Senior Director, Product Security
Listed on 2026-06-24
-
IT/Tech
Cybersecurity, IT Project Manager, IT Consultant
Company Overview
Docu Sign brings agreements to life. Over 1.5 million customers and more than a billion people in over 180 countries use Docu Sign solutions to accelerate the process of doing business and simplify people’s lives. With intelligent agreement management, Docu Sign unleashes business-critical data that is trapped inside of documents. Using Docu Sign’s Intelligent Agreement Management platform, companies can create, commit, and manage agreements with solutions created by the #1 company in e-signature and contract lifecycle management (CLM).
Whatyou'll do
As the most trusted brand in our industry, Docu Sign recognizes the profound importance of maintaining and enhancing customer trust in our products. The Senior Director, Product Security leads all aspects of the Docu Sign Product Security program. The Senior Director will be a product focused, technically proficient leader who manages the development of products and features to provide for the security and trust of the platform.
This role has responsibility for the secure software development lifecycle (SDLC) and continuous integration/continuous deployment (CI/CD) for products developed for customers as well as internal usage at Docu Sign.
The Senior Director and their team of security engineers and architects embed within Product, Technology, and Digital Technology teams to manage product development, security controls, and processes to ensure optimal security by design and default while supporting business objectives. The Senior Director will integrate leading security practices into all phases of product development – including planning, design, implementation, testing, deployment and maintenance – to proactively reduce vulnerabilities and broader risks.
The role will oversee developer technical designs (e.g., secure coding criteria, architectural designs, developer libraries, code reviews, etc.), as well as SDLC and CI/CD processes, gating, and execution. In particular, the Senior Director will implement leading security practices directly into the software delivery pipeline, ensuring code integrity from development to production, and mitigate risks while performing automated scanning, testing, and compliance checks at every stage and remediation as required.
The Senior Director will implement contemporary, cost-effective tools and practices to maximize efficiencies while providing appropriate technical security rigor. They will leverage emerging tools, like AI guardrails and AI-native tools that provide code context reasoning, to protect against longstanding security risks (e.g., OWASP Top 10) and more sophisticated and developing threats (e.g., OWASP Top 10 for Agentic Applications). The Senior Director will lead a robust Security Champions program to scale security awareness, implement secure coding principles, and empower developer-led code reviews and risk mitigation where appropriate.
They will work closely with Docu Sign’s Red Team and PSIRT to proactively identify and remediate vulnerabilities and systemic risks. And they will provide deep, technical expertise in leading the Product Security team, advising senior leaders, and shaping the behaviors of cross-functional teams.
This position is a people manager role reporting to the Chief Information Security Officer.
Responsibility
- Manage product security from design through release and maintenance
- Embed with Product, Technology, and Digital Technology teams to oversee product and developer technical designs; manage SDLC and CI/CD processes, gating, and standards; and ensure Docu Sign products are secure
- Maintain deep technical expertise in components/capabilities of the product ecosystem
- Maintain deep technical expertise in security threats, trends, technologies, and industry best practices (existing and emerging)
- Manage efficient, effective security solutions aligned with business needs (e.g., support continuing improvements in automating CI/CD pipelines that leverage infrastructure as code with tools like Terraform plus containerization; e.g., support secure development of Intelligent Agreement Management within the Docu Sign platform plus secure development of AI…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).