Logitech seeks a Head of Product Security in Lausanne, CH, to lead the company’s security strategy across all products and services. The role requires deep expertise in product, application, and embedded security, with a focus on compliance, AI safety, and supply chain protection. Reporting to the CISO, this Director-level position is hybrid and full-time.
The Head of Product Security is responsible for shaping and overseeing Logitech’s end-to-end product security strategy, ensuring compliance with global regulations and protecting customer data. Based in Lausanne, the role reports to the CISO and leads a global team of security experts and product champions, embedding security into all stages of product development and lifecycle.
Responsibilities
- Design and implement a product security strategy aligned with business goals, reporting risk and program performance to leadership.
- Integrate security as a competitive advantage, supporting brand trust and reducing financial exposure from legal and product risks.
- Create and enforce security policies, standards, and guidelines for all Logitech products.
- Lead global compliance with regulations like the EU Cyber Resilience Act and UK PSTI Act, managing gap analysis and remediation.
- Lead and develop a high-performing security team, promoting a proactive security culture across the organization.
- Advocate for 'Security by Design' across IoT, mobile, desktop, and cloud products, embedding secure development practices.
- Establish 'Safe AI by Design' principles to protect AI models, training data, and deployed agents from attacks and misuse.
- Ensure clear and accurate public communication of security practices, including vulnerability disclosure and update timelines.
- Enforce security standards for supply chain and manufacturing, protecting firmware, source code, and production processes.
- Provide expert security guidance to engineering and product teams.
- Manage product decommissioning to maintain security throughout the lifecycle.
- Oversee penetration testing and vulnerability management, driving remediation with asset owners.
- Develop AI-powered threat hunting to detect and respond to emerging threats.
- Lead response to product-related security incidents, ensuring rapid and effective resolution.
Requirements
- Minimum 12 years in product, application, and embedded systems security, with leadership and hands-on experience across IoT, mobile, and cloud platforms.
- Deep knowledge of Secure Software Development Lifecycle (SDLC) and DevSecOps, including threat modeling and security architecture reviews.
- Advanced skills in security tools: SAST, DAST, SCA, binary analysis, and fuzzing for vulnerability detection and management.
- Proven experience securing firmware, embedded systems, and Hardware Security Modules (HSMs), including OTA updates for IoT devices.
- Strong technical understanding of AI/ML security, including mitigating adversarial attacks like data poisoning, model inversion, and prompt injection.
- Expertise in cryptography, PKI, and key management, including planning for post-quantum cryptography (PQC) migration.
- Familiarity with global product security regulations, including EU CRA, UK PSTI Act, and vulnerability disclosure requirements.
- Experience in third-party and supply chain security governance, especially with contract manufacturers (JDM/ODM) and suppliers.
- Excellent communication skills to explain technical risks and security strategies to executives and cross-functional teams.
- Ability to translate complex business and technical needs into clear security models and risk frameworks.
- Track record of building and mentoring high-performing cybersecurity and engineering teams.
- Strong financial management skills for multi-year security programs, including budgeting, forecasting, and cost control.
What the company offers
- Comprehensive and competitive benefits, including flexible work environments to support personal and family wellbeing.
- Support for physical, financial, emotional, intellectual, and social wellbeing to help employees thrive and achieve their goals.
About the company
Logitech is a Swiss innovation leader focused on connecting people to the digital world through high-quality products. The company empowers collaboration and play, drives sustainable design, and fosters an inclusive, authentic workplace that values diversity and global perspectives.
- Logitech is committed to positive global impact and flexible work approaches.
- The company’s purpose is to extend human potential in work and play.
- Innovation and design are central to Logitech’s product portfolio, creating meaningful experiences.
- Logitech prioritizes sustainability and reducing environmental impact through responsible design.
- The company supports collaboration and remote work without sacrificing productivity.
- Logitech fosters an inclusive culture with authentic, diverse teams.
- As a global company, Logitech celebrates differences and values diversity.
Quelle: öffentlich zugängliche Karriereseite des Arbeitgebers. Batchly ist nicht der Arbeitgeber und steht nicht notwendigerweise in einem Vertragsverhältnis mit dem Unternehmen.