Analog Devices, Inc

Head of Application Security

Analog Devices, Inc$219K — $301K *
Information Technology
11 - 15 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Engineering, Computer Science, Cybersecurity, or related field.
  • 15+ years of progressive cybersecurity experience in senior security leadership roles.
  • Expertise in building and scaling security functions in large engineering organizations.
  • Deep understanding of secure-SDLC/DevSecOps practices and automated security testing.
  • Working knowledge of AI security frameworks and emerging AI risks.
  • Experience with product security practices and mapping security frameworks to industry standards.
  • Ability to communicate complex technical risks in business terms.

Responsibilities

  • Lead the strategy and operation of ADI's application security, AI security, and product security capabilities.
  • Establish secure software development lifecycle policies and tools for application security.
  • Define and manage risk for AI security and governance, focusing on generative AI controls.
  • Grow a risk-managed product security practice integrated into the product development lifecycle.
  • Advise CISO and executive leadership on security exposure and business impacts.
  • Build and lead a multidisciplinary security team to foster a strong security culture.
  • Align security practices with regulatory requirements across ADI's markets.

Benefits

  • Medical, vision, and dental coverage
  • 401k plan with company match
  • Paid vacation, holidays, and sick time
  • Discretionary performance-based bonus
  • Opportunities for professional development and training
Full Job Description
Head of Application Security

The leader of Application, AI and Product Security is a senior leadership role responsible for protecting the software, artificial intelligence, and products at the heart of ADI's business. Reporting to the Chief Information Security Officer (CISO), this leader ensures that everything ADI builds and ships is secure by design - worthy of the trust of our automotive, aerospace and defense, healthcare, and industrial customers, and resilient against the most capable threat actors. As ADI accelerates at the Intelligent Edge, embedding software, AI, and connectivity into the components the world depends on, this role makes security a competitive advantage.

This role is a "build-and-scale" mandate spanning three connected disciplines. This leader will stand up and mature a developer-first application security (DevSecOps) capability across ADI's software development lifecycle; establish a risk-managed AI security and governance program covering generative AI, large language models, and emerging agentic AI use cases; and grow a company-wide product security practice - building on ADI's existing product security incident response and coordinated vulnerability disclosure capabilities - for the products ADI designs, manufactures, and ships. Working across IT, LRO, and the business (Software & Digital Platforms, Engineering Enablement, Global Operations & Technology), the role connects these threads into a single, risk-managed security strategy that drives alignment, informs executive and Board decision-making, and strengthens the resilience and trustworthiness of ADI's technology.

Sequencing matters in this role. The immediate priority is application security embedded into ADI's DevOps / CI-CD environment; the near-term priority is a risk-managed AI security program, beginning with generative AI and LLM governance and controls before extending to agentic AI; and the third priority is maturing a full-scope, company-wide product security practice. The leader will establish a disciplined discovery and stakeholder-alignment period before scaling execution across all three.

Key Responsibilities:

Lead the strategy, build-out, and operation of ADI's application security, AI security, and product security capabilities, including:
  • Application Security (DevSecOps): Establish and mature secure software development lifecycle (secure-SDLC) policy, standards, reference architectures, and tooling (SAST, SCA, DAST, secret scanning); harden the software supply chain - source repositories, Continuous Integration / Continuous Delivery/Deployment (CI/CD) pipelines, build systems, credentials, and dependencies - and drive software bill of materials (SBOM) generation and trusted-publishing at scale.
  • AI Security: Define and operate a risk-managed AI security and governance program aligned to recognized frameworks (e.g., NIST AI RMF, ISO/IEC 42001, OWASP LLM Top 10, MITRE ATLAS), beginning with generative AI and LLM controls, and operations, and extending to secure agentic AI use cases including non-human / agent identity, action guardrails, and human-in-the-loop controls.
  • Product Security: Grow a company-wide, risk-managed product security practice anchored to a secure product development lifecycle standard (e.g., IEC 62443-4-1) and embedded into the New Product Introduction (NPI) process; own and mature ADI's Product Security Incident Response Team (PSIRT) capability, coordinated vulnerability disclosure, CVE/CVSS practice, and SBOM/HBOM strategy for shipped firmware and hardware.


Serve as a trusted strategic advisor to the CISO, executive leadership, and the Board of Directors - translating complex application, AI, and product security exposure into clear, quantified business, customer, and financial impact, and shaping the narrative around key security decisions, priorities, and tradeoffs.

