waypointjobs

Cadence Design Systems

Director of Software Security

san jose, CA

Check who can apply and the requirements below before continuing.

About this opportunity

Cadence Design Systems lists this Director of Software Security opportunity in san jose, California. Review the employer’s description below for duties, qualifications and application requirements.

Job description

At Cadence, we hire and develop leaders and innovators who want to make an impact on the world of technology. Cadence InfoSec is seeking a Director of Software Security to lead the strategy, architecture, and execution of secure software development practices across the enterprise. This role will drive DevSecOps transformation, ensure compliance with regulatory frameworks (including CMMC), and embed security throughout the software lifecycle (SDLC).

Key Responsibilities

Define and execute enterprise DevSecOps strategy across all development teams

Integrate security controls into CI/CD pipelines (build, test, release)

Establish “shift-left” security practices across the SDLC

Drive adoption of secure coding, SAST, DAST, and SCA tools

Define reference architectures for secure microservices, APIs, and cloud-native apps

Establish security patterns for containers, Kubernetes, and serverless

Lead threat modeling initiatives

Ensure secure API design and zero trust principles

Lead compliance initiatives for CMMC 2.0, NIST SP 800-171r2 /800-53, ISO 27001

Ensure software systems meet federal, defense, and privacy regulations

Coordinate audits, assessments, and continuous monitoring programs

Implement controls for handling Controlled Unclassified Information (CUI)

Secure DevOps pipelines across cloud platforms: Amazon AWS, Microsoft Azure, Google Cloud, IBM Cloud, Cadence software service and products

Implement infrastructure-as-code (IaC) security scanning

Define secrets management, identity, and access controls

Build and scale AppSec program across all product lines

Define vulnerability management lifecycle (discovery → remediation → validation)

Establish bug bounty / responsible disclosure programs

Integrate security into Agile and CI/CD workflows

Secure software supply chain (SBOM, dependency scanning)

Implement artifact signing, provenance, and integrity validation

Define policies, standards, and secure development guidelines

Establish KPIs: vulnerability remediation SLA, code coverage, pipeline security

Align software security with enterprise risk management

Report posture to executive leadership and board

Lead teams of AppSec engineers, DevSecOps engineers, and architects

Partner with Engineering, Product, Legal, and Compliance teams

Build security champions program within development teams

Influence engineering culture toward security ownership

Required Qualifications

12–15+ years in cybersecurity, with strong focus on application security and DevSecOps

5+ years in leadership (manager/director level)

Deep expertise in Secure SDLC and DevSecOps pipelines, Cloud-native architectures and container security, Regulatory frameworks (CMMC, NIST, ISO)

Experience in regulated industries (defense, government, healthcare, fintech)

Preferred Qualifications

Hands‑on experience with tools such as SAST (Checkmarx, Veracode), DAST (Burp Suite), SCA (Snyk, Black Duck), CI/CD (Jenkins, GitHub Actions)

Familiarity with Kubernetes, Docker, and service mesh security

Certifications: CISSP, CSSLP, CISM, or CCSP

Experience with Zero Trust and identity‑first security

Key Skills

DevSecOps Transformation

Secure Software Architecture

Regulatory Compliance (CMMC, NIST, ISO)

Application Security & Threat Modeling

Software Supply Chain Security (SBOM, SLSA)

Cloud & Container Security

Executive Communication & Strategy

Compensation and Benefits

The annual salary range for California is $164,500 to $305,500. You may also be eligible to receive incentive compensation: bonus, equity, and benefits. Our benefits programs include paid vacation and paid holidays, 401(k) plan with employer match, employee stock purchase plan, and a variety of medical, dental and vision plan options.

Equal Employment Opportunity

Cadence is committed to equal employment opportunity throughout all levels of the organization. All qualified applicants will receive consideration for employment without regard to race, color, sex, age, national origin, religion, sexual orientation, gender identity, status as a veteran, basis of disability, or any other protected class.

#J-18808-Ljbffr

Worksite address

san jose, CA, 95199, US

Who can apply

Review the original listing for work authorization, qualifications and employer requirements.

Ready for your next step?Apply on the official website
Apply on WhatJobs ↗

Explore related searches

Current related jobs

Brooksource

WhatJobs

Senior Software Engineer

new york city, NY

Salary not specified

Job Description Applications accepted until October 31st 2026 Summary: We are seeking a Senior Engineer to design, build, and support solutions a…

Last received from source 2026-10-08View job

ChaTeck,Inc

WhatJobs

Software Developer

united, WV

Salary not specified

Job Description Software Developer Remote No Sponsorship provided, Need an Independent VISA Holder only Need to work on W2/1099/ C2C with Own Cor…

Last received from source 2026-10-08View job

Fintal Partners

WhatJobs

Software Engineer (low latency C++)

chicago, IL

Salary not specified

Job Description We are partnering with a leading proprietary trading firm seeking a talented Senior C++ Developer to join a high-performance engi…

Last received from source 2026-10-08View job

Nightwing

WhatJobs

Principal CNO Developer (Onsite)

san antonio, TX

Salary not specified

hackajob is collaborating with Nightwing to connect them with exceptional professionals for this role. Nightwing provides technically advanced fu…

Last received from source 2026-10-08View job

Rhinogram

WhatJobs

Senior Software Engineer

united, WV

Salary not specified

Job Description Senior Software EngineerAbout Rhinogram Rhinogram is a patient engagement and telehealth platform that enables HIPAA-compliant co…

Last received from source 2026-10-08View job