Job Title:
Head of Product Security
Company: IntraEdge
Location: Pune, Maharashtra
Created: 2026-02-17
Job Type: Full Time
Job Description:
As the Head of Product Security, you will be responsible for defining, building, and leading Fluidra’s product security function for connected and IoT-enabled pool products. You will own the end-to-end product security strategy, embed security-by-design practices across the product lifecycle, and ensure compliance with the EU Cyber Resilience Act (CRA) and other applicable global regulations.Reporting directly to the Global CISO, this role works closely with Engineering, R&D, Firmware, IoT, Compliance, Cybersecurity Architecture teams, and external partners to ensure secure, compliant, and resilient products.Key ResponsibilitiesStrategy & LeadershipDefine and execute the product security strategy aligned with CRA requirements and industry best practicesBuild, mentor, and lead a high-performing team of product security engineers and analystsEstablish global product security governance, policies, and standards across R&D teamsDefine, monitor, and report product security KPIs and metricsProvide regular updates on product security posture and compliance to executive leadershipStay current on emerging threats, regulatory changes, and industry trendsSecurity by DesignEmbed security-by-design principles throughout the connected product development lifecycleLead threat modeling initiatives for new products and featuresDefine security requirements from product concept through deploymentEnsure OWASP standards are integrated into development practicesAssess and mitigate security risks related to AI/ML-enabled product featuresVulnerability Management & PSIRTEstablish and lead the Product Security Incident Response Team (PSIRT)Implement coordinated vulnerability disclosure processesManage vulnerability reporting to ENISA, as required under CRAOversee security patch development, validation, and deploymentCompliance & Supply Chain SecurityOwn compliance with CRA and RED Article 3.3 for connected productsEnsure SBOM generation, maintenance, and disclosure processes are in placeAssess and manage third-party and supply chain security risksOversee technical documentation for CE conformity declarationsDefine and manage product security support periods and end-of-life processesCoordinate with external auditors and certification bodiesCoordination & Stakeholder ManagementCollaborate with Cybersecurity Architecture teams on cloud security initiativesManage external hardware penetration testing vendorsPartner with R&D leadership to integrate security into product roadmapsWork closely with Quality and Regulatory teams on certificationsSupport Sales and Customer Success teams on product security queriesConduct product security due diligence for mergers and acquisitionsWhat We Are Looking ForExperienceMinimum 10 years of experience in cybersecurity, with 5+ years focused on product or IoT securityProven experience building and leading security teamsHands-on experience with PSIRT operations and vulnerability disclosureBackground in manufacturing, industrial, or consumer IoT environments preferredExpert KnowledgeSecurity-by-design methodologies and secure development lifecycleThreat modeling frameworks (STRIDE, PASTA, Attack Trees)OWASP standards (Top 10, IoT Top 10, ASVS)EU Cyber Resilience Act and Radio Equipment Directive requirementsIoT security architecture and embedded systemsSupply chain security and third-party risk managementTechnical SkillsCloud security platforms (Wiz preferred)AWS IoT services and serverless architecturesEmbedded systems securitySBOM generation and vulnerability management toolsSecurity considerations for AI/ML-enabled productsLeadership & CommunicationExperience leading teams in global, matrixed organizationsStrong communication skills across technical and executive audiencesProven ability to collaborate cross-functionally with engineering teamsVendor management and negotiation experienceCertificationsCISSP or CISM (mandatory)Preferred: OSCP, GICSP, IEC 62443Additional RequirementsExcellent English communication skills (written and verbal)Willingness to travel internationally up to 10%, as required