1

Director Software Security Jobs in California (NOW HIRING)

Cadence is a technology company seeking a Director of Software Security to lead secure software development practices across the enterprise. This role involves driving DevSecOps transformation ...

Director, Software Engineering

Irvine, CA · On-site

$271K/yr

Cotality is seeking a highly experienced and strategic Director of Software Engineering to lead our ... Protocols & Security: Deep knowledge of network protocols (SFTP, AS2, HTTPS, FTPS) and data ...

Director, Software Engineering

San Mateo, CA · On-site

$288K/yr

As the Director of Software Engineering, you are a hands-on, "rock star" Java developer and ... security, and quality remain paramount. * Production Support & SRE: You will figure out the root ...

As the Director of Software Engineering, you are a hands-on, "rock star" Java developer and ... security, and quality remain paramount. * Production Support & SRE: You will figure out the root ...

As the Director of Software Engineering, you are a hands‑on, "rock star" Java developer and ... security, and quality remain paramount. * Production Support & SRE: You will figure out the root ...

As the Director of Software Engineering, you are a hands-on, "rock star" Java developer and ... security, and quality remain paramount. * Production Support & SRE: You will figure out the root ...

The Challenge Adobe Developer Platforms has the mission to help Developers "write better software ... We strive to build into all our product offerings strong defaults around security, cost efficiency ...

The Challenge Adobe Developer Platforms has the mission to help Developers "write better software ... We strive to build into all our product offerings strong defaults around security, cost efficiency ...

next page

Showing results 1-20

Director Software Security information

What are the key skills and qualifications needed to thrive as a Director of Software Security, and why are they important?

To thrive as a Director of Software Security, you need deep expertise in cybersecurity principles, secure software development, risk management, and typically a bachelor's or master's degree in computer science or a related field. Familiarity with security frameworks (like NIST or ISO 27001), secure coding tools, penetration testing platforms, and relevant certifications such as CISSP or CSSLP is highly valued. Strong leadership, strategic thinking, and effective communication are crucial soft skills for guiding teams and influencing stakeholders. These skills and qualities are essential to effectively protect organizational assets, ensure regulatory compliance, and drive a culture of security throughout the software development lifecycle.

What is the difference between Director Software Security vs Security Manager?

AspectDirector Software SecuritySecurity Manager
CredentialsTypically requires CISSP, CISM, or CISA certificationsOften holds CISSP or CISM certifications
Work EnvironmentStrategic leadership, overseeing security programs across multiple teamsOperational management, implementing security policies and procedures
Employer & Industry UsageUsed in large tech companies, finance, and healthcare sectorsCommon in various industries, including corporate and government sectors

The main difference is that the Director Software Security focuses on strategic planning and overseeing security initiatives at a high level, while the Security Manager handles day-to-day security operations and policy enforcement. Both roles require similar certifications but differ in scope and responsibilities.

What does a Director of Software Security do?

A Director of Software Security is responsible for developing, implementing, and overseeing strategies to protect an organization’s software systems from security threats. They manage security teams, set security policies, and ensure best practices are followed throughout the software development lifecycle. Their role also involves conducting risk assessments, responding to security incidents, and collaborating with other departments to ensure compliance with industry standards and regulations.

What are the main challenges a Director of Software Security faces when aligning security initiatives with business objectives?

One of the key challenges for a Director of Software Security is balancing robust security measures with the need for agility and innovation in software development. This often requires close collaboration with engineering, product, and executive teams to ensure security protocols do not hinder business goals or time-to-market. Additionally, staying ahead of emerging threats while managing compliance requirements and resource constraints can be demanding. Effective communication and a strategic approach are essential for successfully integrating security into the organization's broader objectives.
What are the most commonly searched types of Software Security jobs in California? The most popular types of Software Security jobs in California are:
What are popular job titles related to Director Software Security jobs in California? For Director Software Security jobs in California, the most frequently searched job titles are:
What job categories do people searching Director Software Security jobs in California look for? The top searched job categories for Director Software Security jobs in California are:
What cities in California are hiring for Director Software Security jobs? Cities in California with the most Director Software Security job openings:
Infographic showing various Director Software Security job openings in California as of July 2026, with employment types broken down into 78% Full Time, 11% Part Time, and 11% Contract. Highlights an 100% In-person job distribution.

Director of Software Security

Cadence

San Jose, CA • On-site

Full-time

Re-posted 6 days ago


Job description

Job Summary:
Cadence is a technology company seeking a Director of Software Security to lead secure software development practices across the enterprise. This role involves driving DevSecOps transformation, ensuring compliance with regulatory frameworks, and embedding security throughout the software lifecycle.
Responsibilities:
• Define and execute enterprise DevSecOps strategy across all development teams
• Integrate security controls into CI/CD pipelines (build, test, release)
• Establish “shift-left” security practices across the SDLC
• Drive adoption of secure coding, SAST, DAST, and SCA tools
• Define reference architectures for secure microservices, APIs, and cloud-native apps
• Establish security patterns for containers, Kubernetes, and serverless
• Lead threat modeling initiatives
• Ensure secure API design and zero trust principles
• Lead compliance initiatives for: Cybersecurity Maturity Model Certification (CMMC 2.0), NIST SP 800-171r2 /800-53, ISO 27001
• Ensure software systems meet federal, defense, and privacy regulations
• Coordinate audits, assessments, and continuous monitoring programs
• Implement controls for handling Controlled Unclassified Information (CUI)
• Secure DevOps pipelines across cloud platforms: Amazon AWS, Microsoft Azure, Google Cloud, IBMC cloud, Cadence software service and products
• Implement infrastructure-as-code (IaC) security scanning
• Define secrets management, identity, and access controls
• Build and scale AppSec program across all product lines
• Define vulnerability management lifecycle (discovery → remediation → validation)
• Establish bug bounty / responsible disclosure programs
• Integrate security into Agile and CI/CD workflows
• Secure software supply chain (SBOM, dependency scanning)
• Implement artifact signing, provenance, and integrity validation
• Define policies, standards, and secure development guidelines
• Establish KPIs: vulnerability remediation SLA, code coverage, pipeline security
• Align software security with enterprise risk management
• Report posture to executive leadership and board
• Lead teams of AppSec engineers, DevSecOps engineers, and architects
• Partner with Engineering, Product, Legal, and Compliance teams
• Build security champions program within development teams
• Influence engineering culture toward security ownership
Qualifications:
Required:
• 12–15+ years in cybersecurity, with strong focus on application security and DevSecOps
• 5+ years in leadership (manager/director level)
• Deep expertise in: Secure SDLC and DevSecOps pipelines, Cloud-native architectures and container security, Regulatory frameworks (CMMC, NIST, ISO)
• Experience in regulated industries (defense, government, healthcare, fintech)
Preferred:
• Hands-on experience with tools such as: SAST: Checkmarx, Veracode, DAST: Burp Suite, SCA: Snyk, Black Duck, CI/CD: Jenkins, GitHub Actions
• Familiarity with Kubernetes, Docker, and service mesh security
• Certifications: CISSP, CSSLP, CISM or CCSP
• Experience with Zero Trust and identity-first security
Company:
Cadence is a market leader in AI and digital twins, pioneering the application of computational software to accelerate innovation in the engineering design of silicon to systems. Founded in 1988, the company is headquartered in San Jose, USA, with a team of 10001+ employees. The company is currently Late Stage.