Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
1A
1010 Analog Devices Inc.
Head of Application Security
Career Insights for Generative Artificial Intelligence Engineer
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Massachusetts data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Generative Artificial Intelligence Engineer develops, designs, and manages generative models and algorithms that support the generation of new content in the form of images, text, audio, and other multimedia. They utilize GPTs, GANs, VAEs, and other deep learning architectures to craft systems capable of generating data. May work with data scientists, machine learning engineers, and software developers.
$135,571 / year median in Massachusetts
Job Description
About Analog Devices Analog Devices, Inc. (
NASDAQ:
ADI ) is a global semiconductor leader that bridges the physical and digital worlds to enable breakthroughs at the Intelligent Edge. ADI combines analog, digital, AI, and software technologies into solutions that combat climate change, reliably connect humans and the world, and help drive advancements in automation and robotics, mobility, healthcare, energy and data centers. With revenue of more than $11 billion inFY25, ADI
ensures today's innovators stay Ahead of What's Possible. Learn more at www.analog.com and on LinkedIn and X . Head of Application Security The leader of Application, AI and Product Security is a senior leadership role responsible for protecting the software, artificial intelligence, and products at the heart of ADI's business. Reporting to the Chief Information Security Officer (CISO), this leader ensures that everything ADI builds and ships is secure by design- worthy of the trust of our automotive, aerospace and defense, healthcare, and industrial customers, and resilient against the most capable threat actors.
- building on ADI's existing product security incident response and coordinated vulnerability disclosure capabilities
- for the products ADI designs, manufactures, and ships.
Key Responsibilities:
Lead the strategy, build-out, and operation of ADI's application security, AI security, and product security capabilities, including: Application Security (DevSecOps) : Establish and mature secure software development lifecycle (secure-SDLC) policy, standards, reference architectures, and tooling (SAST, SCA, DAST, secret scanning); harden the software supply chain- source repositories, Continuous Integration / Continuous Delivery/Deployment (CI/CD) pipelines, build systems, credentials, and dependencies
- and drive software bill of materials (SBOM) generation and trusted-publishing at scale.
AI Security :
Define and operate a risk-managed AI security and governance program aligned to recognized frameworks (e.g., NISTAI RMF, ISO/IEC 42001, OWASP LLM
Top 10, MITRE ATLAS), beginning with generative AI and LLM controls, and operations, and extending to secure agentic AI use cases including non-human / agent identity, action guardrails, and human-in-the-loop controls.Product Security :
Grow a company-wide, risk-managed product security practice anchored to a secure product development lifecycle standard (e.g., IEC 62443-4-1) and embedded into the New Product Introduction (NPI) process; own and mature ADI's Product Security Incident Response Team (PSIRT) capability, coordinated vulnerability disclosure, CVE/CVSS practice, andSBOM/HBOM
strategy for shipped firmware and hardware. Serve as a trusted strategic advisor to the CISO, executive leadership, and the Board of Directors- translating complex application, AI, and product security exposure into clear, quantified business, customer, and financial impact, and shaping the narrative around key security decisions, priorities, and tradeoffs.
- earning adoption from engineering and improving velocity while reducing risk, with measurable coverage, adoption, and risk-burndown reporting. Align application, AI, and product security to the regulatory and customer requirements that govern ADI's markets
- including automotive (ISO/SAE 21434, ISO 26262), aerospace and defense (ITAR/EAR, CMMC), healthcare (IEC 62304, FDA cybersecurity guidance), and industrial (IEC 62443)
- and support customer-facing trust, audits, and attestations.
- including model risk, data leakage, prompt-injection defense, and AI incident response
- and familiarity with the emerging risks of agentic AI.
CSF, CMMC, ITAR/EAR
). Demonstrated ability to translate highly complex technical risk into clear, quantified, business-focused terms (e.g., FAIR or equivalent) and communicate to both technical and non-technical audiences, including executives and the Board. Strong executive presence and stakeholder-management skills, with experience working directly with senior leadership and influencing across organizational boundaries. Demonstrated ability to operate with significant autonomy, navigate ambiguity, and balance strategic thinking with hands-on execution in a dynamic, fast-paced environment. Ideal Qualifications Advanced degree and relevant certifications (e.g., CISSP, CISM). Experience in the semiconductor, electronics, or advanced-hardware industry, or in another regulated, IP-intensive, or critical-infrastructure-adjacent environment (e.g., aerospace/defense, automotive, medical devices, or life sciences). Experience operating in export-controlled and regulated environments (e.g., ITAR/EAR, CMMC). Experience standing up a new security capability or function from the ground up, including establishing governance, standards, and scalable operating models across a large organization. Experience supporting Board-level communications, enterprise risk reviews, or executive decision forums on cybersecurity posture and strategy. For positions requiring access to technical data, Analog Devices, Inc. may have to obtain export licensing approval from the U.S. Department of Commerce- Bureau of Industry and Security and/or the U.S. Department of State
- Directorate of Defense Trade Controls. As such, applicants for this position
- except US Citizens, US Permanent Residents, and protected individuals as defined by 8 U.S.C. 1324b(a)(3)
- may have to go through an export licensing review process.