Head of Application Security
Core
Lead and mature global Application Security capability, defining strategy and embedding security by design across the technology lifecycle to enable rapid, safe innovation.
Role type
Senior leadership IC and manager (Head of Application Security)
Builds
Global security programs for application, platform, and AI-enabled solutions in hybrid/multi-cloud environments
Domain
Financial services / Cybersecurity / Cloud-Native / AI Security
Deliverable
production ML models | product features | infrastructure
Required skills
Application security architecture, threat modeling, DevSecOps, secure coding standards, cloud security (Azure/AWS/OCI), AI security governance, security strategy definition, team leadership, stakeholder influence
Preferred skills
CISSP/CCSP/CSSLP certifications, SABSA/TOGAF frameworks, financial services experience, SAST/DAST/SCA tooling expertise
Technologies
GitLab, GitHub, Azure, AWS, OCI, SAST, DAST, SCA
Responsibilities
Define global AppSec strategy aligned to cyber risk posture; Lead multiple security engineering teams across AppSec, DevSecOps, AI, and Cloud; Oversee threat modeling, secure design reviews, and architecture risk assessments; Drive adoption of secure coding and automated security testing; Partner with Architecture and Engineering to deliver secure-by-default solutions; Communicate risk to senior leadership and governance forums.
Seniority
Senior, hands-on IC with strategic leadership scope