Basic 12+ years in Product Security, Application Security, or closely related security and engineering disciplines, with 8+ years in highly technical leadership roles Bachelor’s degree in computer science, data science, artificial intelligence, machine learning, cybersecurity, risk management, or a related technical field Experience designing and leading product security programs, including but not limited to technical architecture/secure design reviews, threat modeling, secure coding principles and checklists, security tooling and scanning, security champions, SDLC, CI/CD, automating pipelines and gates, vulnerability management, and remediation Experience with common security vulnerabilities (e.g., OWASP Top 10, API Security Top 10, Agentic Top 10, open source software/supply chain, etc.) and their remediations, and addressing the full range of software risks across products and with cross-functional teams such as Product, Technology, and PSIRT Experience with benchmarks for AI such as Xbow, CVE-Bench Bounty-bench and others as well as the need for AI benchmarks and requirements Experience in implementing or improving product security tools where they previously did not exist, did not perform to expectations, and/or better options emerged (e.g., static and dynamic analysis tools, including vulnerability scanning suites) Experience in implementing or improving product security gates where they previously did not exist, did not perform to expectations, and/or better options emerged Experience embedding security within partner engineering teams through distributed training and enablement in a program, such as Security Champions Experience with development and build pipelines and automating CI/CD Experience with cloud infrastructure using infrastructure as code Experience with securing AI/ML implementations Experience with securely developing APIs and associated tooling against threats, such as unauthorized access and data compromise Experience with identity verification and cryptography Experience in one or more programming languages relevant to the organization (e.g., C#/.NET Framework/Core, Python, Java, JavaScript) Experience defining security KPIs, metrics pipelines, and executive reporting frameworks Preferred Certifications: CISSP, CSSLP, CISM, CCISO, GSLC, CASE, OSWE, or equivalent Substantial experience in AI product security, including AI guardrails, model scanning, agentic development standards, and AI-specific risks (e.g., OWASP Top 10 for Agentic Applications, OWASP Top 10 for LLM Applications) Knowledge of AI governance frameworks (e.g., AI RMF, ISO 42001) Experience driving automation strategies, predictive analytics, and data-driven insights Former experience as a software developer and/or engineer Master’s degree or higher Deeply technical with strong strategic vision, tactical acumen, excellence in execution Forward looking and acting; must understand and address current and future threats and business requirements exceedingly well and manage products and her team to suit Superb cross-functional collaboration and stakeholder engagement across technical and business relationships, especially with Product, Technology, Digital Technology, Security, and executive teams Growth and product mindset; oriented to action and delivery; professional teammate