Vice President - Global Product Security
Listed on 2026-08-04
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Our world is transforming, and PTC is leading the way.
Our software brings the physical and digital worlds together, enabling companies to improve operations, create better products, and empower people in all aspects of their business. Our people make all the difference in our success. Today, we are a global team of nearly 7,000 and our main objective is to create opportunities for our team members to explore, learn, and grow – all while seeing their ideas come to life and celebrating the differences that make us who we are and the work we do possible.
PTC is seeking a Vice President – Global Product Security to define and lead the company’s product security strategy across its global portfolio. Reporting to the Chief Product Officer, they will ensure security is embedded throughout the product lifecycle spanning architecture and development through release, deployment, and ongoing vulnerability management. You will partner closely with Product, Engineering, Cloud Operations, Information Security, Legal, and Customer Success to strengthen product security, reduce risk, and maintain customer trust.
This leader must combine deep application security expertise with judgment and influence to establish consistent standards across a complex global product organization.
Define and execute a comprehensive product security strategy aligned with PTC’s product, cloud, and AI priorities. Establish security standards, policies, and governance across the product development lifecycle. Embed security into product architecture, engineering practices, release processes, and acquisition integration. Advise the Chief Product Officer and executive leadership on product security risks, priorities, investments, and emerging threats. Establish clear metrics and reporting to measure product security posture, vulnerability trends, remediation performance, and organizational readiness.
ApplicationSecurity
Lead the company’s application security program across cloud, SaaS, on-premises, and connected products. Establish secure development standards based on recognized frameworks, including OWASP. Oversee application security testing using software composition analysis, static application security testing, dynamic application security testing, and related tools, including Black Duck. Partner with Engineering to incorporate security testing and automated controls into development and CI/CD workflows. Ensure vulnerabilities are consistently identified, prioritized, remediated, and validated based on severity and customer risk.
Guide secure architecture reviews, threat modeling, code reviews, and security design decisions for new and existing products.
Lead PTC’s product penetration-testing strategy, including the selection and management of internal and external testing resources. Establish and oversee product vulnerability management and Product Security Incident Response Team processes. Define policies governing responsible disclosure, vulnerability intake, remediation timelines, customer communication, and the publication of Common Vulnerabilities and Exposures. Serve as the senior product security authority during significant vulnerabilities or product-related security incidents.
Ensure clear coordination among Product, Engineering, Information Security, Legal, Communications, and Customer Success during security events.
Assess how AI is changing application vulnerability discovery, security testing, attack methods, and remediation. Define appropriate security standards and testing requirements for AI-enabled products and functionality. Evaluate opportunities to use AI to improve vulnerability detection, prioritization, and response. Anticipate emerging product security risks and translate them into practical product and engineering requirements.
Leadership and PartnershipBuild and lead a high-performing product security organization with the expertise and scale required to support PTC’s portfolio. Create clear accountability for product security while strengthening security ownership within Product…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).