GVP, Product Security Engineering and Enablement
Warner Bros. DiscoveryAbout the role
Welcome to Warner Bros. Discovery… the stuff dreams are made of.
Who We Are…
When we say, “the stuff dreams are made of,” we’re not just referring to the world of wizards, dragons and superheroes, or even to the wonders of Planet Earth. Behind WBD’s vast portfolio of iconic content and beloved brands, are the storytellers bringing our characters to life, the creators bringing them to your living rooms and the dreamers creating what’s next…
From brilliant creatives, to technology trailblazers, across the globe, WBD offers career defining opportunities, thoughtfully curated benefits, and the tools to explore and grow into your best selves. Here you are supported, here you are celebrated, here you can thrive.
Welcome to Warner Bros. Discovery… the stuff dreams are made of.
Who We Are…
When we say, “the stuff dreams are made of,” we’re not just referring to the world of wizards, dragons and superheroes, or even to the wonders of Planet Earth. Behind WBD’s vast portfolio of iconic content and beloved brands, are the storytellers bringing our characters to life, the creators bringing them to your living rooms and the dreamers creating what’s next…
From brilliant creatives, to technology trailblazers, across the globe, WBD offers career defining opportunities, thoughtfully curated benefits, and the tools to explore and grow into your best selves.
Here you are supported, here you are celebrated, here you can thrive.
Warner Bros. Discovery (WBD), a premier global media and entertainment company, offers audiences the world's most differentiated and complete portfolio of content, brands, and franchises across television, film, streaming, and gaming.
For more information, please visit www.wbd.com.
Title: Group Vice President (GVP), Product Security, Engineering and Enablement
About the Position
We are seeking a results-oriented Group Vice President (GVP), Product Security Engineering and Enablement, to lead the enterprise-wide strategy and execution of secure-by-design principles across all products, platforms, and services. This role ensures that security is embedded throughout the software development lifecycle, enabling innovation while maintaining a strong, defensible security and privacy posture.
The GVP oversees key programs including application security architecture, secure software development practices, DevSecOps enablement, vulnerability management, software supply chain security, and assurance activities such as penetration testing and bug bounty programs. The role also drives compliance alignment with regulatory and industry frameworks and integrates privacy-by-design principles into product security strategies.
This position partners closely with product, engineering, platform, cybersecurity, legal and privacy, enterprise risk management, and business leaders to ensure security is a foundational element of product delivery. The successful candidate demonstrates sound judgment, strong execution discipline, clear executive communication skills, and experience leading globally distributed teams in complex, matrixed environments.
Your Role Accountabilities:
- Own the enterprise Product & Application Security strategy, ensuring secure-by-design and secure-by-default principles are embedded across all products, platforms, and services.
- Maintain and evolve the security architecture and governance framework for applications, APIs, and software development practices, aligning with enterprise risk objectives and regulatory requirements.
- Maintain, enforce, and enhance security standards and policies for product development, including secure coding practices, threat modeling, and vulnerability management across global engineering teams.
- Partner with product, engineering, and platform leaders to integrate security into agile development lifecycles and CI/CD pipelines while maintaining speed and innovation.
- Oversee assurance programs, including penetration testing, bug bounty, and vulnerability disclosure, ensuring findings are prioritized and remediated effectively.
- Lead risk management for software supply chain and third-party components, enforcing SBOMs, contractual security obligations, and continuous monitoring of dependencies.
- Drive compliance alignment for application security controls with industry frameworks and regulatory standards (e.g., SOX IT controls, PCI DSS, SWIFT, privacy and data protection requirements, or similar standards), ensuring audit readiness.
- Integrate privacy-by-design principles into product security architectu
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s