1

Director Of Devsecops Jobs in California (NOW HIRING)

Cadence is a technology company seeking a Director of Software Security to lead secure software ... This role involves driving DevSecOps transformation, ensuring compliance with regulatory frameworks ...

Director of DevOps

Los Angeles, CA · On-site +1

$56.75 - $77.75/hr

As the Director of DevOps, you will be responsible for managing cloud infrastructure, CI/CD ... Ensure DevSecOps principles are integrated into the software development lifecycle. Implement ...

DevSecOps / Cloud Engineer

San Francisco, CA · On-site

$65.75 - $87.75/hr

Where you'll contribute Alongside the Director of Infrastructure and the Dev Team: * Security ... in DevSecOps, security, platform, or infrastructure engineering, operating production systems you ...

Where you'll contribute Alongside the Director of Infrastructure and the Dev Team: * Security ... in DevSecOps, security, platform, or infrastructure engineering, operating production systems you ...

New

DevSecOps / Cloud Engineer

San Francisco, CA · On-site

$65.75 - $87.75/hr

Where you'll contribute Alongside the Director of Infrastructure and the Dev Team: * Security ... in DevSecOps, security, platform, or infrastructure engineering, operating production systems you ...

next page

Showing results 1-20

Director Of Devsecops information

What does a director of DevSecOps do?

A Director of DevSecOps is responsible for integrating security practices into the software development and operations process. They oversee teams that ensure security is considered at every stage of the development lifecycle, from planning to deployment. This role involves setting security policies, managing risk assessments, automating security checks, and collaborating with developers and IT staff to maintain secure and efficient systems. The Director of DevSecOps also stays updated on emerging threats and technologies to protect the organization’s digital assets effectively.

What are the key skills and qualifications needed to thrive as a director of DevSecOps?

To thrive as a Director Of DevSecOps, you need deep expertise in cybersecurity, software development, cloud infrastructure, and a background in IT management, often supported by degrees in computer science and certifications like CISSP or AWS Certified Security. Familiarity with CI/CD pipelines, containerization tools (Docker, Kubernetes), security automation platforms, and vulnerability management systems is crucial. Outstanding leadership, strategic thinking, and strong communication skills help in leading cross-functional teams and driving a culture of security. These capabilities ensure secure, scalable, and efficient delivery of technology solutions that protect organizational assets and enable business growth.

What are the main challenges a director of DevSecOps faces when integrating security into fast-paced development cycles?

A Director of DevSecOps often encounters the challenge of aligning security protocols with rapid development and deployment timelines. Balancing the need for robust security with the speed and flexibility required by development teams requires strong cross-functional communication and the implementation of automated security tools within CI/CD pipelines. Additionally, fostering a culture where security is seen as everyone's responsibility, rather than a blocker, is essential. This role also involves staying current with evolving threats and compliance requirements, ensuring the organization remains proactive rather than reactive.

What is the difference between Director Of Devsecops vs Security Manager?

AspectDirector Of DevsecopsSecurity Manager
Primary FocusIntegrating security into development and operations processesOverseeing security policies, risk management, and incident response
CertificationsSecurity+, CISSP, DevSecOps certificationsCISSP, CISM, Security+
Work EnvironmentCollaborates with DevOps, IT, and security teamsManages security teams and policies within organizations
Industry UsageCommon in tech, software development, and cloud companiesUsed across various industries including finance, healthcare, and government

The Director Of Devsecops focuses on embedding security practices within development and operations teams, emphasizing automation and integration. In contrast, the Security Manager primarily manages security policies, risk assessments, and incident responses. Both roles require security certifications but differ in scope and daily responsibilities, with the Director Of Devsecops being more technical and collaborative with development teams.

What cities in California are hiring for Director Of Devsecops jobs?

Cities in California with the most Director Of Devsecops job openings:

Infographic showing various Director Of Devsecops job openings in California as of August 2026, with employment types broken down into 2% As Needed, 85% Full Time, 10% Part Time, 1% Temporary, and 2% Contract. Highlights an 91% Physical, 3% Hybrid, and 6% Remote job distribution.

Director of Software Security

Cadence Design Systems, Inc.