Build, lead, and develop a high-performing, multidisciplinary team; make deliberate build / borrow / buy decisions and cultivate a broad network of security champions embedded across engineering and the business units.

Champion a security-by-design, paved-road culture in which the secure path is the fast path - earning adoption from engineering and improving velocity while reducing risk, with measurable coverage, adoption, and risk-burndown reporting.

Align application, AI, and product security to the regulatory and customer requirements that govern ADI's markets - including automotive (ISO/SAE 21434, ISO 26262), aerospace and defense (ITAR/EAR, CMMC), healthcare (IEC 62304, FDA cybersecurity guidance), and industrial (IEC 62443) - and support customer-facing trust, audits, and attestations.

Integrate application, AI, and product security risk into ADI's enterprise risk model, establish and chair cross-functional governance with a clear risk-acceptance and exception process, and report posture, key risk indicators, and program progress to executive and Board-level audiences.

Lead response to significant application, AI, or product security incidents, including decision-making, regulatory engagement, external communications, and post-incident learning.

Operate with a high degree of autonomy in a fast-paced, evolving environment; identify opportunities to improve how ADI secures its software, AI, and products, and establish scalable standards and best practices.

Lead and scale a high-performing multidisciplinary organization across application, AI, and product security, establishing the structure, priorities, and accountability needed to deliver impactful enterprise security outcomes for ADI

Build a strong talent bench by attracting, developing, and retaining top security talent, strengthening leadership capability, and fostering a collaborative culture of agility, ownership, and continuous improvement

Serves as a credible, trusted partner to internal stakeholders and engineering teams, ensuring security standards enable delivery, strengthen product trust, and support ADI's innovation and growth priorities

Required Qualifications
  • Bachelor's degree required, preferably in Engineering, Computer Science, Cybersecurity, or a related technical field (or equivalent experience).
  • 15+ years of progressive cybersecurity experience, including significant experience in a senior security leadership role (e.g., Deputy CISO, CISO, or a Senior Director/Executive Director leading application, product, or AI security) in a large-scale, complex environment.
  • 15+ years of sponsoring and managing complex programs and projects. A breathe of program delivery across application delivery, product and cybersecurity is preferred.
  • Proven experience building, leading, and scaling security functions across large, global engineering organizations, with a track record of building high-performing teams and sustaining engagement through organizational change.
  • Deep expertise establishing secure-SDLC / DevSecOps programs and embedding automated security testing (SAST/SCA/DAST/secret scanning) into CI/CD pipelines, with hands-on understanding of software supply-chain security, threat modeling, and secure code / design review.
  • Working knowledge of AI/GenAI security and governance frameworks and controls - including model risk, data leakage, prompt-injection defense, and AI incident response - and familiarity with the emerging risks of agentic AI.
  • Experience with product security, PSIRT / coordinated vulnerability disclosure, and SBOM / software-supply-chain transparency, and the ability to interpret and map requirements from security and safety frameworks relevant to ADI's markets (e.g., IEC 62443, ISO/SAE 21434, ISO 26262, IEC 62304, NIST CSF, CMMC, ITAR/EAR).
  • Demonstrated ability to translate highly complex technical risk into clear, quantified, business-focused terms (e.g., FAIR or equivalent) and communicate to both technical and non-technical audiences, including executives and the Board.
  • Strong executive presence and stakeholder-management skills, with experience working directly with senior leadership and influencing across organizational boundaries.
  • Demonstrated ability to operate with significant autonomy, navigate ambiguity, and balance strategic thinking with hands-on execution in a dynamic, fast-paced environment.


Ideal Qualifications
  • Advanced degree and relevant certifications (e.g., CISSP, CISM).
  • Experience in the semiconductor, electronics, or advanced-hardware industry, or in another regulated, IP-intensive, or critical-infrastructure-adjacent environment (e.g., aerospace/defense, automotive, medical devices, or life sciences).
  • Experience operating in export-controlled and regulated environments (e.g., ITAR/EAR, CMMC).
  • Experience standing up a new security capability or function from the ground up, including establishing governance, standards, and scalable operating models across a large organization.
  • Experience supporting Board-level communications, enterprise risk reviews, or executive decision forums on cybersecurity posture and strategy.


