Job Description
In order to make an application, simply read through the following job description and make sure to attach relevant documents.Who Are We
Hansen Technologies is a leading global provider of software and services that enable organisations to transform customer experiences and streamline critical business processes. With a rich history of innovation and a footprint that spans over 80 countries, Hansen empowers utilities, energy, and communications companies to thrive in an ever‑evolving digital landscape. Our commitment to excellence, customer focus, and collaborative culture makes Hansen a place where passionate professionals can make a meaningful impact, drive real change, and help shape the future of industries worldwide.
We are proud to be an equal opportunities employer. Hansen prides itself on celebrating diversity and is committed to creating an inclusive environment for all employees, even extending this to how we work with our customers, partners, and suppliers. We welcome applications from all qualified candidates, regardless of age, disability, gender identity or expression, marital status, race, ethnicity, religion or belief, sexual orientation, or any other protected characteristic. If you require any adjustments or accommodation during the recruitment process, please let us know.
Why This Role Matters
Build Secure Products, Enable Fast Teams and Raise the Bar.
As Principal Product Security Consultant, you will play a pivotal role in shaping how security is embedded into Hansen’s software ecosystem. This is not a compliance‑only role; it is about modern, scalable, developer‑aligned product security.
You Will
- Define and mature Hansen’s enterprise Product Security and Application Security program
- Enable engineering teams to deliver faster, safer software through pragmatic tooling, guidance, and automation
- Act as a hands‑on technical authority and trusted advisor, influencing how security is designed into products from day one
- Champion the use of AI and automation in the SDLC, improving signal quality, reducing friction, and driving meaningful security outcomes
- Your impact will be visible across global product teams, influencing everything from threat modelling and tooling adoption to developer enablement and vulnerability transparency.
What You’ll Do
- Lead Product & Application Security Uplift: Design, evolve, and execute an enterprise‑wide Product Security and AppSec program aligned to business priorities.
- Embed Security into the SDLC: Provide hands‑on guidance to engineering teams on secure design, development, and delivery practices.
- Own AppSec Tooling & Platforms: Operate, improve, and optimise security tooling (SAST, DAST, SCA, IaC, container scanning), reducing noise while increasing adoption and impact.
- Enable Teams, Not Block Them: Evangelise secure development practices through enablement, documentation, and a thriving Security Champions program.
- Threat Model What Matters: Establish and operationalise threat modelling practices across products, coaching teams to think adversarially and proactively.
- Bring AI into AppSec: Champion and integrate AI capabilities within the SDLC and security platforms to enhance detection, prioritisation, and insight.
- Measure & Communicate Risk: Build meaningful reporting that provides leadership with a clear, enterprise‑wide view of product security posture and vulnerability risk.
What You Bring
- Proven experience leading or building a Product Security program in a complex software environment
- Strong background in software engineering or DevOps, or equivalent demonstrable technical expertise
- Deep knowledge of application security tooling, platforms, and CI/CD integrations
- Experience configuring policies, tests, and guardrails within modern delivery pipelines
- Ability to influence, coach, and partner with engineers and product leaders
- Confidence operating as a senior approval and advisory layer for higher‑risk application architectures
- A pragmatic mindset – focused on outcomes, not theory
Nice to Have
- Familiarity with security frameworks and their practical application in AppSec
- Experience with threat modelling methodologies (and training others to use them)
- Awareness of regulatory and privacy requirements (e.g. GDPR)
- Relevant security certifications (e.g. CSSLP, GIAC, AWS/Azure Security, OSCP, CEH)
Benefits and Perks
Join us for a rewarding career with competitive compensation, leave entitlements, health coverage, and financial security. Enjoy work‑life balance, growth, and recognition for your exceptional performance. xwzovoh Our team will unveil the intricacies of our benefit package during the selection process.
…
