Senior Manager, Application Security (Remote)
Core
Lead enterprise application security strategy, embed security into SDLC, and build a high-performing team of security engineers.
Role type
Senior Manager, Application Security
Builds
Enterprise application security programs, secure SDLC standards, and automated security tooling pipelines.
Domain
Financial services / Application Security / DevSecOps
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Application security strategy, secure SDLC integration, threat modeling, vulnerability management, DevSecOps practices, SAST/DAST/SCA/API/container security tools, risk assessment and prioritization, team leadership and mentorship, cross-functional stakeholder management
Preferred skills
Regulated environment experience (financial services/fintech), cloud security (AWS/Azure/GCP), Zero Trust architecture
Technologies
SAST, DAST, SCA, API security, container security, CI/CD pipelines, AWS, Azure, GCP
Responsibilities
Define and evolve AppSec strategy and roadmap; Own and scale AppSec program including policies and governance; Partner with engineering to integrate security into CI/CD pipelines; Drive threat modeling, security architecture reviews, and vulnerability management; Evaluate and optimize AppSec tooling and automate security processes; Build, mentor, and lead a high-performing team of application security engineers; Collaborate with Engineering, Product, Cloud, Infrastructure, and GRC teams; Establish and track key security metrics; Ensure applications meet security, regulatory, and audit requirements; Promote a developer-centric security culture through education and training
Seniority
Senior Manager, hands-on leadership