Senior Director, Global Application and Product Security

4 Months ago • 10-15 Years • Cyber Security • $184,600 PA - $237,400 PA

Job Summary

Job Description

This role requires 10+ years of application security experience. You'll lead the strategy, implementation, and management of security practices across the SDLC. Strong communication and collaboration skills are essential to work with business leaders, development teams, and security engineers.
Must have:
  • Application Security
  • SDLC Expertise
  • Security Strategy
  • Threat Modeling
Good to have:
  • DevOps Security
  • CI/CD Pipelines
  • Security Champions
  • Metrics Tracking
Perks:
  • Student Loan
  • Parental Leave

Job Details

We are UMG, the Universal Music Group. We are the world’s leading music company. In everything we do, we are committed to artistry, innovation and entrepreneurship. We own and operate a broad array of businesses engaged in recorded music, music publishing, merchandising, and audiovisual content in more than 60 countries. We identify and develop recording artists and songwriters, and we produce, distribute and promote the most critically acclaimed and commercially successful music to delight and entertain fans around the world.
 

How you’ll LEAD

Our team is looking for a Sr. Director, Global Application and Product Security responsible for overseeing the security of software applications within the organization, ensuring they are designed, developed, configured, and maintained with the highest security standards.

The Sr. Director, Application and Product Security is responsible for leading the strategy, implementation, and management of security practices across the software development lifecycle (SDLC). This position ensures that all applications, whether developed internally or by third parties, follow sound security practices and meet the company’s security policy and compliance requirements.

The role involves building close working relationships with business leadership, software development teams, security engineers, IT, and management to minimize risks and ensure the safe operation of software applications.

We take security very seriously, and protecting our customers is our highest priority.  If you are a self-starter who is passionate about security and is excited to work in a highly collaborative environment alongside a diverse team of experts every day, this position is for you.

In addition to having strong technical skills, you must be comfortable in effectively communicating with business leadership, our software development community, technical IT teams, and business partners, all while being sensitive to a wide diversity of cultural and technical backgrounds in a global business environment.

How you’ll CREATE

  • Develop and lead the application and product security strategy, integrating them with overall business security and risk management objectives.
  • Work closely with senior leadership to align security goals with business objectives.
  • Cultivate a positive and security-aware culture
  • Act as a subject matter expert in application security, advising the organization on best practices and emerging security threats.
  • Partner with the business to assess the security of selected bought, hired, or developed business solutions, effectively highlighting and communicating security risk
  • Guide development teams in secure coding practices, threat modeling, and risk management for new and existing applications.
  • Embed security requirements, standards, and practices into the software development lifecycle (SDLC).
  • Partner with DevOps teams to ensure security in CI/CD pipelines.
  • Author documents that positively influence the global Universal Music Group community, including best practices, policies, and standards
  • Design and implement training programs to educate software engineers, product teams, and other relevant stakeholders on secure development practices.
  • Stay updated on the latest security trends, attack vectors, and mitigation techniques
  • Build and grow a security champions program
  • Lead evaluation projects that strive to determine best-fit, effective solutions to our most pressing application and product security problems
  • Leverage metrics to track and improve the effectiveness of our application and product security programs and services
  • Host meetings necessary to accomplish assigned goals and objectives
  • Provide regular updates to executive leadership on the state of application and product security.
  • Other duties as assigned

Bring your VIBE

  • Use your curiosity and learning mindset to bear upon a myriad of cyber security problems
  • Communicate complex security-related topics effectively with business representatives
  • Strong written and verbal communication skills
  • Ability to effectively manage multiple concurrent projects
  • Organizational and documentation skills
  • Report writing and presentation
  • Team focus
  • Bachelor’s degree in a related field
  • Five years of software development experience
  • Ten years experience in application security; with consideration for related fields

Perks Playlist:

  • Be part of an entrepreneurial, global organization that values authenticity, drive, creativity, relationships, and a competitive spirit

  • Comprehensive medical, dental, vision, and FSA options, as well as:

    • 100% coverage for out-patient mental health services

    • Wellbeing reimbursements for fitness classes, spa treatments, meal services, travel, and so much more (up to $720/year)

    • A lifetime fertility support allowance of $30,000 to plan participants

    • Student Loan Repayment Assistance and Tuition Reimbursement

    • 100% immediately vested 401(k) match on the first 5% of your contribution on eligible compensation

  • Variety of ways to prioritize much-needed time away from work including:

    • Flexible Paid Time Off (PTO) for exempt employees

    • 3-weeks PTO for non-exempt employees

    • 2-weeks paid Winter Break

    • 10 Company Holidays (including Juneteenth and Wellbeing Day)

    • Summer Fridays (between Memorial Day and Labor Day)

    • Generous paid parental leave for every type of parent

Check out our full overview of benefits on the Perks Playlist page of the career site.

Disclaimer: This job description only provides an overview of job responsibilities that are subject to change.

Universal Music Group is an Equal Opportunity Employer

We are an E-Verify employer in Alabama, Arizona, Georgia, Mississippi, North Carolina, South Carolina, Tennessee, and Utah.

For more information, please click on the following links.

E-Verify Participation Poster: English / Spanish

E-Verify Right to Work Poster: English | Spanish


Job Category:

Technology

Salary Range:

$184,600 - $237,400

The actual base salary offered depends on a variety of factors, which may include, as applicable, the qualifications of the individual applicant for the position, years of relevant experience, specific and unique skills, level of education attained, certifications or other professional licenses held, and the location in which the applicant lives and/or from which they will be performing the job.  All candidates are encouraged to apply.

