Back to jobs
R
Hiring companyRIB

Verified today

Product Security Manager

RIB India, Pune Full-time On-site

About the role

RIB Software India seeks a Product Security Manager to lead security for mobile products. The role owns SDL, threat modeling, risk assessments, and compliance across the product lifecycle. The manager collaborates with architects, developers, QA, DevOps, and security operations to embed security into design, development, and decommissioning. Responsibilities include executing SDL, managing supply chain risks, maintaining evidence, coordinating with external testing teams, and mentoring security engineers. Candidates bring 5+ years of product or application security experience, deep SDL knowledge, proficiency with SAST/DAST/SCA tools, and strong communication and project management skills. A bachelor’s degree in CS, cybersecurity, or related field is required, with CSSLP or similar certification preferred. The position is full‑time, on‑site in India, and requires a background check.

What you’ll do

  • Execute SDL across product lifecycle
  • Conduct threat modeling, security reviews, risk assessments
  • Track and resolve product security issues
  • Manage supply chain security risks
  • Maintain compliance evidence
  • Coordinate security activities with dev teams
  • Define security requirements across lifecycle
  • Serve as primary contact for customer security discussions
  • Support security training and assessment initiatives
  • Mentor Product Security Engineers
  • Contribute to security architecture and roadmap

What you’ll bring

  • 5+ years product or application security experience
  • Strong SDL and compliance framework knowledge
  • Proficient in SAST, DAST, SCA tools
  • Familiar with C#, Typescript, Java, etc.
  • Experience in vulnerability management and risk assessment
  • Excellent communication and project management skills
  • Bachelor's in CS, Cybersecurity, or related field

Nice to have

  • CSSLP or similar secure development certification
  • Cloud security best practices (Azure)
  • SOC 2, ISO 27001 experience
  • Product or cloud security architecture experience
  • SaaS or enterprise software background

Skills

Secure Development Lifecycle (SDL)Threat modeling and risk assessmentSecurity reviews and compliance evidenceSupply chain security managementVulnerability assessment and penetration testingSecurity architecture and roadmapCommunication with cross‑functional teamsProject management

Education

Bachelor's degree in Computer Science, Cybersecurity, or related field