The Sr. Director, Product Cyber Security (Chief Product Security Leader) is a technical business driven leader who will be responsible for driving a comprehensive industry-leading Product Cyber Security teams focused on protecting our Buildings Automation (BA) business. This leader will bring hands-on cloud, and industrial systems experience as well as strategic thought leadership to the BA development community at the intersection of the Secure Software Development Lifecycle (SSDLC), advanced cyber-threats, customer requirements, and business driven values.
The role requires deep knowledge of the various cloud & AI focused security assurance activities in a Secure Software Development Lifecycle, history of applying that information across a variety of software delivery methodologies and proven expertise in leading a team of security architects, testers, and researchers. This role will work closely with engineering as they develop products and services for Honeywell's customers.
This role will sit in Atlanta, GA and work on a hybrid work schedule, plus 15-20% domestic/international travel.
Honeywell helps organizations solve the world's most complex challenges in automation, the future of aviation and energy transition. As a trusted partner, we provide actionable solutions and innovation through our Aerospace Technologies, Building Automation, Energy and Sustainability Solutions, and Industrial Automation business segments - powered by our Honeywell Forge software - that help make the world smarter, safer and more sustainable.
YOU MUST HAVE:
- Expertise in cloud architecture, Industrial control systems, firmware, cloud containerization strategies with strong preference for AI experience.
- Bachelor's degree in Computer Science, Electrical Engineering, Information Systems, or similar degree
- Ability to navigate complex problems, get to the root cause and articulate and drive solutions.
- 15+ years of overall professional experience
- 5+ years of management experience
- 3+ years of experience in Penetration Testing and finding vulnerabilities in online services
WE VALUE:
- Strong communications and influencing skills with all levels of an organization, including executive and front-line employees
- Ability to solve complex issues and drive to completion in a fast-paced environment
- Expertise and thought leadership across all aspects of SSDLC
- Experience multiple cloud environments such as Azure, AWS and Google clouds.
- Deep understanding of development methodologies, developer tools and processes specifically in a cloud architecture such Openshift, Docker, Jira, Coverity, Prisma Cloud or similar.
- Deep understanding of security vulnerabilities both for device and cloud environments, their mitigations, and ability to communicate details appropriate to audience levels
- Understanding of security and privacy regulations and standards is desirable
- Demonstrated experience dealing with security challenges and issues confronting a large, geographically distributed, departmentally diverse, global, public-facing organization
- Proven success delivering large, complex projects and programs
- CISSP, CISM, CISA or other related credentials
BENEFITS:
In addition to a competitive salary, leading-edge work, and developing solutions side-by-side with dedicated experts in their fields, Honeywell employees are eligible for a comprehensive benefits package. This package includes employer subsidized Medical, Dental, Vision, and Life Insurance; Short-Term and Long-Term Disability; 401(k) match, Flexible Spending Accounts, Health Savings Accounts, EAP, and Educational Assistance; Parental Leave, Paid Time Off (for vacation, personal business, sick time, and parental leave), and 12 Paid Holidays. For more information visit: BENEFITS AT HONEYWELL
The application period for the job is estimated to be 40 days from the job posting date; however, this may be shortened or extended depending on business needs and the availability of qualified candidates.
In this key and visible role, you will...
- Develop and drive programs to operationalize the security vision across the business with an emphasis on gaining measurable results.
- Deliver a range of security architecture and assurance activities as part of Honeywell's Security Development Lifecycle.
- Develop and maintain a program that informs business unit and functional group leadership of the top security risks and overall security health of their products
- Work with engineering and other leaders to ensure security assurance activities occur during the software development lifecycle and appropriate security mitigations are integrated into the product.
- Develop and drive approaches to identify and prevent security vulnerabilities earlier in the development process in an automated scalable manner and work with engineering to deploy and utilize these approaches.
- Build a strong security community across the company's functional, business and technology organizations.