Software Security Director

3 Days ago • 10-15 Years

About the job

SummaryBy Outscal

At Cadence, we hire and develop leaders and innovators who want to make an impact on the world of technology.

Cadence’s Information Security team is seeking a Software Security Director. This role will focus on Cloud and on-premise Application Security controls including WAF and CDN tools.  Additionally, this is truly a proactive software security role that will ensure security tool integration at the source code repo, build, and artifactory level.  As a member of the Information Security team, this role will manage the secure software develop life cycle, including DAST, SAST, SCA, penetration testing, and attack surface management.   

This role reports to the CISO and will interface directly with development teams. Of course, there is broad exposure to other aspects of information security related tasks such as incident response, vulnerability management, and deployment of security solutions. The successful candidate for this position is a highly motivated individual with a strong Application Development and Configuration Management/DevOps background that wants to educate and build a software security program.

Key Deliverables and Responsibilities (include but are not limited to the following):

  • Perform operational support for AWS WAF configurations – updating whitelists and creating security automation web ACLs to protect Internet facing endpoints and applications.

  • Perform operational support for Azure WAF configurations

  • Automate Dynamic Application Security Testing (DAST) in the CI/CD pipeline. 

  • Perform manual penetration tests on web applications

  • Experience with GitHub

  • Maintain Cloudflare DDOS protections and WAF configurations.

  • Attend enterprise architecture reviews to standardize and secure new deployments.

Qualifications and Special Skills Required

  • Bachelor’s degree in computer science or engineering field or equivalent combination of education and relevant experience.

  • 10 -15 years of software security experience and leading a team.

  • A passion to learn and educate others on how to build secure software.

  • Ability to work in a group setting and independently

  • Experience with Jira IT ticketing systems.

  • Good working knowledge in scripting language, Python, PowerShell, etc.

  • Strong understanding of Linux/UNIX and Windows based operating systems and networks.

Strong working knowledge of Application security concepts and technologies such as:

  • Experience in OWASP Top 10 and usage of common AppSec testing tools.

  • Experience of Secure by Design concepts and threat modeling

  • Knowledge of common security libraries, security controls, and common security flaws.

  • Experience in application penetration testing techniques and tools

  • Knowledge of application technologies including Web applications, Web services, XML, SOA, AJAX, JSON, and Web scanning tools

  • Open Source Security (OSS) - Software Composition Analysis (SCA)

  • Static Application Security Testing (SAST)

  • Dynamic Application Security Testing (DAST)

  • Security Architecture Review - Threat Modeling

  • AWS and Azure WAF Configuration and whitelisting

  • Cloudflare DDOS configuration and operation

  • Manual Penetration Testing

  • Penetration testing with 3rd party vendors

  • Host level vulnerability Scanning

  • Web application security training course development and delivery

Preferred Certifications:

  • Certified Information Systems Security Professional (CISSP)

  • SANS GIAC certifications

  • Amazon Web Services, Azure, Google Cloud Platform

The annual salary range for California is $161,000 to $299,000. You may also be eligible to receive incentive compensation: bonus, equity, and benefits. Sales positions generally offer a competitive On Target Earnings (OTE) incentive compensation structure. Please note that the salary range is a guideline and compensation may vary based on factors such as qualifications, skill level, competencies and work location. Our benefits programs include: paid vacation and paid holidays, 401(k) plan with employer match, employee stock purchase plan, a variety of medical, dental and vision plan options, and more.

We’re doing work that matters. Help us solve what others can’t.

About The Company

Uttar Pradesh, India (On-Site)

Silesian Voivodeship, Poland (On-Site)

California, United States (On-Site)

California, United States (On-Site)

California, United States (On-Site)

Hsinchu City, Taiwan (On-Site)

Hsinchu City, Taiwan (On-Site)

Jiangsu, China (On-Site)

Hsinchu City, Taiwan (On-Site)

Karnataka, India (On-Site)

View All Jobs

Similar Jobs

Similar Skill Jobs

Aristocrat Gaming - Team Lead – Global Infrastructure Support

New South Wales, Australia (Hybrid)

Electronic Arts - Associate Technical Art Director

Shanghai, China (On-Site)

Electronic Arts - Software Engineer - EA Sports FC

England, United Kingdom (On-Site)

Electronic Arts - Producer - EA SPORTS™ FC

Bucharest, Romania Southam, Uk (On-Site)

Easygo - Software Development Engineer, Engagement

Victoria, Australia (On-Site)

pubgemea - Network Administrator

North Holland, Netherlands (On-Site)

Electronic Arts - Software Engineer

Telangana, India (On-Site)

Jobs in San Jose, California, United States

Trek - Production Technician/Service Advisor

Washington, United States (On-Site)

Overwolf - Brand Partnerships Director Central

Illinois, United States (On-Site)

PlayStation Global - Business Planning & Operations Manager

California, United States (Hybrid)

Intrepid Studios, Inc - Human Resources Manager

California, United States (On-Site)

Samsung Semiconductor - Staff Engineer, DRAM Design

California, United States (On-Site)

Supercell - Licensing Manager, Consumer Products & Partnerships

California, United States (Hybrid)

Supercell - Marketing Manager, LATAM

California, United States (Hybrid)

Supercell - Community Marketing, Entertainment and Partnerships

California, United States (On-Site)

Software Engineering Jobs

Aristocrat Gaming - Team Lead – Global Infrastructure Support

New South Wales, Australia (Hybrid)

Electronic Arts - Software Engineer - EA Sports FC

England, United Kingdom (On-Site)

Electronic Arts - Producer - EA SPORTS™ FC

Bucharest, Romania Southam, Uk (On-Site)

Easygo - Software Development Engineer, Engagement

Victoria, Australia (On-Site)

pubgemea - Network Administrator

North Holland, Netherlands (On-Site)

Electronic Arts - Software Engineer

Telangana, India (On-Site)

Zynga - Software Engineer (Live-ops) - Gram Games

England, United Kingdom (On-Site)

Zynga - Mobile Game Engineer

İstanbul, Türkiye (On-Site)

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug