Logitech
Offensive DevSecOps Engineer
Full details on LinkedIn
The complete job description, requirements, and application details are available on the original posting.
About Logitech
Logitech International S.A. is a leading global company based in Switzerland, specializing in the design and manufacturing of personal computer peripherals and digital devices. Founded in 1981, Logitech has grown significantly, becoming one of the largest manufacturers in its field. The company is known for its diverse range of products, including computer mice, keyboards, audio products, gaming accessories, webcams, and wireless devices. Logitech has established a strong presence in the market by transitioning from serving Original Equipment Manufacturers to focusing on retail consumers. This shift has allowed the company to enhance its brand and customer experience. With manufacturing facilities across multiple continents, including Switzerland, Taiwan, and China, Logitech continues to innovate and expand its product offerings, contributing to its robust financial performance.
Security at Logitech
Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.
Security Philosophy
“Logitech follows a "life-cycle approach"to security, emphasizing risk identification early in the design process and maintaining a "Security by Design"mindset. The philosophy centers on people and proactive risk management through a centralized review board. - Stated AppSec Mission: "committed to providing secure products and services"– Logitech Legal (https://www.logitech.com/en-us/legal/vulnerability-reporting), Legal Page. ⚠️ staleness flag. - Risk Philosophy: "We adopt a life-cycle approach to managing this risk."– Logitech Blog (https://www.logitech.com/blog/2023/07/17/product-security-at-logitech/), Corporate Blog. ⚠️ staleness flag. - Developer Enablement: "Champion 'Security by Design' by integrating secure development lifecycle practices"– Logitech Job Posting (Hitmarker), Job Board. ⚠️ staleness flag. - Gaps: Specific internal metrics for developer enablement or 'paved road' initiatives are not publicly available.”
Security Team
Logitech's application and product security is governed by an internal Product Security Review Board (PSRB). The Head of Product Security reports directly to the Chief Information Security Officer (CISO) and leads a dedicated team alongside a global community of product security champions. Key leadership includes Tana Dubel as CISO. Practitioners identified include Principal and Product Security Engineers based in Switzerland and India. - Org Structure & Reporting Line: "The role is based in Lausanne, and reports to the CISO."– Logitech Job Posting (Hitmarker), Job Board. ⚠️ staleness flag. - Key Public-Facing Leaders: Tana Dubel, Chief Information Security Officer at Logitech – Global Cyber Conference (https://globalcyberconference.com/conference-speakers/tana-dubel/), Speaker Bio. ⚠️ staleness flag. - Team Size Estimate (as_of:): Information not publicly available. - Active AppSec Job Postings (as_of:): 1 (Head of Product Security). - Common Skill/Tool Patterns: Emphasis on SAST, DAST, SCA, formal threat modeling, fuzzing, and cloud security. - Gaps: Total headcount and specific team-to-developer ratios are not publicly available.
Key Initiatives
Logitech's primary AppSec initiatives include a formal Secure SDLC integrated with a Product Security Review Board and a public Bug Bounty program. They are also initiating "Safe AI by Design"practices. - Security Champions Program: Evidence Found. "leads a dedicated team and a community of product security champions across the globe."– Logitech Job Posting (Hitmarker), Job Board. ⚠️ staleness flag. - Vulnerability Management: "look forward to receiving your report through our HackerOne platform"– Logitech Legal (https://www.logitech.com/en-us/legal/vulnerability-reporting), Legal Page. ⚠️ staleness flag. - Secure SDLC Artifacts: "PSRB reviews and provides final approval on the security design for new products"– Logitech Blog (https://www.logitech.com/blog/2023/07/17/product-security-at-logitech/), Corporate Blog. ⚠️ staleness flag. - Recent Initiatives: "Safe AI by Design"– Logitech Job Posting (Hitmarker), Job Board. ⚠️ staleness flag. - Gaps: Detailed triage SLAs and MTTR targets are not publicly available.
Preparing for an AppSec interview?
Get the weekly briefing 2,000+ security pros trust.