More jobs:
Job Description & How to Apply Below
At Mizuho, we provide the stability of an international industry leader with the career trajectory of a growing business. Our steady, strategic growth gives our people at all levels rewarding degrees of responsibility and richer work experience than a boutique firm or an established giant could offer alone.
It’s the local expertise of our employees that makes our global network so powerful. By collaborating with colleagues and clients who share the same ambition and drive, you can amplify your sphere of influence and base of knowledge as part of one of the largest banks in the world.
Summary:
Mizuho is seeking a senior, hands-on Product Security Lead to drive security strategy across enterprise applications, platforms, cloud services, and software delivery ecosystems. This role is responsible for embedding secure-by-design and secure-by-default principles throughout the software development lifecycle while enabling engineering teams to deliver secure, resilient, and compliant solutions at scale.
Working closely with Engineering, Product, Cloud, Architecture, and Risk teams, you will lead security architecture, Dev Sec Ops , cloud security, and software supply chain initiatives that reduce risk and strengthen cyber resilience.
Key Responsibilities:
Define and execute Product & Platform Security strategy, standards, governance, and roadmaps across applications, APIs, cloud-native services, SaaS platforms, and shared technology ecosystems.
Lead security architecture reviews, threat modeling, secure SDLC practices, and risk-based security decision-making to ensure secure-by-design product development.
Establish secure engineering patterns and guardrails covering identity, access management, encryption, secrets management, logging, resilience, and cloud-native architectures.
Drive Dev Sec Ops maturity by integrating automated security controls into CI/CD pipelines, application development, cloud platforms, containers, APIs, and infrastructure-as-code workflows.
Strengthen software supply chain security through governance of dependencies, artifacts, SBOMs, code provenance, vulnerability management, and secure development practices.
Partner with Engineering, Cloud, Platform Security, and Vulnerability Management teams to reduce security risk, improve remediation outcomes, and operationalize security controls tor security engineers and security champions while providing strategic guidance on security risks, technical debt, investment priorities, and emerging threats.
Required Qualifications:
12+ years of experience in Product Security, Application Security, Security Architecture, Cloud Security, Dev Sec Ops , or related security engineering disciplines.
Demonstrated experience leading Product Security, Application Security, or Secure Development programs across large-scale engineering organizations and complex technology environments.
Deep expertise in secure SDLC, threat modeling, application security, cloud security, software supply chain security, and security architecture.
Advise on security considerations for AI-enabled applications, generative AI solutions, machine learning platforms, and emerging technologies.
Strong knowledge of OWASP Top 10, OWASP API Security Top 10, distributed application security, modern attack techniques, and secure software engineering practices.
Experience reviewing application architectures, APIs, cloud platforms, Kubernetes environments, CI/CD pipelines, and Infrastructure-as-Code implementations.
Ability to assess implementations developed in Java, Python, Go, JavaScript, Type Script, or similar modern programming languages.
Proven ability to influence engineering, architecture, and product teams to drive secure development practices and risk reduction without…
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×