Manager- Application Security
Core
Lead the Application Security program and manage a team of engineers to secure cloud-native, DevOps-only environments, including AI/ML and GenAI systems.
Role type
Manager, Application Security (hands-on IC with leadership)
Builds
Secure products, platforms, and AI/ML systems for global advertising and commerce
Domain
Cybersecurity, Cloud Native, DevSecOps, AI/ML Security
Deliverable
production ML models | product features | infrastructure
Required skills
Application security testing, vulnerability assessment, penetration testing, code review, AI/ML security testing, team leadership, strategy definition, stakeholder management, security architecture review, remediation governance, secure coding guidelines, threat modeling, CI/CD automation, container security
Preferred skills
Scaling AppSec programs, AI security tooling expertise, OSCP/GWAPT/GPEN certifications, CAISP certification
Technologies
Checkmarx, Burp Suite Enterprise, OWASP ZAP, MobSF, Garak, PyRIT, Docker, Kubernetes, Python, Bash, PowerShell
Responsibilities
Lead the Application Security program across products and platforms; manage and mentor a team of AppSec engineers; perform hands-on SAST, DAST, manual code review, and penetration testing; conduct security assessments of AI/ML and GenAI systems; partner with engineering teams to embed security in SDLC; drive remediation governance and vulnerability closure; conduct security architecture reviews; define secure coding and threat modeling practices; collaborate with GRC and Incident Response teams; research emerging AppSec and AI security technologies; drive metrics and reporting to senior leadership
Seniority
Manager, hands-on IC with team leadership
