Head of Application Security
Listed on 2026-08-30
-
IT/Tech
Cybersecurity, Information Security & Data Protection
About Analog Devices
Analog Devices, Inc. (NASDAQ: ADI) is a global semiconductor leader that bridges the physical and digital worlds to enable breakthroughs at the Intelligent Edge. ADI combines analog, digital, AI, and software technologies into solutions that combat climate change, reliably connect humans and the world, and help drive advancements in automation and robotics, mobility, healthcare, energy and data centers. With revenue of more than $11 billion in FY25, ADI ensures today's innovators stay Ahead of What's Possible.
Learn more at and on Linked In and X.
The leader of Application, AI and Product Security is a senior leadership role responsible for protecting the software, artificial intelligence, and products at the heart of ADI’s business. Reporting to the Chief Information Security Officer (CISO), this leader ensures that everything ADI builds and ships is secure by design - worthy of the trust of our automotive, aerospace and defense, healthcare, and industrial customers, and resilient against the most capable threat actors.
As ADI accelerates at the Intelligent Edge, embedding software, AI, and connectivity into the components the world depends on, this role makes security a competitive advantage. This role is a "build-and-scale" mandate spanning three connected disciplines. This leader will stand up and mature a developer-first application security (Dev Sec Ops ) capability across ADI’s software development lifecycle; establish a risk-managed AI security and governance program covering generative AI, large language models, and emerging agentic AI use cases;
and grow a company-wide product security practice – building on ADI’s existing product security incident response and coordinated vulnerability disclosure capabilities – for the products ADI designs, manufactures, and ships. Working across IT, LRO, and the business (Software & Digital Platforms, Engineering Enablement, Global Operations & Technology), the role connects these threads into a single, risk-managed security strategy that drives alignment, informs executive and Board decision-making, and strengthens the resilience and trustworthiness of ADI’s technology.
Sequencing matters in this role. The immediate priority is application security embedded into ADI’s Dev Ops / CI-CD environment; the near-term priority is a risk-managed AI security program, beginning with generative AI and LLM governance and controls before extending to agentic AI; and the third priority is maturing a full-scope, company-wide product security practice. The leader will establish a disciplined discovery and stakeholder-alignment period before scaling execution across all three.
Lead the strategy, build-out, and operation of ADI’s application security, AI security, and product security capabilities, including:
- Application Security (Dev Sec Ops ):
Establish and mature secure software development lifecycle (secure-SDLC) policy, standards, reference architectures, and tooling (SAST, SCA, DAST, secret scanning); harden the software supply chain – source repositories, Continuous Integration / Continuous Delivery/Deployment (CI/CD) pipelines, build systems, credentials, and dependencies – and drive software bill of materials (SBOM) generation and trusted-publishing at scale. - AI Security:
Define and operate a risk-managed AI security and governance program aligned to recognized frameworks (e.g., NIST AI RMF, ISO/IEC 42001, OWASP LLM Top 10, MITRE ATLAS), beginning with generative AI and LLM controls, and operations, and extending to secure agentic AI use cases including non-human / agent identity, action guardrails, and human-in-the-loop controls. - Product Security:
Grow a company-wide, risk-managed product security practice anchored to a secure product development lifecycle standard (e.g., IEC 62443-4-1) and embedded into the New Product Introduction (NPI) process; own and mature ADI’s Product Security Incident Response Team (PSIRT) capability, coordinated vulnerability disclosure, CVE/CVSS practice, and SBOM/HBOM strategy for shipped firmware and hardware.
Serve as a trusted strategic advisor to the CISO,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).