JOB SUMMARY
Enterprise Application Portfolio - The Application Security Manager is responsible for leading the organization's Application Security program, ensuring that security is integrated throughout the Application Cycle (SDLC). This role partners closely with the software teams, cloud, architecture, infrastructure, and potentially product teams to identify, assess, and mitigate application security risks while enabling secure software delivery.
The successful candidate will lead a team of application security analysts, establish secure development standards, oversee security testing programs, and drive adoption of security best practices aligned with industry standards such as NIST SP 800-218 (Secure Software Development Framework), NIST Cybersecurity Framework (CSF) 2.0, OWASP, and CIS Controls.
Employment Type: Full-time
Department: Global Cybersecurity
Role Reports to: Security Operations Leader
Location: Americas
Work Arrangement: Hybrid
Scope: Regional
• Collaborate with other general and regional leaders within to develop the enterprise Application Security strategy.
• Lead, mentor, and develop Application Security Analysts.
• Define AppSec metrics, KPIs, and maturity goals in collaboration with regional and global security leaders.
Secure Software Lifecycle
• Integrate security into all phases of the enterprise application portfolio.
• Ensure security requirements are incorporated during design and architecture reviews.
• Promote security-by-design principles across application teams.