MoveTheWorldForwardTogether

When you join Verizon

Verizon is one of the world’s leading providers of technology and communications services, transforming the way we connect across the globe. We’re a diverse network of people driven by our shared ambition to shape a better future. Here, we have the ability to learn and grow at the speed of technology, and the space to create within every role. Together, we are moving the world forward – and you can too. Dream it. Build it. Do it here.

What you’ll be doing...

The Verizon Product Security Team ensures security by design product engineering and architecture for both consumer and business products. A Security Risk Management Engineer works to conduct risk assessments on both Consumer and Business products and we are looking for a hands-on manager who can lead this team and also perform risk assessments. You will have in-depth experience across the Security and Compliance domain and the ability to apply this knowledge to create product security specific risk management processes and drive risk assessments. You and your team will be responsible to conduct risk assessments before the product launch and throughout the lifecycle of a product and develop action plans to improve application security posture.

You will also work in conjunction with security stakeholders in other areas of the business and make decisions and help lead initiatives to ensure timely delivery of security solutions that support business objectives. You will also manage work that involves coordination with multiple organizations and is the focal point within the group.

  • Lead and grow a team of high performing individuals who work with product teams and various stakeholders in managing activities related to CPI-810 and SSDLC compliance and tracking of risk items resulting from Vulnerability scanning, Threat Modeling or Pentesting.
  • Liaise with and offer direction in the related compliance functions to application developers and leaders throughout the Verizon Consumer Group/Verizon Business Group.
  • Analyze trends in threat and compliance environment, develop and execute plans for mitigation of risk.
  • Manage security exceptions process against cyber risk.
  • Lead efforts to improve the overall product security risk assessment process/tools including risk tracking, risk dashboard and any gating criteria.
  • Act as a focal point during the implementation & delivery of multiple Security projects.
  • Lead efforts to promote security awareness including newsletters and knowledge sharing sessions.
  • Produce reports and presentations outlining issues, action plans and overall compliance status of the portfolio.
  • Communicate progress, findings, and ensure successful resolution of issues.
  • Build relationships with program leads, developer, operations and CISO teams to understand how to develop plans that effectively manage security risks.
  • Train and mentor new hires.
  • Share thought leadership in the product and application security space

Where you'll be working...

In this hybrid role, you'll have a defined work location that includes work from home and assigned office days set by your manager.

What we’re looking for...

You’ll need to have:

  • Bachelor's degree or four or more years of work experience
  • Six or more years of relevant work experience performing cyber risk assessment or compliance related activities.

Even better if you have one or more of the following:

  • Industry Certifications such as CISSP, CISM.
  • Two or more years of experience with NIST frameworks.
  • Knowledge on Application and Cloud Security industry standards, trends, threats, vulnerabilities, and technology frameworks.
  • Agile software development and Project management experience.
  • Ability to clearly communicate technical concepts to all audiences.
  • Self-directed ability to drive change andmanage multiple projects.
  • Contributions to the security community such as research, published CVEs, bug-bounty recognitions, open-source projects, blogs or publications.

22CyberRISK

Equal Employment Opportunity

We're proud to be an equal opportunity employer - and celebrate our employees' differences, including race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, and Veteran status. At Verizon, we know that diversity makes us stronger. We are committed to a collaborative, inclusive environment that encourages authenticity and fosters a sense of belonging. We strive for everyone to feel valued, connected, and empowered to reach their potential and contribute their best. Check out our diversity and inclusion page to learn more.

COVID-19 Vaccination Requirement

Verizon requires new hires to be fully vaccinated against COVID-19. Verizon provides reasonable accommodations consistent with legal requirements (e.g., for medical, religious, or state law recognized reasons).