Jci

Jci

Director Security Engineering

Westford-Massachusetts-United States of America · Director

Sponsorship not specifiedDetected 1 day ago
Cloud PlatformsCybersecurityPenetration TestingIncident ResponseComplianceProduct ManagementStakeholder ManagementProcess ImprovementCustomer SupportEmbedded SystemsSystems EngineeringFDA RegulatoryMedical DevicesLeadershipCommunicationCollaborationRegulatory AffairsCISSP

> stay_score

odds of building a lasting career here

16Unrated
Cap-exempt (no lottery)0
Sponsors this role0
Entry-level history0
PERM / green-card track0
Lottery odds40
Fits your clock70

No strong sponsorship signal in the public record yet. In the full product we resolve the exact legal entity and show its filing history with a confidence score — treat as unverified until then.

Lottery odds assume a STEM candidate.

Personalize to your clock →

> community_outcomes

No reports yet — be the first to help the next applicant.

About the role

  • The successful candidate will provide leadership across a complex global ecosystem of hardware, firmware, software, cloud, and IoT solutions, ensuring security is effectively integrated throughout the product lifecycle.
  • This position is critical to maintaining customer trust, meeting evolving cybersecurity expectations, supporting regulatory compliance initiatives, and ensuring the long-term success and resilience of the Fire Solutions business.

Responsibilities

  • Partner with Johnson Controls Enterprise Security to establish security governance, policies, standards, and risk management frameworks across the product portfolio.
  • Develop multi-year security roadmaps focused on improving product security maturity, resilience, and operational effectiveness.
  • Drive a culture of security-by-design, accountability, and continuous improvement throughout the organization.
  • Lead the implementation of cybersecurity governance processes across the product development lifecycle.
  • Partner with Regulatory Affairs, Quality, Legal, and Engineering teams to operationalize cybersecurity requirements associated with emerging regulations and industry standards.
  • Support audit readiness activities, security assessments, certifications, and regulatory reviews.
  • Work closely with Regulatory Affairs, which owns regulatory strategy and interpretation, to ensure cybersecurity obligations are effectively implemented within engineering and product development processes.
  • Establish and maintain processes supporting:
  • Develop metrics and reporting to track cybersecurity compliance readiness and risk posture.
  • Define and lead the organization's AI security governance and threat response strategy.

Requirements

  • Bachelor's degree in computer science, Cybersecurity, Engineering, Information Technology, or a related technical discipline.
  • 12+ years of experience in cybersecurity, product security, software engineering, systems engineering, or related technical leadership roles.
  • 5+ years of experience leading large-scale security programs and influencing global organizations.
  • Strong knowledge of product security, secure development practices, cloud security, IoT security, and vulnerability management.
  • Proven success integrating cybersecurity requirements across multiple product lines and technology stacks.
  • Experience balancing business objectives, customer needs, compliance requirements, and cybersecurity risk management.
  • Strong executive presence with the ability to communicate complex technical concepts to both technical and non-technical audiences.
  • Lead the cybersecurity execution framework required to support CRA compliance across the Fire Solutions portfolio.

Nice to have

  • Master's degree in Cybersecurity, Computer Science, Engineering, Business, or a related field.
  • Industry certifications such as CISSP, CISM, CRISC, CSSLP, GIAC, or equivalent.
  • Experience supporting products subject to cybersecurity regulations and compliance frameworks.
  • Knowledge of cybersecurity standards and frameworks including NIST, IEC 62443, ISO 27001, UL cybersecurity standards, and related industry practices.
  • Experience implementing DevSecOps and security automation initiatives.
  • Knowledge of AI governance, AI security controls, and emerging AI threat landscapes.
  • Experience Required
  • Global Product Experience

Compensation

  • Competitive salary

Benefits

  • Paid vacation/holidays/sick time
  • Comprehensive benefits package including 401K, medical, dental, and vision care.

Company info

  • Johnson Controls is global leader in smart, healthy, and sustainable buildings.
  • Our mission is to reimagine the performance of buildings to serve people, places, and the planet.
  • Join a winning team that enables you to build your best future!
  • Our teams are uniquely positioned to support a multitude of industries across the globe.
  • You will have the opportunity to develop yourself through meaningful work projects and learning opportunities.
  • We strive to provide our employees with an experience focused on supporting their physical, financial, and emotional wellbeing.
  • Become a member of the Johnson Controls family and thrive in an empowering company culture where your voice and ideas will be heard - your next great opportunity is just a few clicks away!
  • What We Offer:
  • Competitive salary
  • On-the-job/cross-training opportunities
  • Encouraging and collaborative team environment
  • Dedication to safety through our Zero Harm policy
  • Position Summary
  • Johnson Controls Fire Solutions is seeking a strategic and influential Director, Product Security & Security Strategy to lead the cybersecurity vision, governance, and execution framework across a global portfolio of fire detection, suppression, life safety, connected devices, cloud platforms, mobile applications, and digital services.
  • This critical leadership role will be responsible for defining and advancing the Fire Solutions product security strategy while partnering closely with Enterprise Security, Engineering, Product Management, Regulatory Affairs, Quality, Legal, and Operations organizations.
  • The Director will establish scalable security processes, lead cybersecurity risk and vulnerability management programs, drive Cyber Resilience Act (CRA) readiness and execution, and develop the organization's AI security threat response and governance capabilities.
  • This individual will translate cybersecurity requirements into practical engineering processes, improve security operational efficiency, and promote a culture of security ownership across the organization.
  • Product Security Strategy & Leadership
  • Define and execute the Fire Solutions Product Security Strategy aligned with business objectives, customer expectations, and enterprise cybersecurity standards.
  • Serve as the senior product security leader for Fire Solutions and provide strategic cybersecurity guidance to business and engineering leadership.
  • Establish security metrics, KPIs, and executive reporting mechanisms to measure program effectiveness and risk reduction.
  • Security Governance & Compliance Execution

This listing is sourced directly from Jci's careers page and normalized into a canonical job model.