Lead, Product Security
Gainsight
Let the right jobs find you
Get personalised suggestions from verified company career pages, matched to your role, location, level, and skills.
Overview
Position Type
Full Time
Experience
7+ years
Job Description
About This Role:
We’re looking for a full-time Lead, Product Security to join our Security team reporting to the Chief Security Officer. This role is a hybrid role based out of our Hyderabad, India Location.
In this role, you'll play a key role in maturing Gainsight's Product Security program and embedding customer trust into our SaaS platform by driving Secure by Design principles, threat modeling, and security architecture reviews across the software development lifecycle. This is a great opportunity for someone who thrives in a modern, cloud-native environment and enjoys working cross-functionally with teams like Engineering, Product, and Infrastructure. The ideal candidate brings strong skills in Secure SDLC and threat modeling, application and API security, and influencing executive stakeholders.
What You'll Do:
- Assisting with maturing the application security program.
- Increasing Test Coverage (% of Assets): The percentage of active repositories, microservices, and endpoints monitored by SAST, DAST, SCA, and container scanning tools.
- Security Gates Passed/Failed: The ratio of builds that are automatically blocked from deployment due to high-severity policy violations.
- Function as a technical team lead to a global team.
This is not a complete list of responsibilities, and the scope of the role may evolve with the needs of the team and business. This role will require occasional travel for team meetings, training, or company events.
What We're Looking For:
- 7+ years of experience across Software Engineering, Security Engineering, Application Security, or Product Security.
- Proven experience working in Product Security programs within modern SaaS or cloud-native environments.
- Deep expertise in Secure SDLC, Secure by Design, threat modeling, security architecture, application security, API security, and modern authentication and authorization frameworks.
- Demonstrated success partnering with Engineering and Product leadership to influence architecture, design decisions, and security strategy.
- Strong understanding of cloud-native architectures, microservices, Kubernetes, containers, and multi-tenant SaaS platforms.
- Experience driving organization-wide vulnerability management and product risk remediation programs.
- Ability to communicate technical risk effectively to executive leadership and drive cross-functional alignment.
Nice-to-have skills or experience:
- Experience securing AI/GenAI-powered products and platforms.
- Hands-on software engineering background with experience building distributed systems.
- Experience implementing security automation within modern CI/CD environments.
- Experience leading globally distributed Product Security teams.
- Security certifications such as CISSP, CSSLP, or GIAC certifications.