- Manage a team of cybersecurity engineers
- Develop and maintain end-to-end security architecture for United’s products, applications, and services
- Create and implement a security vision across all products in the United portfolio
- Recruit and develop team talent, including personnel management
- Define, prioritize, and allocate resources
- Track work assignments, projects, and programs
- Provide status reporting for assignments, projects, and programs
- Monitor legislation and compliance-standard changes affecting assigned responsibilities
- Update standards, best practices, and architectures proactively based on regulatory and compliance changes
- Coordinate remediation of non-compliant items
- Assist with annual budgeting and monthly forecasting
Requirements
- Bachelor's degree required (STEM field preferred)
- At least 5 years of relevant experience
- Proficiency with OWASP Top 10
- Proficient knowledge of threat modeling
- Proficient knowledge of risk management processes
- Ability to secure AI, ML, or LLM products or familiarity with SDLC for AI, ML, or LLMs
- Proficiency with application testing, including SAST, DAST, MAST, RAST, IAST, and penetration-testing tooling
- Proficiency with programming languages and modern programming language structures, including object-oriented programming and web frameworks
- Proficient with DevSecOps technology stacks, including AWS, Harness, TeamCity, GitHub, Artifactory, CHEF, and CloudWatch
- Proficiency with SDLC processes
- Proficiency with web and app security stacks, including API security
- Proven ability to lead people
- Ability to build and execute a workforce transformation strategy covering AI-assisted security engineering, frontier-model application security testing, secure AIDLC, and agentic automation
- Ability to manage business and external partners
- Excellent problem-solving, critical-thinking, interpersonal, collaboration, written, and verbal communication skills
- Must be legally authorized to work in the United States for any employer without sponsorship
- Successful completion of interview required to meet job qualification
- Reliable, punctual attendance is an essential function of the position
- Preferred: Master's degree
- Preferred: One or more of CEH, GSEC, CISM, Security+, CISSP, CISA, SSCP, CASP, OSCP, AWS Solution Architect Professional, Networking, or Security Specializations
- Preferred: 10+ years of relevant experience
- Preferred: Subject matter expertise in IT security and risk management
- Preferred: Experience with technical documentation and SOP creation
- Preferred: Understanding of compliance frameworks such as NIST 800-53
- Preferred: Experience applying security and risk-management practices to AI/ML or generative AI systems
- Preferred: Experience implementing or governing frontier-model-enabled application security testing
- Preferred: Knowledge of IT infrastructure security best practices, procedures, and standards
- Preferred: Experience with cloud-native products and microservice topologies
- Preferred: Expertise in application development and DevOps security technologies and integration
- Preferred: Strategic thinking about business, product, and technical challenges
- Preferred: Experience transforming traditional data center security measures into cloud technologies
- Preferred: Ability to work with compliance frameworks and requirements
- Preferred: Ability to work in a fast-paced Agile development environment
- Preferred: Ability to perform manual security code reviews
- Preferred: Ability to interpret dynamic/static analysis tools and penetration-test results
- Preferred: Knowledge of cloud technologies and security
- Preferred: Proficiency with vulnerability management processes and remediation guidance
- Preferred: Proficiency in cryptography
- Preferred: Understanding of IAM, including authentication and authorization
- Preferred: Understanding of networks and network security
Core Competencies
Demonstrates expertise in cybersecurity management, including team leadership, security architecture development, and compliance with regulatory standards. Proficient in risk management, threat modeling, and application security across AI, ML, and LLM products.
Highest-signal resume keywords
- Cybersecurity Management
- Risk Management Processes
- DevSecOps Technology Stacks
- Application Security Testing
- Compliance Frameworks
ATS Optimization Keywords
Hard Skills
- OWASP Top 10
- Threat Modeling
- Application Testing
- SDLC Processes
- Object-Oriented Programming
- API Security
- Vulnerability Management
- Cryptography
- IAM
- Cloud Security
Soft Skills
- Leadership
- Problem-Solving
- Collaboration
- Communication
- Critical Thinking
Certifications & Qualifications
- CEH
- CISM
- CISSP
- Security+
- GSEC
- CISA
- SSCP
- CASP
- OSCP
- AWS Solution Architect Professional
Industry Keywords
- Compliance Frameworks
- NIST 800-53
- AI Security
- ML Security
- Generative AI Systems
- Microservice Topologies
- Cloud-Native Products
- IT Infrastructure Security
- Agile Development
- Security Standards
Tools & Technologies
- AWS
- GitHub
- TeamCity
- CloudWatch
- Harness
- Artifactory
- CHEF