Similar Jobs

Google - Engineering Manager, Information Retrieval

Google

(On-Site)
2 Months ago
JENOPTIK - Software QA Test Engineer

JENOPTIK

Karnataka, India (On-Site)
6 Months ago
Luxoft - SQL Lead Developer

Luxoft

Gurugram, Haryana, India (On-Site)
2 Months ago
Playrix - Senior C++/Python Software Engineer (Engine)

Playrix

Almaty, Almaty Region, Kazakhstan (Remote)
3 Months ago
Okta - Site Reliability Engineer, Kubernetes

Okta

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
PwC - Cloud DevSecOps Architect

PwC

Toronto, Ontario, Canada (On-Site)
4 Months ago
HackerOne - Technical Engagement Manager

HackerOne

India (Remote)
3 Months ago
PwC - IN-Senior Associate _OT Security _OT Security _ Advisory _Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
3 Months ago
PwC - Asistente de Auditoría en Tecnología de Información

PwC

San José, San José Province, Costa Rica (On-Site)
4 Months ago
Tekion Corp - Security Engineer II

Tekion Corp

Bengaluru, Karnataka, India (Hybrid)
3 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Amazon - SDE-II, Ring Product Development ( Level 5), Ring

Amazon

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Salesforce - Technical Architect - Core

Salesforce

Tokyo, Japan (Remote)
4 Months ago
Nagarro - Staff Engineer, Ruby on Rails

Nagarro

India (Remote)
3 Months ago
Flutter International - Security Engineer III

Flutter International

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Sinch - Managed Services Engineer/Sentinel

Sinch

Kalmar, Kalmar County, Sweden (Hybrid)
3 Months ago
Saviynt - Sr. Infrastructure Engineer, Support Operations - Federal

Saviynt

Atlanta, Georgia, United States (Hybrid)
3 Months ago
Paypay - Android Engineer

Paypay

(Remote)
3 Months ago
Nisum - Java Developer - A6560

Nisum

Hyderabad, Telangana, India (Hybrid)
3 Months ago
Unico Connect - Senior NodeJS Developer

Unico Connect

Mumbai, Maharashtra, India (On-Site)
5 Months ago
Trackman - Lead iOS App Developer

Trackman

Denmark (On-Site)
5 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Santa Monica, California, United States

Hasbro - Director of Cyber Security Operations

Hasbro

Pawtucket, Rhode Island, United States (Hybrid)
3 Months ago
ByteDance - Senior Data Scientist - Global E-Commerce - Supply Chain & Logistics

ByteDance

Seattle, Washington, United States (On-Site)
3 Months ago
The Walt Disney Company - Senior Solutions Engineer - Ad Platforms

The Walt Disney Company

San Francisco, California, United States (On-Site)
3 Months ago
Fluence - SCADA Engineer

Fluence

Alpharetta, Georgia, United States (Hybrid)
4 Months ago
The Walt Disney Company - Senior Principal Software Engineer

The Walt Disney Company

San Francisco, California, United States (On-Site)
3 Months ago
Netflix - Associate, FS&A, Products & Technology - Product Discovery & Promotion

Netflix

Los Gatos, California, United States (On-Site)
3 Months ago
Salesforce - Senior Software Engineer, Search Infrastructure Data Engineering - Slack

Salesforce

Atlanta, Georgia, United States (On-Site)
4 Months ago
xplor - Outside Sales Account Executive, West

xplor

Fredericksburg, Texas, United States (On-Site)
3 Months ago
Warner Bros Discovery - Back of House Associate - Harry Potter Flagship (REG PT)

Warner Bros Discovery

New York, New York, United States (On-Site)
2 Months ago
Meta - Technical Program Manager, Software Engineering Infrastructure

Meta

Menlo Park, California, United States (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Google - Staff Security Engineer

Google

Zürich, Zurich, Switzerland (On-Site)
3 Months ago
PwC - IN-Associate – Sales Co-ordinator-Ms Dynamics– Advisory  - Bangalore

PwC

Mumbai, Maharashtra, India (On-Site)
4 Months ago
ION - Network Security Engineer

ION

Rome, Lazio, Italy (Hybrid)
4 Months ago
CloudLinux - Middle/Senior Python Developer with Security Expertise (worldwide remote)

CloudLinux

İstanbul, İstanbul, Türkiye (Remote)
3 Months ago
PwC - Cybersecurity-IAM - CyberArk Implementation- Associate

PwC

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Egnyte - Sr Solutions Engineer - AEC

Egnyte

Raleigh, North Carolina, United States (On-Site)
3 Months ago
Balbix - Senior/Staff/Principal Full Stack Engineer

Balbix

Bengaluru, Karnataka, India (On-Site)
3 Months ago
PwC - Manager/Senior Manager Security Architect

PwC

Zürich, Zurich, Switzerland (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Santa Monica, California, United States (On-Site)

Philadelphia, Pennsylvania, United States (On-Site)

Santa Monica, California, United States (Hybrid)

Santa Monica, California, United States (On-Site)

Santa Monica, California, United States (On-Site)

Los Angeles, California, United States (On-Site)

Santa Monica, California, United States (On-Site)

Beverly Hills, California, United States (On-Site)

View All Jobs

Get notified when new jobs are added by Universal Music

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug