2 hours ago
Tokyo, JapanSenior
Responsibilities
- Advise product, engineering, and platform teams on secure, highly available, and privacy-aware product architecture.
- Lead threat modeling, security assessments, architecture reviews, and application and infrastructure risk evaluations.
- Embed security requirements into product roadmaps, design reviews, delivery processes, and product lifecycle practices.
- Drive adoption of AI-enabled security tooling, automation, and best practices across the Product Security organization.
- Provide thought leadership on applying AI and agentic architectures to product security.
- Drive continuous verification of security controls and requirements through automation and existing product security tooling.
- Communicate product security and architecture trade-offs to technical stakeholders and senior leadership.
- Mentor product managers, engineers, and architects on product security literacy and design thinking.
- Develop security architecture standards, patterns, guardrails, and long-term approaches for emerging risks.
- Collaborate with IT and Information Security teams from product concept and design through build, launch, and operations.
Requirements
- Bachelor’s degree in Computer Science or a related technical field, or equivalent related professional experience.
- 10+ years of product security and development experience.
- Extensive experience performing application threat modeling and architecture reviews for application and infrastructure security risks.
- Significant recent experience applying Generative AI in software development and for end users, preferably in a medium or large enterprise.
- Deep understanding of modern product development practices, CI/CD, and the use of AI to improve quality and velocity.
- Familiarity with agentic architectures, including SDKs, context engineering, MCPs, and authorization.
- Expertise with public cloud platforms, preferably AWS, and with Kubernetes, Docker, and related technologies.
- Experience establishing security architecture standards and operating product security at scale in cloud-native, multi-tenant, or multi-domain environments.
- Experience with secure service-to-service communication, token-based authentication, secret management, certificate management, security automation, and reusable controls.
- Familiarity with AI-driven systems and applying AI/ML concepts to real-world products, including AI/ML-enabled code analysis, anomaly detection, and security automation.
- Demonstrated ability to partner with product and engineering leadership to take products from concept through scaled adoption and measure security outcomes.
- Excellent communication and collaboration skills with technical and non-technical stakeholders.
Benefits
- Medical, dental, and vision coverage.
- Paid time off and an Employee Assistance Program.
- Wellness and travel reimbursement.
- Travel discounts and International Airlines Travel Agent Network (IATAN) membership.
- The position is listed in Austin, Seattle, or San Jose, with location-specific compensation ranges.
- Expedia Group provides an inclusive and accessible recruiting experience and supports accommodation requests.
