×
Register Here to Apply for Jobs or Post Jobs. X

Director, Supply Chain Security

Job in Austin, Travis County, Texas, 78701, USA
Listing for: Ameristar Perimeter Security USA Inc., An Assa Abloy Group Brand
Full Time position
Listed on 2026-07-21
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Job Description & How to Apply Below

Director Supply Chain Security

As part of the Product Security and Privacy team, you will own and lead the corporate-wide Product Supply Chain Security program.

You will lead a team that will establish and operationalize the standards, policies, and technical capabilities required to ensure the integrity, security, and trustworthiness of software from development through build, distribution, and deployment across a diverse portfolio of products and environments.

Accountable for the consistency, scalability, and defensibility of supply chain security practices, you will ensure that controls are not only defined but effectively implemented and enforced in partnership with IT and Information Security teams.

You will operate at a strategic level, building and leading a team responsible for securing source code, build systems, third-party components, and deployment environments, while enabling product teams to adopt secure-by-design practices through standardized architectures and processes.

HID powers the trusted identities of the world's people, places, and things, allowing people to transact safely, work productively and travel freely.

We are a high-tech software company headquartered in Austin, TX, with over 4,500 worldwide employees.

As our Director Supply Chain Security, you'll support HID's success by:

  • Defining and maintaining the enterprise Supply Chain Security framework, including policies, standards, and processes governing source code, building systems, artifacts, and deployment environments.
  • Establishing and enforcing standards for secure storage, accessing, and transferring of source code, including repository protections, branching controls, and access governance.
  • Defining security requirements for CI/CD pipelines and building environments, including isolation, hardening, least-privilege access, and protection against tampering.
  • Defining and operationalizing software provenance and traceability requirements to ensure the authenticity and integrity of software throughout the lifecycle.
  • Establishing processes and standards for evaluating and managing third-party vendors, suppliers, and open source components, including security assessment and ongoing risk monitoring.
  • Defining and enforcing SBOM requirements, including generation, storage, and usage in vulnerability and compliance processes.
  • Coordinating with operations and manufacturing teams, establishing security standards and validation processes for manufacturing, factory, and deployment environments where software is integrated into products.
  • Defining and governing the secure management of secrets, keys, and cryptographic material used in development and build systems, in coordination with enterprise security teams.
  • Partnering with IT and Information Security teams to ensure supply chain security controls are implemented, monitored, and enforced across development and build environments.
  • Collaborating with Product Security and Privacy Architects to embed secure coding and security controls into building environments and CI/CD pipelines through standardized "paved road" solutions.
  • Establishing mechanisms to validate control effectiveness and detect non-compliance or drift across pipelines, build systems, and artifact repositories.
  • Developing metrics, reporting, and dashboards to measure supply chain security posture, control coverage, and adherence across the organization.
  • Providing executive-level reporting and insights on software supply chain risk and control effectiveness.
  • Leading audit and assessment readiness for supply chain security controls and ensure alignment with regulatory requirements, including the EU Cyber Resilience Act (CRA).
  • Building and leading a team responsible for supply chain security architecture, tooling, governance, and operational coordination.
  • Acting as the central authority for software supply chain security across the organization.
  • Establishing a scalable, federated operating model enabling product teams to securely develop, build, and deploy software while adhering to centralized standards.
  • Partnering with Engineering, Dev Ops, Product Security, Legal, Procurement, and Compliance teams to ensure consistent adoption and execution of supply chain security practices.
  • Ensuring consistent implementation of supply chain security controls across a large and diverse product portfolio and multiple technology domains.
  • Providing strategic direction for continuous improvement of supply chain security capabilities, including tooling, processes, and organizational practices.
  • Supporting regulatory audits, customer inquiries, and internal assessments related to software supply chain security.

Your Experience and Background include:

  • Experience designing, building, or leading software supply chain security, Dev Sec Ops  security, or related programs within a product security or application security context.
  • Strong understanding of software development life cycles, CI/CD pipelines, and build systems.
  • Experience defining and implementing security controls for…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary