SailPoint Logo

SailPoint

Director, Cyber Product Security

Posted 3 Days Ago
Remote or Hybrid
2 Locations
163K-303K Annually
Senior level
Remote or Hybrid
2 Locations
163K-303K Annually
Senior level
The Director of Cyber Product Security will lead a team to secure technology platforms, collaborate on security standards, and improve security programs.
The summary above was generated by AI

           

Job Description – Director, Cyber Product Security

Overview

SailPoint’s Cybersecurity organization is seeking a leader with a passion for cybersecurity and protecting the organization. The successful candidate will serve as our Director of Cyber Product Security and will lead a team of security engineers who collaborate with stakeholders across the organization.  Their mission is to secure technology platforms developed by SailPoint, including customer-facing platforms, as well as software platforms developed primarily for internal business purposes.

We’re seeking a leader with proven technical capabilities and experience leading people and teams.  They are accustomed to achieving objectives through the leadership of others as well as working in a highly collaborative environment. The Director will be responsible for addressing all dimensions of product cyber security – people, process, and technology – to achieve our objectives.

The new Director of Product Security will lead an existing and capable team of both emerging and established talent. The chosen candidate will help shape our strategy and future in collaboration with the rest of the Cyber leadership team, and will also collaborate with SailPoint’s Engineering Security team, Information Technology, Marketing and other internal stakeholders.

Central to SailPoint’s product security program will be the implementation of a shared security model that impacts all software developed by SailPoint. Under this shared security model, the Product Security team is responsible for multiple key areas affecting product security, collaborating with the Engineering Security team on areas of mutual responsibility, as well as providing specific security services related to product security.

The Director will have the opportunity to shape our future through process and technology optimization, capability acquisition and development, and maturation of our existing activities. They’ll already be comfortable with the 4 I’s at SailPoint (individual, Impact, Innovation, and Integrity) even if they’re new to the concept. They will embrace new challenges and will be a positive contributor to an already positive work culture and environment.

This is a challenging and impactful role where you will have the opportunity to work with both internal and external stakeholders, drive the continuous improvements of our security program, contribute meaningfully to the security of the global cyber ecosystem, and serve as an ambassador for SailPoint to our customers and the public. 

This role reports directly to the Deputy CISO and can be remote or based in Austin, TX.

Key Responsibilities

  • Develop and lead the Cyber Product Security team in alignment with business goals and regulatory requirements.
  • Build and mentor a high-performing team of cyber product security architects, engineers, and software security specialists.
  • Lead Cyber Product Security’s collaboration with Engineering Security on the establishment and maturation of product security standards, secret management standards, architecture patterns and threat modeling practices, as well as resilient product technology frameworks.
  • Collaborate with Engineering Security to integrate security tooling and practices into SailPoint’s SDLC and CI/CD pipelines, including the adoption of security automation, SBOM tooling, and AI coding security practices.
  • Provide SAST/SCA, DAST, IAST, and SBOM support for software platforms developed for internal SailPoint use cases.
  • Provide threat modeling, penetration testing services for software platforms developed for internal SailPoint use cases.
  • Collaborate with Engineering Security on penetration testing of SailPoint’s customer-facing platforms, as well as coordinate all requests for customer-performed penetration tests of SailPoint’s platform.
  • Lead Product Security Incident Response Team (PSIRT) activities across all software products developed by SailPoint, including customer-facing, as well as internally-focused software platforms.
  • Lead SailPoint’s bug bounty program, requests for CVE’s for SailPoint’s products, as well as questions from 3rd party vendors and customers on product security issues.
  • Collaborate with Engineering Security to implement developer security training on topics including secure coding practices, open source licensing policies, and AI-coding policies and standards.
  • Develop a program to validate that product security policies, standards, and procedures are implemented by all SailPoint teams developing SailPoint software platforms.
  • Monitor emerging threats, technologies, and compliance trends to proactively evolve the security posture of all software developed by SailPoint.
  • Collaborate with SailPoint’s Legal, Compliance, and GRC teams to ensure alignment with global regulations, standards and certifications.
  • Define and track KPIs to measure program effectiveness and maturity.

