Director of Software Security

Cadence Design Systems

San Jose (CA)

On-site

USD 164,500 - 305,500

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Paid vacation
401(k) plan with employer match
Employee stock purchase plan
Various medical, dental, and vision plan options

Job summary

Cadence Design Systems in San Jose is looking for a Director of Software Security to lead the strategy for secure software development practices across the organization. This role focuses on driving DevSecOps transformation, ensuring compliance with regulatory frameworks, and embedding security throughout the software lifecycle.

The ideal candidate will have over 12 years of experience in cybersecurity, strong leadership skills, and expertise in regulatory compliance including CMMC and NIST. The role includes competitive compensation and a comprehensive benefits package.

Qualifications

  • 12-15+ years in cybersecurity, strong focus on application security and DevSecOps.
  • 5+ years in leadership roles.
  • Deep expertise in Secure SDLC and cloud-native architectures.
  • Experience in regulated industries like defense or healthcare.

Responsibilities

  • Define and execute enterprise DevSecOps strategy.
  • Integrate security controls into CI/CD pipelines.
  • Lead compliance initiatives for CMMC and NIST.
  • Manage and lead teams of AppSec and DevSecOps engineers.

Skills

DevSecOps Transformation
Secure Software Architecture
Regulatory Compliance (CMMC, NIST, ISO)
Application Security & Threat Modeling
Software Supply Chain Security (SBOM, SLSA)
Cloud & Container Security
Executive Communication & Strategy

Tools

SAST (Checkmarx, Veracode)
DAST (Burp Suite)
SCA (Snyk, Black Duck)
CI/CD (Jenkins, GitHub Actions)
Kubernetes
Docker

Job description

At Cadence, we hire and develop leaders and innovators who want to make an impact on the world of technology. Cadence InfoSec is seeking a Director of Software Security to lead the strategy, architecture, and execution of secure software development practices across the enterprise. This role will drive DevSecOps transformation, ensure compliance with regulatory frameworks (including CMMC), and embed security throughout the software lifecycle (SDLC).

Key Responsibilities
  • Define and execute enterprise DevSecOps strategy across all development teams
  • Integrate security controls into CI/CD pipelines (build, test, release)
  • Establish “shift-left” security practices across the SDLC
  • Drive adoption of secure coding, SAST, DAST, and SCA tools
  • Define reference architectures for secure microservices, APIs, and cloud-native apps
  • Establish security patterns for containers, Kubernetes, and serverless
  • Lead threat modeling initiatives
  • Ensure secure API design and zero trust principles
  • Lead compliance initiatives for CMMC 2.0, NIST SP 800-171r2 /800-53, ISO 27001
  • Ensure software systems meet federal, defense, and privacy regulations
  • Coordinate audits, assessments, and continuous monitoring programs
  • Implement controls for handling Controlled Unclassified Information (CUI)
  • Secure DevOps pipelines across cloud platforms: Amazon AWS, Microsoft Azure, Google Cloud, IBM Cloud, Cadence software service and products
  • Implement infrastructure-as-code (IaC) security scanning
  • Define secrets management, identity, and access controls
  • Build and scale AppSec program across all product lines
  • Define vulnerability management lifecycle (discovery → remediation → validation)
  • Establish bug bounty / responsible disclosure programs
  • Integrate security into Agile and CI/CD workflows
  • Secure software supply chain (SBOM, dependency scanning)
  • Implement artifact signing, provenance, and integrity validation
  • Define policies, standards, and secure development guidelines
  • Establish KPIs: vulnerability remediation SLA, code coverage, pipeline security
  • Align software security with enterprise risk management
  • Report posture to executive leadership and board
  • Lead teams of AppSec engineers, DevSecOps engineers, and architects
  • Partner with Engineering, Product, Legal, and Compliance teams
  • Build security champions program within development teams
  • Influence engineering culture toward security ownership
Required Qualifications
  • 12–15+ years in cybersecurity, with strong focus on application security and DevSecOps
  • 5+ years in leadership (manager/director level)
  • Deep expertise in Secure SDLC and DevSecOps pipelines, Cloud-native architectures and container security, Regulatory frameworks (CMMC, NIST, ISO)
  • Experience in regulated industries (defense, government, healthcare, fintech)
Preferred Qualifications
  • Hands‑on experience with tools such as SAST (Checkmarx, Veracode), DAST (Burp Suite), SCA (Snyk, Black Duck), CI/CD (Jenkins, GitHub Actions)
  • Familiarity with Kubernetes, Docker, and service mesh security
  • Certifications: CISSP, CSSLP, CISM, or CCSP
  • Experience with Zero Trust and identity‑first security
Key Skills
  • DevSecOps Transformation
  • Secure Software Architecture
  • Regulatory Compliance (CMMC, NIST, ISO)
  • Application Security & Threat Modeling
  • Software Supply Chain Security (SBOM, SLSA)
  • Cloud & Container Security
  • Executive Communication & Strategy
Compensation and Benefits