For positions requiring access to technical data, Analog Devices, Inc. may have to obtain export licensing approval from the U.S. Department of Commerce - Bureau of Industry and Security and/or the U.S. Department of State - Directorate of Defense Trade Controls. As such, applicants for this position - except US Citizens, US Permanent Residents, and protected individuals as defined by 8 U.S.C. 1324b(a)(3) - may have to go through an export licensing review process.

Job Req Type: Experienced

Required Travel: Yes, 10% of the time

Shift Type: 1st Shift/Days

The expected wage range for a new hire into this position is $219,200 to $301,400.
  • Actual wage offered may vary depending on work location, experience, education, training, external market data, internal pay equity, or other bona fide factors.
  • This position qualifies for a discretionary performance-based bonus which is based on personal and company factors.
  • This position includes medical, vision and dental coverage, 401k, paid vacation, holidays, and sick time, and other benefits.

About Analog Devices, Inc

Analog Devices (NYSE: ADI) defines innovation and excellence in signal processing. ADI's analog, mixed-signal, and digital signal processing (DSP) integrated circuits (IC) play a fundamental role in converting, conditioning, and processing real-world phenomena such as light, sound, temperature, motion, and pressure into electrical signals to be used in a wide array of electronic equipment. But that doesn't begin to capture the essence of what Analog Devices does for their customers, and ultimately for the end user.

Analog Devices, Inc Careers

Joining Analog Devices, Inc (ADI) offers an unparalleled opportunity to be part of a team that prides itself on innovation, leadership, and a diverse and inclusive culture. As a global leader in the semiconductor industry, ADI is the perfect place to advance your career, whether you're a seasoned professional or just starting out. Work You’ll Do At Analog Devices, Inc, you will collaborate with some of the brightest minds in the industry, working on groundbreaking projects that shape the future of technology. Our commitment to innovation is unwavering, and we empower our team to explore new ideas and solutions. Be Part of a Great Team ADI is not just about individual achievements but about collective success. Our team culture is built on collaboration, where each member’s skills and insights are valued. We believe in nurturing our employees' growth through comprehensive professional and diversity training programs that foster an inclusive environment. Innovate and Lead Step into a role at ADI and you’ll find yourself at the intersection of technology and innovation. Our leadership in designing and manufacturing semiconductor products allows us to push boundaries and think outside the box. Your work here leads to the development of solutions that not only meet but exceed our clients' expectations. Career Growth and Opportunities Your career at Analog Devices, Inc is filled with endless possibilities. We offer a variety of job opportunities across multiple functions, ensuring that your career trajectory is in your hands. From engineering to marketing, and from sales to research and development, every position contributes to our global success. Internship Programs Start your career journey with an internship at ADI, where you can apply your academic knowledge in a real-world setting. Our internships provide a robust platform for learning and development, making you job-ready and equipped with practical skills that stand out in your resume. Benefits and Culture Choosing a career at Analog Devices, Inc means more than just employment. It signifies becoming part of a company that values your well-being and professional development. Our benefits package is designed to support not only your individual needs but also those of your family, encompassing health, finance, and work-life balance. Join Our Team Explore the job opportunities and open positions on our Careers page. We are continuously hiring new talents who are passionate, curious, and eager to make a difference. Sharpen your skills through our training programs and prepare for your interview with confidence. Networking and Professional Development At ADI, networking and professional development are part of our DNA. Engage with leaders and peers through various events and platforms, enhancing your career prospects and gaining insights that are integral to professional growth. Stay Connected Keep up to date with the latest at Analog Devices, Inc by following our Careers Blog. Gain insider perspectives and industry-leading insights that can help you navigate your career path at ADI. Job Alert Emails Personalize your subscription to receive job alerts and the latest news tailored to your preferences. Discover the exciting and rewarding career opportunities waiting for you at Analog Devices, Inc. Join Analog Devices, Inc today and be part of a company that thrives on innovation, values diversity, and is dedicated to your professional growth.
Learn more about Analog Devices, Inc
Size
24,700 employees
Market Cap
$82.5 billion
Industry
Net Income
$1.4 billion
Founded
1965
5 Year Trend
+18%
Revenue
$5.8 billion
NASDAQ

Similar Jobs

More Jobs at Analog Devices, Inc

More Information Technology Jobs

Find similar Head of Application Security jobs: