Cox Automotive
26 days ago
Company
Cox Communications, Inc.Job Family Group
Job Profile
Management Level
Flexible Work Option
Travel %
Work Shift
Compensation
Compensation includes a base salary of $106,700.00 - $177,900.00. The base salary may vary within the anticipated base pay range based on factors such as the ultimate location of the position and the selected candidate’s knowledge, skills, and abilities. Position may be eligible for additional compensation that may include an incentive program.Job Description
Most of us grew up with big dreams about changing the world. Isn’t it exciting to think that you could still have the opportunity to do just that?
The Cox Communication (CCI) Product Security team is looking for a Cox Mobile Product Security Lead to drive the next evolution in securing our mobile products to protect our customers for cyber threats. You’ll provide thought leadership and be responsible for the security of the mobile product development lifecycle. You bring the talent and the ingenuity; we’ll bring the technology and the great workplace environment. Ready to partner with people who care as much about your future as you do? If so, keep reading!
What You’ll Do
You’ll be a key part of our broader initiative: to secure our mobile product portfolio and protect our customers from cyber threats. You’ll support various development teams while using a risk-centric approach. Additionally, you’ll provide security consulting. Other responsibilities include:
- Supporting the release of Cox mobile products while following our product security program.
- Bringing together product development teams and cyber security to achieve a high level of cyber security quality.
- Supporting efforts to institutionalize secure product lifecycle practices.
- Institutionalize practices to identify and quantify cyber risk within our products.
- Engaging with other information security teams to create action plans based on results of product security reviews.
- Supporting initiatives to maintain a product inventory, lifecycle status, risk profile and remediation.
- Maintaining relationships with the technical product security testing teams.
- Providing insights into the maintenance of product security procedures, directives, and technology controls.
- Drive integration of Product Security Program initiatives into relevant stages of the product development lifecycle
- Ensuring information security artifacts align with industry standards or regulatory requirements.
- Providing guidance to prioritize cyber-risk remediation and mitigation activities.
- Supporting efforts to maintain and report product security metrics throughout the development life cycle.
- Maintaining current knowledge on security best practices, procedures, directives and technology controls.
- Providing training, coaching, and consultation on secure development practices to the business and product development teams.
- Communicating with business unit leadership on matters related to security risk within mobile products.
Minimum:
- A bachelor’s degree in Cybersecurity, Computer Science, or related field + 6 years of relevant working experience.
- 4+ years of experience with information security controls or security risk management.
- 2+ years of experience in product development or product lifecycle management.
- Demonstrated ability to communicate highly technical concepts to non-technical audiences.
- The ability to translate business objectives into cybersecurity terms and vice versa.
- Strong knowledge of Mobile security for Android or iOS operating systems.
- Strong knowledge across the technology stack such as web protocols, multiple operating systems, hypervisors and distributed systems architecture.
Preferred:
- A master’s degree in computer science, cybersecurity or a related field.
- Experience with network or mobile security.
- Experience conducting security product reviews.
- Experience creating executive level presentations.
- Experience with both automated and manual secure code reviews.
- Understanding of ”secure by design” principles and secure development.
- Knowledge of current cybersecurity trends and remediation or mitigation approaches.
- Certification related to information security and privacy (CSSLP, CISSP, etc.)
- Experience releasing products that balance business objectives and technical features while mitigating cyber risk.
Benefits
About Us