Full-Time

Director – Product Security Strategy and Enablement

Deadline 8/31/26
IHG

IHG

Compensation Overview

$159.8k - $195k/yr

Atlanta, GA, USA

Hybrid

Three days on-site per week.

Category
IT & Security (2)
,
Required Skills
Threat modeling
Vulnerability Analysis
Risk Management

Get referred to IHG

See people who can refer or advise you

Requirements
  • 10+ years of progressive security experience across multiple disciplines, technologies, or processes, including 5+ years establishing organizational structure and managing subordinate teams.
  • Substantial leadership-level experience across product and application security domains — vulnerability management, application and API security, exposure and attack-surface management, and remediation operations — with a thorough understanding of the software and system development lifecycle.
  • Expert in secure SDLC governance, security controls, and quality gates, with familiarity across the full lifecycle tooling ecosystem including SAST, SCA, DAST, secrets detection, API security, cloud posture, and attack-surface and asset-management tooling.
  • Demonstrated experience defining and operating an operating model — processes, governance, decision forums, and execution cadence — across multiple functions or workstreams, with strong portfolio and program management capability from conception through implementation (milestones, risks, success criteria).
  • Proven experience owning budgets, tool portfolios, statements of work, vendor contracts, and vendor performance, with general knowledge of budgeting, cost estimation, and scheduling; skilled at defining KPIs and metrics and driving maturity improvement with strong executive reporting.
  • Working knowledge of compliance and audit enablement for product-security-related controls (e.g., PCI, SOX), including evidence coordination and control monitoring, and familiarity applying automation and AI-enabled capabilities to scale security workflows.
  • Demonstrated effectiveness in executive presentation, escalation management, and leadership by influence — able to build relationships with senior technology and business leaders, adapt to multiple management styles, and communicate highly technical information clearly across all levels of the organization.
  • Proven change agent and team builder — result-focused, action-oriented, and able to manage changing priorities in a highly dynamic environment while leading, developing, and inspiring multi-disciplined teams.
Responsibilities
  • Set and operationalize Product Security strategy across people, process, and tooling — defining the roadmap, setting OKRs, and running planning, prioritization, and review cadences that translate strategy into execution.
  • Establish and operate the Product Security operating model — including documented processes, decision forums, decision rights, execution standards, and governance cadences across all workstreams.
  • Provide portfolio-level structure and executive visibility into outcomes — ensuring work across Vulnerability Management, Exposure Management, Application Security, and Remediation and Response is prioritized, tracked, and consistently reported through KPIs, leadership updates, and monthly and quarterly business reviews.
  • Own portfolio, budget, and vendor management — including budget forecasting, the security tool portfolio, renewals, statements of work, and vendor performance — in partnership with Finance and Procurement.
  • Define, enforce, and mature secure SDLC governance — establishing mandatory security requirements and quality gates across planning, design, build, release, and operate; governing threat modeling standards and integration; and managing exceptions, risk acceptances, compensating controls, and their expirations.
  • Lead continuous compliance and audit enablement for product-security-related controls — coordinating evidence, embedding and monitoring controls, and driving remediation of audit findings to closure.
  • Govern large and/or complex remediation programs — providing program-level structure, milestones, and escalation paths — and enable scale and efficiency through process standardization, automation, and AI-enabled capabilities that reduce manual effort and increase execution consistency.
  • Lead, coach, and develop the portfolio, programs, and compliance functions while partnering with Product Security leaders and cross-functional stakeholders across ETS, the broader Product and Technology organization, business information security officers, centers of excellence, Finance, and Procurement to align strategy, delivery, and measurement.

Company Size

N/A

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A

Get referred to IHG

See people who can refer or advise you