обновлено 5 дней назад
Head of Product Security (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Head of Product Security (Cybersecurity): Establishing and overseeing security strategy for Logitech’s IoT devices, mobile applications, desktop software, and cloud services with an accent on secure product lifecycles, regulatory compliance, and customer data protection. Focus on leading global product security teams, integrating Safe AI by Design, securing firmware and supply chains, and directing vulnerability management and incident response.
Location: Lausanne, Switzerland; hybrid role with a base of 3 days on site
Company
designs software-enabled hardware solutions for gaming, work, creativity, and connectivity, including IoT products and related digital services.
What you will do
- Architect and execute a global product security strategy, roadmap, policies, standards, and risk governance.
- Lead compliance with product security regulations including the EU Cyber Resilience Act and UK PSTI Act.
- Integrate Security by Design and Safe AI by Design practices across IoT, mobile, desktop, and cloud product lifecycles.
- Secure firmware, source code, production processes, supply chains, contract manufacturers, and third-party suppliers.
- Oversee penetration testing, vulnerability management, threat hunting, and product-related incident response.
- Lead and mentor the product security team and coordinate product security champions across the global organization.
Requirements
- Minimum 12 years of experience in product, application, and embedded systems security across IoT, mobile, and cloud environments.
- Advanced knowledge of secure SDLC, DevSecOps, threat modeling, security architecture reviews, SAST, DAST, SCA, binary analysis, and fuzzing.
- Experience securing firmware, embedded systems, HSMs, provisioning, and OTA updates for IoT devices.
- Deep understanding of adversarial AI, including data poisoning, model inversion, prompt injection, and related attack risks.
- Expertise in cryptographic design, PKI, key management, cryptographic agility, and post-quantum cryptography migration.
- Experience with product security regulations, supply chain governance, executive communication, team leadership, and financial management.
Culture & Benefits
- Collaborative and inclusive working environment focused on positive global impact.
- Flexible hybrid work model combining remote and on-premises collaboration.
- Comprehensive benefits varying by location.
- Support for physical, financial, emotional, intellectual, and social wellbeing.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →