, and customer conversations.

GitLab provides an intelligent orchestration platform for DevSecOps, enabling organizations to improve developer productivity and reduce security risks. With over 50 million users and trust from more than 50% of the Fortune 100, GitLab fosters a high-performance, AI-driven culture where all team members are expected to integrate AI into their workflows.

US

  • Secure AI systems and use AI to scale security, conducting security reviews and threat modeling of AI-integrated product features.
  • Deliver end-to-end application security reviews for high-risk features, working directly with engineering teams to surface and close risk.
  • Advance CI/CD pipeline security by operating and evolving security scanning controls in GitLab pipelines.

Smartsheet empowers teams to manage work and scale solutions by uniting human teams with AI agents. They are a large company with over 20 years of experience, fostering a culture where ideas are heard and contributions have real impact.

Mexico

  • Manage program management for the Security organization, applying a single operating standard across all projects.
  • Own intake, triage, status reporting, capacity planning, and prioritization using AI-augmented systems.
  • Partner with security leadership, engineers, and the AI team to refine and drive AI-assisted program management.

JumpCloud is the AI-powered unified IT management platform designed to secure the modern workforce. The company is remote-first and fosters a culture of connection and innovation, with teams in 15+ countries.

US 16w maternity 16w paternity

  • Participate in team exercises to identify potential security risks, including threat modeling and tabletop scenarios.
  • Plan projects to address prioritized risks and coordinate with cross-functional stakeholders to execute them.
  • Partner with engineering teams to architect secure software and build a strong security culture.

Vanta's mission is to help businesses earn and prove trust by enabling continuous security monitoring and verification. The company has a kind and talented team, and many have been successful without prior security experience.

$120,000–$154,440/yr
US 12w maternity 12w paternity

  • Architect, design, and implement end-to-end security solutions including firewalls, intrusion detection, and cloud security controls.
  • Collaborate with DevOps to integrate security into CI/CD pipelines and automate secure deployments.
  • Conduct regular security assessments, threat modeling, and architecture reviews to identify risks and design mitigations.

Figure is transforming capital markets through blockchain, powering real products used by hundreds of thousands of consumers and institutions. With over 170 partners and $22 billion in home equity loans originated, Figure is the largest non-bank provider of home equity financing in the U.S., recognized as one of Forbes' Most Innovative Fintech Startups in 2025.

India

  • Partner with engineering, product, and DevOps teams to integrate security practices throughout the SDLC, focusing on cloud-native environments and automated pipelines.
  • Design, implement, and maintain security tooling and gates within CI/CD pipelines covering SAST, DAST, SCA, secrets detection, and container scanning.
  • Lead threat modeling, conduct application security assessments including code review and manual penetration testing, and triage bug bounty reports.

Hyland is the pioneer of the Content Innovation Cloud, delivering ubiquitous enterprise intelligence to organizations. With a team of nearly 4,000 employees, the company fosters an employee-centric culture focused on community impact and innovation.

$130,000–$170,000/yr
US

  • Partner with product and engineering teams to identify risks early and build security into new features.
  • Lead threat modeling and secure design reviews for new products and architecture changes.
  • Perform security-focused code reviews and maintain application security tooling integrated into CI/CD.

Jump builds AI-powered tools that help financial advisors automate meeting prep, notes, and follow-up. It is a small startup with a culture that prioritizes security and trust, and security is core to the product.

$125,000–$152,000/yr
US

  • Bridge the gap between traditional infrastructure security and modern DevSecOps, defining secure-by-design frameworks and implementing high-impact DevSecOps pipelines across multi-cloud environments.
  • Lead critical security reviews for emerging technologies, including artificial intelligence, and act as a collaborative partner to internal teams fostering proactive security and cyber vigilance.
  • Manage security lifecycles within multi-cloud environments, own the end-to-end vulnerability management program, and leverage SIEM platforms for real-time threat intelligence.

NPR is a thriving, mission-driven multimedia organization that produces award-winning news, information, and music programming in partnership with hundreds of independent public radio stations across the nation. They are innovators and leaders in diverse fields, from journalism and digital media to IT and development, committed to building an inclusive workplace where collaboration is essential and diverse voices are heard.

US Canada

  • Define security architecture and build controls for AI platforms, training and inference workflows, and agentic systems.
  • Design reusable security patterns for identity, authorization, and runtime controls to constrain execution and data exposure.
  • Lead hands-on security reviews and influence security architecture through practical design changes and reusable controls.

Cerebras Systems builds the world's largest AI chip, 56 times larger than GPUs, delivering industry-leading training and inference speeds. With dozens of model releases and rapid growth, they have a non-corporate work culture that respects individual beliefs.

Australia

  • Define the strategic direction and security frameworks for AI systems at scale.
  • Lead research into emerging AI threats and drive threat modeling.
  • Serve as the technical authority for AI security across Canva.

Canva is a design platform that empowers the world to design. We have campuses in Sydney, Melbourne, and other Australian cities, with a culture that trusts our Canvanauts to choose the balance that empowers them.

$135,000–$178,000/yr
US

  • Define and lead the enterprise security strategy for AI-powered systems and Azure cloud environments.
  • Establish security controls and threat modeling for agentic AI workflows and cloud workloads.
  • Mentor engineering teams on secure AI adoption and cloud security best practices.

Banner Bank is a community bank with over 135 years of history, serving Washington, Oregon, Idaho, and California with $16 billion in assets and 135 branches. They prioritize core values like teamwork and integrity, and have been Great Place to Work Certified, emphasizing employee volunteerism and community support.

  • Owns product, cloud, engineering, vendor, AI-tooling, and compliance security functions.
  • Builds practical guardrails for AI tools, agents, MCPs, data leakage, and automation.
  • Understands OWASP, IAM, secrets, cloud security, vulnerability management, CI/CD, incident response, and frameworks like SOC 2, ISO 27001, GDPR, or HIPAA.

PlayPower Labs is a company focused on building practical security functions without slowing down teams. The organization values security sharpness, usefulness, and a product-minded approach, with a culture that balances protection and agility.

Canada

  • Lead a specialized team of security engineers focused on application, cloud, and AI system security.
  • Champion shift-left security practices including threat modeling, secure code review, and developer training.
  • Define cloud security standards and enforce security for AI systems including LLM-based agents.

Acquia empowers ambitious brands to create digital customer experiences using open source Drupal. Headquartered in Boston, MA, it is a Great Place to Work-Certified company and among the world's top software companies.

US 5w PTO

  • Own key security domains such as vulnerability management, application security, API security, and supply chain security.
  • Partner with engineering teams to integrate security into design reviews, threat modeling, CI/CD pipelines, and developer workflows.
  • Develop and improve security tooling and automation to reduce manual effort and leverage AI for triage and detection.

NinjaTrader is an industry-leading trading platform and futures broker that empowers traders with award-winning software and brokerage services. Since 2003, the company has grown to over 2 million users and is the number one rated futures brokerage worldwide, fostering a dynamic culture focused on social connection, professional development, and employee recognition.

$175,000–$200,000/yr
United States Dominican Republic Canada

  • Lead application and product security across Forward-built, third-party, and AI-built software.
  • Evolve the pentest program to aggressively test and remediate vulnerabilities in existing and new software.
  • Build and integrate AI solutions within the appsec function.

Forward Financing is a financial technology company that unlocks capital for small businesses across America. Recognized as a Best Place to Work, it invests in employees, technology, and customer experience with a long-term focus.