Product Security Lead
Publicado en 2026-09-23
-
TI/Tecnología
Seguridad cibernética, Seguridad de la Información, Gerente de seguridad, Ingeniero de sistemas
Asthe Product Security Lead of Materialise Software, you will be accountable for the overall security posture and regulatory compliance of our products.
You translate complex security regulations, customer expectations, and risk into clear decisions, priorities, and trade-offs, enabling product and engineering teams to deliver securely own the security outcomes and risk decisions, not day-to-day security implementation.
- Overall product security posture across our portfolio(CO-AM Platform,Magics)
- Interpretation of security legislation, standards, and customer requirements
(e.g.,ISO 27001, NIS2, NIST-based frameworks) - Definition of product securityobjectivesand non-functional requirements
- Explicit risk acceptance and exception management
- Product security strategy, roadmap, and prioritization
- External security posture towards customers, auditors, and regulators
- Assess the applicability of security regulations and standards
- Define pragmatic compliance intent and scope
Identify, document, and accept residual product securityrisks[ - Ensure risks and exceptions are explicit, time-bounded, and owned
- Define andmaintaina product security strategy aligned with business goals
- Translate regulatory and risk drivers into a prioritized security roadmap
- Align security priorities with product and engineering planning cycles
- Partnercloselywith the:
- Product Management Team on roadmap alignment and customer commitments
- Engineering Management Team on delivery realities and investment trade-offs
- Dev Sec Ops Lead on platform-level security objectives
- Security Architect on translating intent into secure designs
- CISO to align product security decisions with enterprise risk posture and regulatory obligations where applicable
- Act as an escalation point when security, product, and delivery priorities conflict
- Support the Engineering Delivery teams and Security Champions, such as improving their understanding of the security checklist
- Review security metrics and evidence produced by security engineering
- Support audits, certifications, and customer security assessments
Represent the company’s product security posture externally when required
- Review code or manage vulnerabilities day-to-day
- Directlymanagesecurity champions or software engineers
- Strong understanding of product and cloud security in modern Dev Ops environments
- Experience working with security regulations and frameworks
(ISO 27001, NIS2, SOC 2, NIST, FedRAMP, or similar) - Proven ability to make and defend risk-based decisions
- Credibility with senior engineering and product stakeholders
- Clear written and verbal communication, especially around trade-offs
- 8+ years in software engineering, product security, or security leadership roles
- Experience in product-centric, engineering-driven organizations
- Exposure to regulated environments is strongly preferred
- Security expectations are clear and predictable for product and engineering
- Risk acceptance is explicit, documented, and rarely escalated late
- Engineering teams ship securely by default using platform guardrails
- Audits and customer security reviews are uneventful and well-prepared
Healthy life-work balance
When creating a better and healthier world, a good place to start is with yourself. That's why we encourage our employees to prioritize their overall well-being, fostering physical fitness, mental resilience, and social connections through a range of workshops, sports activities, and other events and initiatives that contribute to a balanced and fulfilling work-life harmony.
Hybrid working & flexibility
Personal growth and career advancement
Team building
Innovation is key
Location and type of contract- Full-time
- Hybrid
- Mid-senior level
(Si este trabajo está en su jurisdicción, entonces puede estar usando un Proxy o VPN para acceder a este sitio, para seguir avanzando, debe cambiar su conectividad a otro dispositivo móvil o PC).