Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Product Security Lead image - Rise Careers
Job details

Product Security Lead

About Swoop:

At Swoop, we’re on a mission to rapidly integrate our most critical infrastructure, National Security assets, and leading-edge innovation - a mission that fundamentally changes the future of how we connect. Working in stealth mode, our team has developed and fielded SwoopOS—an integrated platform of interoperable products to map, secure, and intelligently orchestrate device infrastructure at the edge. Whether it’s legacy or next gen equipment, Swoop allows systems to be interoperable, modernized, and their purposes reimagined all through software. If you want to be a part of an incredible team—high energy and creative, disruptive with exquisite technical acumen, and bounded by a core commitment to integrity and National Security…apply today!


Your Impact:

We are looking for an experienced Product Security Lead to drive the security of our products across the software development lifecycle. In this role, you will be responsible for defining and implementing security practices that ensure the confidentiality, integrity, and availability of our products and services. You will collaborate closely with engineering, DevOps, product, and compliance teams to embed security into product design and delivery, enabling secure innovation at scale.


What You’ll Do:

  • Security Architecture & Design: Partner with engineering and product teams to incorporate secure design principles and threat modeling into product planning and architecture.

  • Secure SDLC (Software Development Lifecycle): Establish and enforce security checkpoints across the SDLC, including secure coding guidelines, automated code scanning, and risk-based review processes.

  • Application Security: Oversee the implementation and integration of static and dynamic application security testing (SAST/DAST), software composition analysis (SCA), and manual code reviews.

  • Product Threat Modeling: Lead threat modeling exercises to proactively identify and mitigate risks during the early stages of design and development.

  • Security Tooling & Automation: Select, deploy, and manage security tools to automate detection and mitigation of vulnerabilities across CI/CD pipelines.

  • Vulnerability Management: Coordinate product vulnerability assessments, triage findings, and work with developers to remediate security issues promptly.

  • Incident Response: Lead the security incident response process for product-related threats, ensuring root cause analysis and lessons learned are captured.

  • Security Champion Program: Build and lead a security champions program to scale security awareness and ownership across engineering teams.

  • Compliance & Privacy: Ensure products align with applicable regulatory and compliance standards such as SOC2, GDPR, HIPAA, and ISO 27001.

  • Risk Assessment & Governance: Continuously assess security risks within products and provide clear, actionable guidance to reduce risk.

  • Collaboration: Serve as the primary liaison between product, engineering, compliance, and security leadership to align priorities and strategies.

You Should Have:

Technical Skills:

  • Application & Product Security: In-depth experience securing modern web applications, APIs, and backend services across a microservices architecture.

  • Security Tools: Hands-on experience with tools such as:

    • SAST: Checkmarx, Veracode, or SonarQube

    • DAST: Burp Suite, OWASP ZAP

    • SCA: Snyk, WhiteSource, or Dependency-Check

    • Threat Modeling: Microsoft Threat Modeling Tool, IriusRisk

  • Secure Coding Practices: Strong knowledge of OWASP Top 10, CWE/SANS Top 25, and common secure coding standards for languages such as JavaScript, Python, Go, and Java.

  • CI/CD Security: Experience integrating security tools into CI/CD pipelines (e.g., GitHub Actions, GitLab CI/CD, Jenkins).

  • Cloud Security: Familiarity with securing applications deployed on cloud platforms like AWS, GCP, or Azure.

  • IAM & Authorization: Understanding of OAuth2, OIDC, and RBAC concepts within application security contexts.

  • Penetration Testing & Code Review: Ability to perform or coordinate hands-on penetration testing and code reviews for security.

Soft Skills:

  • Strong leadership and stakeholder management skills.

  • Excellent written and verbal communication skills.

  • Ability to explain complex security topics in business-friendly terms.

  • Passion for mentoring and building a security-conscious engineering culture.

  • Comfortable working in fast-paced, agile environments.

Bonus if you have:

  • Certifications:

    • Certified Information Systems Security Professional (CISSP)

    • Offensive Security Certified Professional (OSCP)

    • GIAC Web Application Penetration Tester (GWAPT)

    • Certified Secure Software Lifecycle Professional (CSSLP)

  • Experience: 5+ years in application/product security roles, with at least 2 years in a technical leadership or staff-level position.

  • Regulatory Compliance: Familiarity with security and privacy compliance frameworks such as SOC2, ISO 27001, PCI-DSS, and GDPR.

  • Security by Design: Track record of embedding security into product development processes at scale.

Swoop Technologies is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, age, national origin, disability, protected veteran status, gender identity or any other factor protected by applicable federal, state, or local laws.

Average salary estimate

$150000 / YEARLY (est.)
min
max
$120000K
$180000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Similar Jobs
Photo of the Rise User
Posted 23 hours ago
Inclusive & Diverse
Empathetic
Collaboration over Competition
Growth & Learning
Transparent & Candid
Medical Insurance
Dental Insurance
Mental Health Resources
Life insurance
Disability Insurance
Child Care stipend
Employee Resource Groups
Learning & Development

Lead innovative product management initiatives to strengthen risk controls and compliance at American Express in a hybrid work setting.

Lead and evolve Bridgestone's CB2 digital engagement portal to enhance collaboration, content strategy, and user experience.

Photo of the Rise User
Posted 9 hours ago

Lead the strategic development and management of FiscalNote's data products to deliver innovative, data-driven solutions in a remote, collaborative environment.

Photo of the Rise User
American Express Hybrid New York, New York, United States
Posted 11 hours ago
Inclusive & Diverse
Empathetic
Collaboration over Competition
Growth & Learning
Transparent & Candid
Medical Insurance
Dental Insurance
Mental Health Resources
Life insurance
Disability Insurance
Child Care stipend
Employee Resource Groups
Learning & Development

Lead a seasoned product team at American Express to define and deliver innovative onboarding strategies and scalable platforms that drive customer growth and revenue.

Posted 14 hours ago

Lead product funnel optimization and analytics at ClarityPay, leveraging data-driven insights to enhance consumer lending experiences in a fast-growing fintech environment.

Photo of the Rise User
Pfizer Hybrid United States - Pennsylvania - Collegeville
Posted 17 hours ago

Lead Pfizer’s US Vaccines data product management team to advance data governance and analytics capabilities, driving impactful insights and innovation in commercial analytics.

Technical Product Owner role at an early-stage fintech startup focused on building scalable embedded payment solutions.

Photo of the Rise User
Posted 23 hours ago
Inclusive & Diverse
Empathetic
Collaboration over Competition
Growth & Learning
Transparent & Candid
Medical Insurance
Dental Insurance
Mental Health Resources
Life insurance
Disability Insurance
Child Care stipend
Employee Resource Groups
Learning & Development

Drive innovation and lead Agile teams as Manager of Digital Product Management at American Express, focusing on Loyalty API growth and transformation.

Photo of the Rise User
Posted 14 hours ago
Photo of the Rise User
Posted 23 hours ago
Inclusive & Diverse
Empathetic
Collaboration over Competition
Growth & Learning
Transparent & Candid
Medical Insurance
Dental Insurance
Mental Health Resources
Life insurance
Disability Insurance
Child Care stipend
Employee Resource Groups
Learning & Development

Contribute as a Senior Associate Product Manager at American Express, driving the development of data tracking and consent management solutions within a dynamic, enterprise-scale digital environment.

Photo of the Rise User

OCLC is looking for a Senior Product Manager to lead their Digital Services portfolio, focusing on strategic innovation and management of digital workflows for libraries and cultural heritage organizations.

Photo of the Rise User
Customer-Centric
Empathetic
Collaboration over Competition
Feedback Forward
Inclusive & Diverse
Mission Driven
Diversity of Opinions
Rise from Within
Medical Insurance
Paid Time-Off
Dental Insurance
Vision Insurance
Maternity Leave
Mental Health Resources
Equity
401K Matching
Employee Resource Groups
Performance Bonus
Education Stipend
Life insurance

Lead the vision and roadmap for AI-driven video products at Atlassian's Loom Enterprise, serving major enterprise clients and fostering cross-functional collaboration.

Photo of the Rise User

Experienced Technical Product Owner needed to lead payment product delivery at Rainforest, a fintech startup revolutionizing embedded payments for vertical SaaS platforms.

MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
EMPLOYMENT TYPE
Full-time, unknown
DATE POSTED
July 30, 2025
Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!