Product Security Governance Principal

🔥 2 minutes ago

🏈 Ohio – Remote

infoinfo

💵 $96.5k - $207.5k / year

⏰ Full Time

🔴 Lead

🚔 Compliance

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Fifth Third Bank

Fifth Third Bank

10,000+ employees

Founded 1858

🛡️ Insurance

💼 Consulting

📦 Logistics

Insurance • Consulting • Logistics

Fifth Third Bank is a diversified financial services company offering a wide range of banking and financial products and services. It provides personal banking solutions such as checking and savings accounts, credit and debit cards, and identity theft protection. Borrowers can access various loans and mortgage options, while investors benefit from investment products like ETFs, mutual funds, and stocks. The bank also provides a robust set of services for businesses and commercial clients, including cash management, treasury management, and specialized lending solutions. Additionally, Fifth Third offers wealth management services with private banking, trust, and estate services. Customers can benefit from Fifth Third's online and mobile banking platforms, enabling them to bank anywhere at any time. Fifth Third Bank is focused on delivering seamless banking experiences with a strong emphasis on customer convenience and security.

📋 Description

• Lead and mature Product Security governance for internally developed customer-facing software, APIs, SDKs, integrations, and related services • Define product scope, engagement criteria, review expectations, decision authorities, escalation paths, and evidence standards • Develop and maintain standards, procedures, playbooks, templates, decision records, risk records, and supporting guidance • Facilitate risk-based decisions involving security requirements, control applicability, exceptions, compensating controls, and accountability • Align Product Security practices with enterprise architecture, application security, vulnerability management, risk, compliance, audit, and engineering processes • Lead a scalable customer assurance model for applicable products and services • Coordinate security summaries, whitepapers, assessment responses, and supporting evidence • Partner with Product, Engineering, Risk, Compliance, Legal, Audit, and customer-facing teams on customer, deal, regulatory, and audit needs • Lead Product Security coordination for applicable SOC 2 and related readiness activities • Support system scoping, business-requirement validation, readiness evaluations, gap assessments, evidence coordination, and assessment-provider engagement • Evaluate product security evidence from threat modeling, penetration testing, security scanning, software supply chain practices, secure development, incident management, and remediation • Develop consolidated views of product security risk, control adoption, coverage, and assurance readiness • Lead governance forums, readiness reviews, working sessions, and decision meetings • Identify recurring themes and recommend scalable improvements • Provide updates and recommendations to technical teams, business stakeholders, and senior leaders • Contribute to Product Security strategy, planning, prioritization, and roadmap development • Promote shared accountability for secure and trusted customer-facing products

🎯 Requirements

• Seven or more years of progressively responsible experience in Product Security, security governance, cybersecurity assurance, IT risk, security compliance, technology audit, security architecture, or a related discipline • Demonstrated success leading security governance, assurance, readiness, control evaluation, gap analysis, or evidence-review practices in a complex organization • Ability to independently evaluate technical and nontechnical evidence, identify material concerns, exercise sound judgment, and recommend defensible decisions • Experience translating security and compliance requirements into practical expectations for product and engineering teams • Ability to influence senior stakeholders, facilitate constructive challenge, resolve ambiguity, and drive accountable outcomes across Product, Engineering, Information Security, Risk, Compliance, Audit, Legal, and business teams • Strong understanding of administrative, technical, and operational security controls throughout the product lifecycle • Experience maintaining governance artifacts such as standards, procedures, control matrices, evidence inventories, decision records, risk records, and action plans • Strong executive, business, audit, and technical communication skills • Bachelor’s degree in cybersecurity, information technology, information systems, business, accounting, or a related field, or an equivalent combination of education and relevant experience • Position not eligible for immigration sponsorship

🏖️ Benefits

• Comprehensive benefits supporting physical, financial, emotional, and social well-being • Incentive compensation plan based on company, line of business, and/or individual performance • Differentiated compensation offerings • Employee and family benefits programs

Apply Now

Similar Jobs

🔥 12 minutes ago

Zillow

5001 - 10000

🏠 Real Estate

🛍️ eCommerce

👥 B2C

SOX Compliance Manager designing and remediating financial controls at Zillow, the U.S. real estate platform. Partnering with business, IT, and audit teams on compliance.

🔥 2 hours ago

We Insure

201 - 500

💼 Consulting

📦 Logistics

📣 Marketing

Leading We Insure’s multi-state insurance licensing and compliance program. Building controls, workflows, and reporting across corporate, franchise, carrier, and acquisition operations.

🔥 6 hours ago

Huron

5001 - 10000

🏥 Healthcare

📦 Logistics

📣 Marketing

Higher education risk and compliance consulting manager leading governance, regulatory, and enterprise risk engagements. Advising colleges, universities, and academic medical centers through sustainable compliance solutions.

🔥 7 hours ago

CACI International Inc

10,000+ employees

🎖️ Defense

🏛️ Government

🔒 Cybersecurity

SAP GRC Expert securing CACI’s IL5 SAP S/4HANA federal environment. Governing access, SoD controls, compliance workflows, and Zero Trust security.

🇺🇸 United States – Remote

💵 $90.3k - $189.6k / year

🔥 Funding within the last year

💰 $500M Post-IPO Debt on 2026-02

⏰ Full Time

🟠 Senior

🔴 Lead

🚔 Compliance

🔥 13 hours ago

Softcard (acquired by Google)

201 - 500

💸 Finance

💳 Fintech

🛍️ eCommerce

Employee relations director leading ethics, compliance, investigations, and labor relations for GPC’s North American workforce. Advising leaders on policy, disputes, performance improvement, and employee engagement.