Key Requirements

  • 7+ years in leadership roles, preferably in product or application security.
  • Experience with secure software development practices and tools.
  • Experience with regulatory frameworks (e.g., NIST, ISO 27001, GDPR).
  • Strategic Vision & Execution - Ability to define and communicate a clear vision for product security and resilience aligned with enterprise goals.
  • Influence & Collaboration – Demonstrable experience building strong partnerships across an organization to drive secure-by-design culture.
  • Technical Leadership - Understanding of product security issues, modern software development including multi-cloud architectures, Kubernetes, and software bill of materials (SBOM).
  • Manage entire lifecycle of security researcher findings, customer reported security questions, issues, incidents, associated CVE’s.
  • Change Management – Experience leading organizational change initiatives to embed security and resilience into product development lifecycles.
  • Experience building relationships with software engineering teams, including managing mature product security including final security reviews, and, risk-driven product scoring/metrics.
  • Talent Development - Demonstrable experience building high-performing teams through coaching, mentoring, and career development.
  • Risk-Based Decision Making – Experience making informed decisions through balancing business priorities, technical constraints, and risk exposure.
  • Executive Communication – Experience communicating complex technical concepts and ongoing program updates clearly to non-technical stakeholders and executive leadership.
  • Knowledge of artificial intelligence software security frameworks is preferred, including OWASP AI Security and Privacy Guide, NIST AI Risk Management Framework, Cybersecurity AI (CAI), Open SSF AI/ML Security Framework.

Benefits and Compensation listed vary based on the location of your employment and the nature of your employment with SailPoint.

As a part of the total compensation package, this role may be eligible for the SailPoint Corporate Bonus Plan or a role-specific commission, along with potential eligibility for equity participation. SailPoint maintains broad salary ranges for its roles to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect SailPoint’s differing products, industries, and lines of business. Candidates are typically placed into the range based on the preceding factors as well as internal peer equity. We estimate the base salary, for US-based employees, will be in this range from (min-mid-max, USD):

$163,200 - $233,200 - $303,200

Base salaries for employees based in other locations are competitive for the employee’s home location.

Benefits Overview

1. Health and wellness coverage: Medical, dental, and vision insurance

2. Disability coverage: Short-term and long-term disability

3. Life protection: Life insurance and Accidental Death & Dismemberment (AD&D)

4. Additional life coverage options: Supplemental life insurance for employees, spouses, and children

5. Flexible spending accounts for health care, and dependent care; limited purpose flexible spending account

6. Financial security: 401(k) Savings and Investment Plan with company matching

7. Time off benefits: Flexible vacation policy

8. Holidays: 8 paid holidays annually

9. Sick leave

10. Parental support: Paid parental leave

11. Employee Assistance Program (EAP) and Care Counselors

12. Voluntary benefits: Legal Assistance, Critical Illness, Accident, Hospital Indemnity and Pet Insurance options

13. Health Savings Account (HSA) with employer contribution

SailPoint is an equal opportunity employer and we welcome all qualified candidates to apply to join our team.  All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other category protected by applicable law.  

Alternative methods of applying for employment are available to individuals unable to submit an application through this site because of a disability. Contact [email protected] or mail to 11120 Four Points Dr, Suite 100, Austin, TX 78726, to discuss reasonable accommodations.  NOTE: Any unsolicited resumes sent by candidates or agencies to this email will not be considered for current openings at SailPoint.

Top Skills

Ai Coding Security
Gdpr
Iso 27001
Kubernetes
Nist
Sbom

Similar Jobs at SailPoint

Yesterday
Remote or Hybrid
United States
15-40 Hourly
Internship
15-40 Hourly
Internship
Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
Assist in user research, create wireframes and prototypes, collaborate on design feasibility, and maintain design systems while staying abreast of design trends.
Top Skills: Adobe Creative SuiteCSSFigmaHTMLJavaScriptSketch
Yesterday
Remote or Hybrid
2 Locations
80K-149K Annually
Entry level
80K-149K Annually
Entry level
Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
The Sales Executive will sell SailPoint's Identity Security Solution, exceeding revenue targets while collaborating effectively with customers and partners to ensure successful sales and account management.
Top Skills: Salesforce
Yesterday
Remote or Hybrid
United States
118K-220K Annually
Senior level
118K-220K Annually
Senior level
Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
The Monetization Program Manager drives SailPoint's monetization strategy, coordinating with internal teams to optimize pricing, packaging, and profitability through data-driven insights and cross-functional collaboration.
Top Skills: Data AnalysisFinancial ModelingMarket ResearchSaaS

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account