Director of Product Security
Quick Summary
threat modeling, secure code and architecture review, SCA, secret scanning, vulnerability management, CSPM and configuration management; integrated across the SSDLC as scalable, shift-left,
ID.me is the next-generation digital identity wallet that simplifies how individuals securely prove their identity online. Consumers can verify their identity with ID.me once and seamlessly login across websites without having to create a new login and verify their identity again. Over 152 million users experience streamlined login and identity verification with ID.me at 20 federal agencies, 45 state government agencies, and 70+ healthcare organizations. More than 600+ consumer brands use ID.me to verify communities and user segments to honor service and build more authentic relationships. ID.me’s technology meets the federal standards for consumer authentication set by the Commerce Department and is approved as a NIST 800-63-3 IAL2 / AAL2 credential service provider by the Kantara Initiative. ID.me is committed to “No Identity Left Behind” to enable all people to have a secure digital identity. To learn more, visit https://network.id.me/.
ID.me is a full-time, in-office culture. Unless a specific job description explicitly states otherwise, all roles are on-site five days per week at one of our offices in McLean, VA; Mountain View, CA; New York City, NY; or Tampa, FL. Certain roles — such as field-based sales or other remote-by-design positions — may have different work arrangements as noted in their individual postings.
At ID.me, we embrace the thoughtful use of AI tools in our daily work and there are even occasions where we leverage AI in our hiring process. However, during the interview process, we want to understand your individual skills and experiences. Therefore, we have guidelines on how AI can be appropriately used during your application and interviews which can be found here.
Location: Mountain View, CA (on-site) Reports to: Chief Information Security Officer (CISO)
Department: Security - Product Security
About the Role
~4 min read
Must Have
Outcome-based leadership. You translate business objectives into clear outcomes and keep the
team focused on them. You set the requirements and constraints, guide the how without dictating it,
and trust your team to own execution. You know what good looks like and reach it efficiently; the
right-sized solution, delivered without micromanagement.
Accountability for results. You measure success by whether risk actually went down and whether
engineers can do their jobs safely; not by how many findings you produced. You drive fixes to
closure, even when another team owns the code.
Partnership with Engineering. Engineering is your customer. You default to "how do we make this
work safely?" and when you must say no, you explain it in terms they value and offer a path. You
assert security and compliance requirements; you don't dictate product decisions.
Speed and judgment. Assessments turn around in days, not weeks. You right-size rigor to the
decision in front of you and avoid security theater.
Technical depth. You move fluently across threat modeling, code and architecture review,
SCA/SAST, secret scanning, vuln management, and cloud/CSPM — enough to earn engineers'
respect and coach your team.
Integrity and trust. You handle privileged access with discretion, and you build a team where
sharing bad news early is safe and rewarded.
AI fluency. Our security org runs on AI daily (Claude, Gemini, custom tooling). You treat AI as a
force multiplier and champion AI-augmented security workflows.
Strong Preference
● Built or matured an Application Security, Security Engineering, or Product Security program
in a fast-shipping, cloud-native environment like ours: GCP, GitHub, Kubernetes/GKE,
Apigee, Terraform, and modern CI/CD
● Hands-on with security tooling such as Socket.dev, Sysdig, Trivy, DependencyTrack, or
HackerOne
● AI-augmented security workflows with Claude, Gemini, or Vertex AI
● Growth-stage experience where you had to build, not just maintain
About the Environment
● AI-first. The CISO's goal: make it safe for everyone to use every feature of any
company-provisioned AI tool for any task. You'll help make that real.
● Practical over procedural. We prefer technical enforcement over policy documents, and
real risk reduction over checkbox compliance.
● One team. Security at ID.me operates as a single organization — ProdSec, SecOps, GRC,
IT, and Physical Security collaborate daily. We value leaders who build cross-functional trust
and operate transparently
The annual base salary listed does not include a company bonus, incentive for sales roles, equity and benefits which will be determined based on experience, skills, education, relevant training, geographic location and role.
ID.me offers comprehensive medical, dental, vision, health savings account, flexible spending accounts (medical, limited purpose, dependent care, commuter benefit accounts), basic and voluntary life and AD&D insurance, 401(k) with company match, parental leave, ability to participate in unlimited paid time off subject to the terms and conditions of the PTO policy, including 8 company wide holidays, short and long-term disability insurance, accident and critical illness insurance, referral bonus policy, employee assistance program, pet insurance, travel assistant program, wellbeing and childcare discounts, benefit advocates, and a learning and development benefit.
Final offers may vary from the amount listed based on qualifications, professional experiences, skills, education, relevant training, geographic location, and other job related factors.
ID.me maintains a work environment free from discrimination, where employees are treated with dignity and respect. All ID.me employees share in the responsibility for fulfilling our commitment to equal employment opportunity. ID.me does not discriminate against any employee or applicant on the basis of age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable laws, regulations and ordinances. ID.me adheres to these principles in all aspects of employment, including recruitment, hiring, training, compensation, promotion, benefits, social and recreational programs, and discipline. In addition, ID.me's policy is to provide reasonable accommodation to qualified employees who have protected disabilities to the extent required by applicable laws, regulations and ordinances where a particular employee works. Upon request we will provide you with more information about such accommodations.
Please review our Privacy Policy, including our CCPA policy, at id.me/privacy. If you provide ID.me with any personally identifiable information you confirm that you have read and agree to be bound by the terms and conditions set out in our Privacy Policy.
ID.me participates in E-Verify.
Location & Eligibility
Listing Details
- Posted
- August 24, 2026
- First seen
- August 24, 2026
- Last seen
- August 24, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 79%
- Scored at
- August 24, 2026
Signal breakdown
Please let Idme know you found this job on Jobera.
3 other jobs at Idme
View all →Explore open roles at Idme.
Similar Product Director jobs
View all →Browse Similar Jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.