San Jose, CA • On-site

$164K - $305K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Re-posted 28 days ago


Cadence Design Systems rating

9.0

Company rating: 9.0 out of 10

Based on 5 frontline employees who took The Breakroom Quiz

34th of 246 rated software companies


Job description

At Cadence, we hire and develop leaders and innovators who want to make an impact on the world of technology.
Cadence InfoSec is seeking a Director of Software Security to lead the strategy, architecture, and execution of secure software development practices across the enterprise. This role will drive DevSecOps transformation, ensure compliance with regulatory frameworks (including CMMC), and embed security throughout the software lifecycle (SDLC).
Key Responsibilities
DevSecOps Strategy & Leadership
  • Define and execute enterprise DevSecOps strategy across all development teams
  • Integrate security controls into CI/CD pipelines (build, test, release)
  • Establish "shift-left" security practices across the SDLC
  • Drive adoption of secure coding, SAST, DAST, and SCA tools

Secure Software Architecture
  • Define reference architectures for secure microservices, APIs, and cloud-native apps
  • Establish security patterns for containers, Kubernetes, and serverless
  • Lead threat modeling initiatives
  • Ensure secure API design and zero trust principles

Regulatory Compliance & CMMC
  • Lead compliance initiatives for:
    • Cybersecurity Maturity Model Certification (CMMC 2.0)
    • NIST SP 800-171r2 /800-53
    • ISO 27001
  • Ensure software systems meet federal, defense, and privacy regulations
  • Coordinate audits, assessments, and continuous monitoring programs
  • Implement controls for handling Controlled Unclassified Information (CUI)

Cloud & Platform Security
  • Secure DevOps pipelines across cloud platforms:
    • Amazon AWS
    • Microsoft Azure
    • Google Cloud
    • IBMC cloud
    • Cadence software service and products
  • Implement infrastructure-as-code (IaC) security scanning
  • Define secrets management, identity, and access controls

Application Security Program
  • Build and scale AppSec program across all product lines
  • Define vulnerability management lifecycle (discovery → remediation → validation)
  • Establish bug bounty / responsible disclosure programs
  • Integrate security into Agile and CI/CD workflows

Supply Chain & Software Integrity
  • Secure software supply chain (SBOM, dependency scanning)
  • Implement artifact signing, provenance, and integrity validation

Governance & Risk Management
  • Define policies, standards, and secure development guidelines
  • Establish KPIs: vulnerability remediation SLA, code coverage, pipeline security
  • Align software security with enterprise risk management
  • Report posture to executive leadership and board

Leadership & Cross-Functional Influence
  • Lead teams of AppSec engineers, DevSecOps engineers, and architects
  • Partner with Engineering, Product, Legal, and Compliance teams
  • Build security champions program within development teams
  • Influence engineering culture toward security ownership

Required Qualifications
  • 12-15+ years in cybersecurity, with strong focus on application security and DevSecOps
  • 5+ years in leadership (manager/director level)
  • Deep expertise in:
    • Secure SDLC and DevSecOps pipelines
    • Cloud-native architectures and container security
    • Regulatory frameworks (CMMC, NIST, ISO)
  • Experience in regulated industries (defense, government, healthcare, fintech)

Preferred Qualifications
  • Hands-on experience with tools such as:
    • SAST: Checkmarx, Veracode
    • DAST: Burp Suite
    • SCA: Snyk, Black Duck
    • CI/CD: Jenkins, GitHub Actions
  • Familiarity with Kubernetes, Docker, and service mesh security
  • Certifications:
    • CISSP, CSSLP
    • CISM or CCSP
  • Experience with Zero Trust and identity-first security

Key Skills
  • DevSecOps Transformation
  • Secure Software Architecture
  • Regulatory Compliance (CMMC, NIST, ISO)
  • Application Security & Threat Modeling
  • Software Supply Chain Security (SBOM, SLSA)
  • Cloud & Container Security
  • Executive Communication & Strategy

The annual salary range for California is $164,500 to $305,500. You may also be eligible to receive incentive compensation: bonus, equity, and benefits. Sales positions generally offer a competitive On Target Earnings (OTE) incentive compensation structure. Please note that the salary range is a guideline and compensation may vary based on factors such as qualifications, skill level, competencies and work location. Our benefits programs include: paid vacation and paid holidays, 401(k) plan with employer match, employee stock purchase plan, a variety of medical, dental and vision plan options, and more.
We're doing work that matters. Help us solve what others can't.

What Cadence Design Systems employees say

Workplace

Get the full story on Breakroom