Secure Development Lifecycle Governance LeadDescription -We have an exciting opportunity to join our Personal Systems Security team and help ensure we continue to deliver the product security quality excellence that is foundational to the trust our customers place in HP products and solutions. The role will be focused on driving the governance framework around Secure Development Lifecycle (SDLC) processes, working with every product and solution team across the organization.You will be collaborating with business units across HP’s Personal Systems to support their implementation of SDLC processes. You will focus on helping teams continuously improve an mature their SDLC process implementation over time, and you will implement monitoring and reporting of key metrics. You will also be working with security leaders across the rest of HP to coordinate SDLC governance with other business units an contribute to the reporting of engineering security quality across all of the company’s products, solutions and services.The successful candidate will have solid technical skills and a background in secure product development with a good understanding of systems architecture from hardware and firmware to cloud software and infrastructure. This position requires strong communication and collaboration skills to partner with a range of colleagues, from the more technical to the more senior management leadership. This role will be focused on governance and secure development processes, but also on partnering with business and technical security leadership team to continuously improve and lead the industry with product security quality.Job Responsibilities for the Secure Development Lifecycle Governance Lead: Lead and maintain the documentation of the organization’s secure development governance framework and processes in collaboration with security leads from across the Personal Systems organisationMaintain an inventory of assets, collect metrics, and monitor remediation and improvement plans were appropriatePresent to product and business unit leadership on status, progress, and strategy for continuous improvementIdentify opportunity for tools and contribute to their design and development to support product teams with monitoring and reportingEnsure that appropriate training is available across the organisation. Contribute to developing and delivering training where appropriate across the organisation, in particular with respects to process requirements and metrics.Monitor regulatory and broader market requirements with respect to SDLC and contribute analysis and options to business strategy and roadmapsMonitor industry state of the art (processes, tools, …) and produce reports and recommendation for improvement opportunities.Participate in company-wide secure development governance coordination to design and maintain a consistent framework and reporting processJob Requirements for the Secure Development Lifecycle Governance Lead: Proven experience with secure development processes and related toolsAbility to coordinate and lead cross-organizational teams to collaborate and converge on a common processes and roadmap strategyKnowledge of industry best practices with respect to software developmentAbility to lead the prototyping of reporting and presentation tools and dashboardsExcellent writing and verbal communications skillsThe following skills and attributes are a plus: Some experience of cloud software, firmware and hardware development processesProgramming and secure programming experienceBackground in security architecture (design and reviews)Experience with static and dynamic code analysis toolsKnowledge of specific secure development process standards, tools and techniquesAbility to engage with customers, present and project technical leadership, and elicit customer priorities and requirementsKnowledge of scripting languages, such as Python and Visual Basic, and ability to prototype online applications to collect and present dataDegree in Computer Science or related field, or equivalent About HPYou’re out to reimagine and reinvent what’s possible—in your career as well as the world around you. So are we. We love taking on tough challenges, disrupting the status quo, and creating what’s next. We’re in search of talented people who are committed to innovate, learn and grow, and dedicated to making a meaningful difference.HP is a technology company that operates in more than 170 countries around the world united in creating technology that makes life better for everyone, everywhere.Our history: HP’s commitment to diversity, equity and inclusion – it’s just who we are. From the boardroom to factory floor, we create a culture where everyone is respected and where people can be themselves, while being a part of something bigger than themselves. We celebrate the notion that you can belong at HP and bring your authentic self to work each and every day. When you do that, you’re more innovative and that helps grow our bottom line. Come to HP and thrive!Please keep reading…Research shows that while men apply to jobs when they meet an average of 60% of the criteria, women tend to only apply when they check every box. So if you think you might be a good fit for the role, but don't necessarily meet every single point on the job description, please still apply! We'd love to learn more about you!#LI-PostJob -SoftwareSchedule -Full timeShift -No shift premium (United Kingdom)Travel -Relocation -EEO Tagline - HP Inc. is EEO F/M/Protected Veteran/ Individual with Disabilities.
View Original Job Posting