Job Description

This Product Manager role is focused on delivering impactful internal Dev Sec Ops capabilities as both a product and a set of capabilities. The role is designed to emphasize user-centricity, adoption, and value delivery, which are core to product management.
Key Responsibilities:
Scope the product and define the product vision.
Formalize the problem to solve, existing processes, and use case business objectives.
Break down business issues into micro-issues.
Research and document the end-users' context, objectives, and pain points.
Define a clear and simple product vision.
Define the way and the extent to which Dev Sec Ops can solve the business challenges.
Ensure consistent application of security controls and best practices across development and operations.
Collaborate with architects and engineers to align Dev Sec Ops solutions with enterprise architecture standards.
Drive continuous improvement initiatives to enhance automation, security, and delivery speed.
Provide technical guidance and mentoring to engineering teams on Dev Sec Ops practices and tooling.
Contribute to risk assessments, audits, and incident response planning and execution.
Promote knowledge sharing and advocate for Dev Sec Ops adoption across teams and regions.
Measure platform adoption and maturity across teams; adjust the roadmap based on usage data and feedback.
Collaborate with a Product Owner who handles day-to-day delivery, while the Product Manager focuses on vision, alignment, and value.
Vision and Strategy Development:
Develop and articulate a clear vision for the Dev Sec Ops program that aligns with Sodexo's strategic business objectives.
Define and communicate the strategic roadmap for integrating security practices throughout the development lifecycle.
Governance and Compliance:
Establish governance frameworks to ensure adherence to global security policies and compliance standards.
Implement regular audits and risk assessments to identify and mitigate potential security threats.
Stakeholder Engagement:
Foster strong relationships with key stakeholders, including senior leadership, to ensure buy-in and support for Dev Sec Ops initiatives.
Conduct quarterly demos and automated reporting to maintain transparency and keep stakeholders informed of progress.
Continuous Improvement:
Drive continuous improvement initiatives to enhance automation, security, and delivery speed.
Promote a culture of innovation and agility within the team to adapt to evolving security challenges.
Knowledge Sharing and Advocacy:
Advocate for Dev Sec Ops adoption across teams and regions, promoting knowledge sharing and best practices.
Provide technical guidance and mentoring to engineering teams on Dev Sec Ops practices and tooling.
Program Management:
Lead the Dev Sec Ops Squad, ensuring effective collaboration and alignment with the Cloud Operating Model initiatives.
Manage the backlog and prioritization of features, ensuring consistency in planned work.
Required Skills:
10 years of experience in Dev Sec Ops practices and principles.
Hands-on experience with secure CI/CD pipeline design and maintenance.
Proficiency in Infrastructure as Code (Ia C) using tools like Terraform, Ansible, or similar.
Knowledge of cloud-native security across major cloud platforms (Azure, AWS, GCP).
Experience with security tooling for code scanning, vulnerability management, and compliance (e.g., Sonar Qube, Snyk, Prisma Cloud).
Ability to write and maintain technical specifications, user stories, and security standards.
Solid understanding of Agile methodologies and Dev Ops delivery models.
Practical knowledge of application lifecycles, validation, testing, and secure deployment processes.
Strong ability to collaborate across diverse, cross-functional, and geographically distributed teams.
Effective communication skills to convey technical and security concepts clearly to both technical and non-technical stakeholders.
Capacity to influence teams and drive secure practices without direct authority.

Apply for this Position

Ready to join ? Click the button below to submit your application.

Submit Application