Talent.com
No longer accepting applications
Senior Application Security Manager

Senior Application Security Manager

ARCONTumkur, Karnataka, India
8 hours ago
Job description

Job Summary : We are seeking a highly experienced and strategic-minded Senior Manager of Application Security to lead our security initiatives. The ideal candidate will be a seasoned leader with a deep understanding of application security, vulnerability management, and secure software development lifecycle (SDLC) best practices. You will be responsible for building, managing, and scaling our application security program across multiple product lines, ensuring our systems are robust, secure by design, and compliant with all relevant industry standards. This role requires a blend of technical expertise, leadership, and strategic vision

Responsibilities :

  • Strategic Program Leadership :

Develop and execute a comprehensive application security strategy that aligns with business objectives and product roadmaps.

Build, lead, and mentor a high-performing team of application security engineers and DevSecOps professionals.

Define and enforce application security policies, standards, and procedures across the organization.

  • Security Integration & Automation :
  • Oversee the integration of security tools (SAST, DAST, SCA, vulnerability scanners) into the CI / CD pipelines, leveraging both paid and open-source solutions.

    Champion the use of automation to streamline security testing and provide continuous feedback to development teams.

    Direct the development and maintenance of scripts and automation frameworks (e.g., Python, Bash) to orchestrate and scale security tool usage across the enterprise.

  • Vulnerability Management & Remediation :
  • Establish and manage a robust vulnerability management program, including a formal process for handling client-reported vulnerabilities and penetration test findings.

    Provide expert-level guidance and architectural solutions for complex security vulnerabilities.

    Define and enforce service-level agreements (SLAs) for vulnerability remediation based on severity and business impact, ensuring critical and high-priority issues are fixed promptly.

  • Tracking, Reporting, and Audits :
  • Implement and manage a centralized system to track all open vulnerabilities (VAs) across the entire product portfolio.

    Generate executive-level reports and dashboards on the company's application security posture for senior leadership and board members.

    Lead and coordinate internal and external security audits, assessments, and compliance initiatives.

  • Product-wide Security & Threat Intelligence :
  • Implement processes to ensure that a vulnerability discovered in one product or module is systematically evaluated for its existence across all other products and components.

    Proactively monitor and assess emerging threats, vulnerabilities, and security trends, and translate them into actionable plans for the team

  • Collaboration & Education :
  • Collaborate with engineering, product management, and operations teams to embed security into the early stages of the SDLC.

    Act as the primary subject matter expert on application security for the entire organization.

    Develop and lead security awareness and training programs for engineering teams to foster a culture of security.

    Required Skills and Qualifications :

    Bachelor's or Master's degree in Computer Science, Information Security, or a related field.

    12+ years of progressive experience in application security, with at least 4+ years in a senior management or leadership role.

    Proven experience building and managing an application security program from the ground up.

    Expertise in a wide range of application security tools, including :

    o SAST : Veracode, Checkmarx, SonarQube, Semgrep or similar.

    o DAST : Invicti, Burp Suite Enterprise, OWASP ZAP, or similar.

    o SCA : Snyk, Black Duck, or similar. o Vulnerability Scanners : Nuclei, Qualys, Nessus, or similar

    Demonstrated proficiency in scripting and automation (e.g., Python, Bash) for security tooling integration and data analysis.

    Strong knowledge of CI / CD pipelines (Jenkins, GitLab CI / CD) and cloud platforms (AWS, Azure, GCP).

    Deep understanding of common web application vulnerabilities (OWASP Top 10, CWE) and secure coding principles.

    Exceptional leadership, communication, and interpersonal skills, with the ability to influence and drive change at an organizational level.

    Relevant industry certifications such as CISSP, CSSLP, CISM, or similar are highly preferred

    Create a job alert for this search

    Application Security • Tumkur, Karnataka, India

    Related jobs
    • Promoted
    Sr. Lead - Cloud Security

    Sr. Lead - Cloud Security

    Sycamore Informatics Inc.Tumkur, IN
    Cloud security framework; Strong scripting skills with PowerShell and.Solid understanding of version control tools, particularly Git. Experience with cloud platforms, including AWS, Azure and GCP.Pr...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Manager - Information Security (Governance, Risk and Compliance)

    Senior Manager - Information Security (Governance, Risk and Compliance)

    NaviBangalore (division)
    At Navi, the InfoSec team safeguards our digital ecosystem - ensuring the confidentiality, integrity, and availability of critical systems and data. We lead the charge on cyber risk management, regu...Show moreLast updated: 5 days ago
    • Promoted
    Application Specialist

