Product Security Leader (Seaport/Boston Onsite)

Product Security Leader (Seaport/Boston Onsite)

25 Aug 2026
Massachusetts, Boston, 02108 Boston USA

Product Security Leader (Seaport/Boston Onsite)

Role Description:The Product Security Leader at Velotic will play a pivotal role in building security into the DNA of our products during a unique and complex organizational formation. As Velotic brings together engineering teams from two carved-out companies, each with their own development practices, tech stacks, and security maturity levels, this role requires exceptional technical depth, strong relationship-building skills, and the ability to navigate ambiguity while driving toward a unified vision.This is a true greenfield opportunity where you will define what "good" looks like for product security at Velotic. You'll establish the secure SDLC framework, select and implement security tooling, build a security champions network, and create the processes that will scale with the company's growth. The challenge and opportunity lie in harmonizing security practices across two different engineering cultures while maintaining development velocity and building something better than either organization had before.The successful candidate will work at the intersection of security, engineering, and product management. You'll need to be technical enough to earn the respect of senior engineers, strategic enough to influence product roadmaps, and pragmatic enough to balance security ideals with business realities. This role requires coordination with external partners—System Integrators who are helping stand up development infrastructure and MSSP providers who deliver security monitoring services—requiring strong vendor management skills alongside technical expertise.Day-to-day, you'll lead threat modeling sessions, review security architectures, triage vulnerabilities, guide remediation efforts, implement security automation, and work hands-on with development teams to embed security throughout the development process. You'll also be responsible for managing security assessments from customers, responding to security questionnaires, coordinating penetration tests, and ensuring Velotic's products meet compliance requirements for key certifications like SOC 2 and ISO 27001.A key aspect of this role is building security in a developer-friendly way. You'll need to shift security left without slowing teams down, automate security checks within CI/CD pipelines, provide clear and actionable security guidance, and celebrate security wins to build momentum. You'll establish metrics that demonstrate both security improvements and the business value of the product security program.This role reports to the Chief Product Officer and collaborates closely with the CISO, VP/Directors of Engineering, Product Management leaders, Infrastructure/Cloud teams, and external security partners. You'll regularly present product security metrics, risk assessments, and program updates to executive leadership, particularly around critical vulnerabilities, security incidents, and program maturity progress.The ideal candidate for this role is someone who thrives at the intersection of security and engineering, loves building programs from scratch, and is energized by the challenge of bringing together different organizations with a shared security vision. You should be comfortable with ambiguity, excellent at influencing without authority, and passionate about making security an enabler of innovation rather than a blocker. If you want to leave a lasting mark by building a world-class product security program during a critical formative period, this is the opportunity for you.This position offers significant autonomy, direct impact on product strategy, close collaboration with executive leadership and private equity stakeholders, and the satisfaction of building something meaningful from the ground up in a well-funded, growth-oriented environment.

Related jobs

Job Details

Jocancy Online Job Portal by jobSearchi.