Descripción de la oferta
Asthe ProductSecurity Lead of Materialise Software, you will be accountable for the overall security posture and regulatory compliance of our products.You translate complex security regulations, customer expectations, and risk into clear decisions, priorities, and trade-offs, enabling product and engineering teams to deliver securely at scale.You own the security outcomes and risk decisions, not day-to-day security implementation.
Key accountabilities and core responsibilities
Overall product security posture across our portfolio(CO-AM Platform,Magics)
Interpretation of security legislation, standards, and customer requirements(e.g.,ISO 27001, NIS2, NIST-based frameworks)
Definition of product securityobjectivesand non-functional requirements
Explicit risk acceptance and exception management
Product security strategy, roadmap, and prioritization
External security posture towards customers, auditors, and regulators
Regulation and risk
Assess the applicability of security regulations and standards
Define pragmatic compliance intent and scopeIdentify, document, and accept residual product securityrisks[
Ensure risks and exceptions are explicit, time-bounded, and owned
Strategy and alignment
Define andmaintaina product security strategy aligned with business goals
Translate regulatory and risk drivers into a prioritized security roadmap
Align security priorities with product and engineering planning cycles
Cross-functional leadership
Partnercloselywith the:
Product Management Team on roadmap alignment and customer commitments
Engineering Management Team on delivery realities and investment trade-offs
DevSecOpsLead on platform-level security objectives
Security Architect on translating intent into secure designs
CISO to align product security decisions with enterprise risk posture and regulatory obligations where applicable
Act as an escalation point when security, product, and delivery priorities conflict
Support the Engineering Delivery teams and Security Champions, such asimproving their understanding of the security checklist
Governance and external trust
Review security metrics and evidence produced by security engineering
Support audits, certifications, and customer security assessmentsRepresent the company’s product security posture externally whenrequired
What this role does not do
Review code or manage vulnerabilities day-to-day
Directlymanagesecurity champions or software engineers
Your profile
Required skills and experience
Strong understanding of product and cloud security in modern DevOps environments
Experience working with security regulations and frameworks(ISO 27001, NIS2, SOC 2, NIST, FedRAMP, or similar)
Proven ability to make and defend risk-based decisions
Credibility with senior engineering and product stakeholders
Clear written and verbal communication, especially around trade-offs
Experience profile
8+ years in software engineering, product security, or security leadership roles
Experience in product-centric, engineering-driven organizations
Exposure to regulated environments is strongly preferred
Success looks like
Security expectations are clear and predictable for product and engineering
Risk acceptance is explicit, documented, and rarely escalated late
Engineering teams ship securely by default using platform guardrails
Audits and customer security reviews are uneventful and well-prepared
What we offer
Healthy life-work balance
When creating a better and healthier world, a good place to start is with yourself. That's why we encourage our employees to prioritize their overall well-being, fostering physical fitness, mental resilience, and social connections through a range of workshops, sports activities, and other events and initiatives that contribute to a balanced and fulfilling work-life harmony.
Hybrid working & flexibility
Personal growth and career advancement
Team building
Innovation is key
Location and type of contract
Full-time
Hybrid
Mid-senior level
#J-18808-Ljbffr