The annual salary range for California is $164,500 to $305,500. You may also be eligible to receive incentive compensation: bonus, equity, and benefits. Our benefits programs include paid vacation and paid holidays, 401(k) plan with employer match, employee stock purchase plan, and a variety of medical, dental and vision plan options.

Equal Employment Opportunity

Cadence is committed to equal employment opportunity throughout all levels of the organization. All qualified applicants will receive consideration for employment without regard to race, color, sex, age, national origin, religion, sexual orientation, gender identity, status as a veteran, basis of disability, or any other protected class.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Director of Software Security
Director of Software Security

Cadence • San Jose (CA)

On-site
USD 164,000 - 306,000
Paid vacation
401(k) plan with employer match
Employee stock purchase plan
+1
Software Security Architect
Software Security Architect

Cadence Design Systems • San Jose (CA)

Hybrid
USD 137,000 - 254,000
Paid vacation and holidays
401(k) plan with employer match
Employee stock purchase plan
+1
Director, Secure SDLC & DevSecOps Strategy
Director, Secure SDLC & DevSecOps Strategy

Cadence Design Systems • San Jose (CA)

On-site
USD 164,500 - 305,500
Paid vacation
401(k) plan with employer match
Employee stock purchase plan
+1
Software Security Architect
Software Security Architect

Cadence • San Jose (CA)

On-site
USD 136,000 - 254,000
Paid vacation
401(k) plan with employer match
Employee stock purchase plan
+1
Director of Secure Software & DevSecOps Leadership
Director of Secure Software & DevSecOps Leadership

Cadence • San Jose (CA)

On-site
USD 164,000 - 306,000
Paid vacation
401(k) plan with employer match
Employee stock purchase plan
+1
Cloud Security Operations Engineer
Cloud Security Operations Engineer

Cadence Design Systems • San Jose (CA)

On-site
USD 79,000 - 146,000
AI Security Architect
AI Security Architect

Cadence Design Systems • San Jose (CA)

Hybrid
USD 165,000 - 306,000
Paid vacation
401(k) plan with employer match
Employee stock purchase plan
+1
Group Director & Lead Counsel (Strategic Transactions)
Group Director & Lead Counsel (Strategic Transactions)

Cadence Design Systems • San Jose (CA)

On-site
USD 198,800 - 369,200
401(k) with match
Employee stock purchase plan
Medical insurance
+3
Lead Software Security Architect: Secure SDLC & DevOps
Lead Software Security Architect: Secure SDLC & DevOps

Cadence • San Jose (CA)

On-site
USD 136,000 - 254,000
Director, Government Affairs
Director, Government Affairs

Cadence Design Systems • Washington

On-site
USD 140,000 - 260,000
Paid vacation and paid holidays
401(k) plan with employer match
Employee stock purchase plan
+2