Application Security Manager
Core
Lead and mature the application security program, guiding a team of engineers and testers to protect the enterprise's application portfolio through strategic planning, risk assessment, and automated/manual security operations.
Role type
Senior Application Security Manager (Team Lead)
Builds
Enterprise-wide application security posture, security testing strategies, and automated tooling policies
Domain
Financial services / Application Security / Cloud Security
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure | physical/clinical work
Required skills
Application security program management, Penetration testing (application/network/cloud), Risk assessment and governance, SAST/SCA/DAST operations, Vulnerability management, Security strategy development, Team leadership and mentorship, OWASP Top 10 knowledge, Cloud architecture understanding
Preferred skills
Supervisory experience, AI-first transformation experience, Security certification (OSCE, OSCP, CISSP, etc.)
Technologies
SAST, SCA, DAST, Penetration testing platforms, Cloud-based application architectures
Responsibilities
Lead and mentor a team of application security engineers and penetration testers, Manage and mature the application security program, Participate in security and technology strategic planning, Set strategies for SAST, SCA, DAST, and penetration testing operations, Guide development teams through application reviews against common flaws, Provide visibility to senior management on security issues, Work with Risk & Compliance teams on audits (SOC 2, PCI-DSS, HIPAA), Research and recommend security policies and procedures
Seniority
Senior, hands-on IC with leadership responsibilities