Experienced Lead of Product Secure Development Lifecycle and Regulatory Compliance

Qualcomm

Actively hiring
San Diego, CA Posted 48 days ago $180,000$270,000 / year

At a glance

AI generated

TL;DR

Qualcomm Technologies is hiring an experienced Product Security Engineer to lead technical initiatives and ensure compliance with global cybersecurity regulations for a diverse product portfolio. This senior-level role involves translating regulatory requirements into practical engineering standards, driving secure-by-design practices, and conducting threat modeling and security risk assessments. The ideal candidate will have deep expertise in areas such as hardware security, trusted execution environments, and vulnerability management, alongside the ability to mentor junior engineers and influence cross-functional teams without direct authority. Required skills include a strong background in product security compliance, particularly with EU’s Cyber Resilience Act (CRA), and experience leading secure development lifecycle initiatives in large organizations.

Skills

Threat_Modeling Security_Risk_Assessment Secure_Code_Review Static_Analysis Dynamic_Analysis Vulnerability_Assessment Hardware_Security Platform_Security Trusted_Execution_Environments Exploit_Mitigation_Techniques Supply_Chain_Security CI/CD Regulatory_Compliance Cyber_Resilience_Act_CRA

What you'll do

  • Translate cybersecurity regulations into actionable product and engineering requirements.
  • Define and improve product security processes aligned with global cyber standards.
  • Serve as compliance authority, advising teams on risk mitigation strategies.
  • Perform threat modeling and security risk assessments for complex systems.
  • Mentor junior engineers in secure design and advanced security techniques.

What we're looking for

  • Bachelor's degree in Computer Science, Engineering, or a related field and 6+ years of Security Engineering experience.
  • Proven expertise in making products compliant with cybersecurity regulations like the EU’s Cyber Resilience Act (CRA).
  • Deep hands-on experience in threat modeling, security risk assessment, secure code review, and vulnerability management.
  • Demonstrated leadership in secure development lifecycle initiatives within large organizations.
  • Strong ability to mentor junior engineers and influence cross-functional teams across diverse cultures.
  • Extensive knowledge in hardware security, trusted execution environments (TEE), and exploit mitigation techniques.
  • Excellent communication and collaboration skills with senior management, product teams, and compliance stakeholders.

Market check

Salary context

This $180,000–$270,000 range sits above 75% of similar postings on FindRole.

Peer median band

$153,600$225,000

Median floor and ceiling across peers.

Typical midpoint (25–75%)

$160,200$226,250

Middle half of comparable postings.

Based on 239 comparable postings.

* 240 is the maximum number of comparable postings sampled.

Employer

About Qualcomm

Qualcomm is a leading American semiconductor and telecommunications company based in San Diego, CA.

Qualcomm currently has 595 open roles on FindRole.

Listed pay typically runs $148,300–$222,500 across 540 roles with salary data.

Most-posted roles

View all roles at Qualcomm

More like this

Similar roles

Product Security Engineer, Staff

Qualcomm

San Diego, CA 48 days ago $149,600$224,400
Ghidra IDA Binary_Ninja Linux Android Windows Zephyr QNX CDMA GSM UMTS LTE WLAN Bluetooth NFC LLVM Fuzzing Pen-testing Threat_Modeling Exploit_Mitigation_Techniques Secure_Code_Review Binary_Analysis Embedded_Firmware_Security Automated_Tool_Detection Hypervisors Containers Secure_Execution_Environments

Product Security Engineer, Senior

Qualcomm

San Diego, CA 39 days ago $124,000$186,000
C# .NET Core Python Java IIS SQL Microsoft SQL MySQL Oracle Linux React JS ANT framework Docker Kubernetes

Senior Product Security Engineer - Software

Rockwell Automation

Remote (United States Of America Milwaukee (South 2Nd Street), US) 77 days ago
C# Java PHP .NET Core React Docker Kubernetes Go SQL HTML CSS JavaScript CI/CD SAST DAST SCA SonarQube Blackduck JFrog XRay PrismaCloud TCP/IP UDP HTTP HTTPS GitHub Mercurial Subversion AWS Azure GCP
Remote

Lead Analyst, Product Compliance

Circle

New York, NY 21 days ago $140,000$185,000
Python SQL RegTech AI Blockchain Distributed Ledger Technology CI/CD Kubernetes AWS PostgreSQL Prometheus Grafana GitLab Jira Confluence Swagger OpenAPI RESTful APIs JSON XML

Product Development Operations Lead

Samsung Electronics

Remote (645 Clyde Avenue, Mountain View, Ca, Usa, US) 17 days ago
Jira Confluence Python JavaScript Generative AI Responsible AI practices CI/CD DevOps BI/analytics tools SAFe Scrum Kanban Lean Portfolio Management Data engineering AI/ML-powered automation Agile methodologies Automation-first thinking
Remote

Sr. Director, Product Security & Engineering

Q2

Austin, Texas 68 days ago
CI/CD Kubernetes AWS Python PostgreSQL Docker Prometheus Grafana DevSecOps AI Agentic AI Threat Modeling Penetration Testing SOC Red Teaming Blue Teaming Purple Teaming Logging Monitoring Telemetry Cloud Security
Hybrid