We are seeking a Head of Security Engineering with 12–15 years of hands-on experience to own the end-to-end technical security strategy and execution in a high-velocity, AI-first data organization. The role requires hands-on leadership, technical expertise, and a deep understanding of cloud security, application security, and AI/ML security.
Requirements
- 12–15 years of progressive experience in security engineering, with 5+ years in leadership roles
- Certifications: CISSP, Information Systems Security Engineering Professional (ISSEP), CSSLP, AWS/GCP Security Specialty, or equivalent
- Deep expertise in: Cloud security (AWS, GCP, Azure), Application security (OWASP Top 10, SAST/DAST/SCA), container security, API security, AI/ML security (adversarial ML, model integrity and hardening)
- Proven ability to remediate vulnerabilities end-to-end, not just identify them
- Hands-on experience with threat modeling (STRIDE, DREAD), red teaming, and incident response
- Programming skills (Python, Go, or similar) for scripting and automation
- Experience with secure SDLC, DevSecOps, and shift-left practices
Benefits
- Health & Wellness: Health care coverage designed for the mind and body
- Flexible Downtime: Generous time off helps keep you energized for your time on
- Continuous Learning: Access a wealth of resources to grow your career and learn valuable new skills
- Invest in Your Future: Secure your financial future through competitive pay, retirement planning, a continuing education program with a company-matched student loan contribution, and financial wellness programs
- Family Friendly Perks: It’s not just about you. S&P Global has perks for your partners and little ones, too, with some best-in class benefits for families
- Beyond the Basics: From retail discounts to referral incentive awards—small perks can make a big difference