    Application Specialist

    ReparioTumkur, IN
    We are seeking a highly skilled Application Specialist to provide first-call resolution support for hosted eDiscovery applications and infrastructure services. Primary duties include providing clien...Show moreLast updated: 6 days ago
    • Promoted
    Azure Security Centre Analyst

    Azure Security Centre Analyst

    PwCtumakuru, karnataka, in
    Seeking an Azure Security Centre Analyst with proven experience in cloud security operations within the Microsoft Azure ecosystem. Key responsibilities include managing Azure security tools, vulnera...Show moreLast updated: 4 days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.aiTumkur, IN
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Application security engineer

    Lead Application security engineer

    Capillary TechnologiesBangalore (division)
    We operate in the loyalty domain where we help our customers to better engage their users to enhance their business outcomes. To provide assurances to our customers, we comply with ISO 27001, PCI & ...Show moreLast updated: 2 days ago
    • Promoted
    Senior Data Security & Governance Specialist

    Senior Data Security & Governance Specialist

    Integris GroupTumkur, IN
    The Senior Data Security & Governance Specialist is responsible for defining and enforcing governance, compliance, and security controls across modern data platforms built on Azure and Databricks.T...Show moreLast updated: 6 days ago
    • Promoted
    Application Security Engineer

    Application Security Engineer

    FoodsmartTumkur, IN
    Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 25 days ago
    • Promoted
    Senior Security Architect

    Senior Security Architect

    LanceSoft, Inc.Tumkur, IN
    We have an immediate opportunity for "Oracle E Business - Payroll Consultant (Techno Functional)" with our client.Interested candidates send me your CV to kirthika. Title : Senior Security Architect....Show moreLast updated: 6 days ago
    • Promoted
    Application Security Architect

    Application Security Architect

    YASH TechnologiesGreater Bengaluru Area, India
    Role : Application Security Architect.This role is responsible for architecting, designing security controls for applications. The successful candidate will lead efforts to establish and improve secu...Show moreLast updated: 28 days ago
    • Promoted
    Senior Security Engineer – Cloud, AI & Application Security

    Senior Security Engineer – Cloud, AI & Application Security

    Symosis SecurityTumkur, IN
    Symosis Security is a fast-growing cybersecurity and technology firm helping global organizations strengthen their cloud, application, and AI security posture. We combine deep technical expertise wi...Show moreLast updated: 1 day ago
    • Promoted
    SecOps Engineer

    SecOps Engineer

    JosysBangalore (division)
    Security Operations (SecOps) Engineer.Engineering Manager – Platform & Security.Josys is on a mission to redefine enterprise IT operations through automation, visibility, and security.As we continu...Show moreLast updated: 5 days ago
    Senior Information Security Engineer

    Senior Information Security Engineer

    Epergne SolutionsBangalore Rural, Karnataka, India
    Quick Apply
    Senior Information Security Engineer.Job Roles & Responsibilities : .Docker, Kubernetes), databases, and web services.Create and maintain comprehensive documentation including.SOPs, technical rep...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Consultant (Cloud Security)

    Senior Security Consultant (Cloud Security)

    Claranet Indiatumakuru, karnataka, in
    Founded at the beginning of the dot.CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business. Since then, Claranet has grown from an Internet Service Provider (ISP)...Show moreLast updated: 6 days ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    AtomicworkBangalore (division)
    Atomicwork is reimagining IT and workplace operations by putting employees at the center of the experience.With a strong emphasis on automation, integration, and security, Atomicwork helps organiza...Show moreLast updated: 5 days ago
    • Promoted
    Cyber Security Senior Analyst - Cloud security

    Cyber Security Senior Analyst - Cloud security

    Societe Generale Global Solution CentreBangalore (division)
    We are seeking a skilled Cloud Security Senior Analyst to join our team.The ideal candidate will have extensive experience in cloud security, particularly with AWS. This role involves ensuring the s...Show moreLast updated: 4 days ago
    • Promoted
    Senior Cloud Security Specialist

    Senior Cloud Security Specialist

    ACL Digitaltumakuru, karnataka, in
    We are a leading organization in the field of information security, dedicated to protecting our clients' data and ensuring their digital safety. Our mission is to provide innovative security solutio...Show moreLast updated: 5 days ago
    • Promoted
    Senior Manager

    Senior Manager

    PwC Acceleration Center IndiaBangalore (division)
    A career in our Cyber Data Tech Risk – Enterprise Tech Solutions practice will provide you with the opportunity to help our clients build trust and confidence in their digital and technology-enable...Show moreLast updated: 5 days ago