Talent.com
This job offer is not available in your country.
Director of Application Security

Director of Application Security

HCLSoftwareDelhi, India
3 days ago
Job description

HCLSW seeks a Director, Head of Product & Application Security. The successful candidate will lead the end to end Product Security portfolio within HCL Software. Maintains and strengthens the risk posture across the organization through discovery and remediation of product security vulnerabilities and supply chain security. Establishes and communicates strategic vision for the programs, and ensures they align with development goals and opportunities. Leads a dynamic group of Application Security professionals worldwide, with expectations to expand team over time.

This individual is also expected to contribute to additional tasks in a cross-functional security team, especially assisting the Threat Management team; network and operating system vulnerability management; continuous monitoring and reporting; security incident handling, and participation in vendor and third-party application security reviews.

Key Responsibilities :

  • Develop and execute secure software development strategy in the form of Secure SDLC for the enterprise, including policies, standards and governance
  • Advance and execute a software supply chain security development strategy to include Identify security risk and vulnerabilities across client's supply chain partners as well and track implementation of corrective action plans by supply chain partners
  • Identify and manage risks involved with use the of AI within products and within the development of products
  • Manage Product Risk management and risk profiling
  • Lead the updating of the Secure Engineering Framework.
  • Manage the Vulnerability and Penetration Testing Team
  • Manage relationships with multiple 3rd party penetration testing vendors
  • Oversee the security portion of release management
  • Manage Product Security incident response program and team
  • Make data-based decisions and considers measurable metrics as part of the initiative
  • Consult with Development, Operations and Product groups on technical security issues.
  • Closely partner with PISOs, Development Leads to integrate security tool automation such as SAST, DAST, Container Analysis and other security tools
  • Directly engage development leaders to understand their challenges, roll-up sleeves when needed and understand / address their issues at a technical level
  • Lead Comprehensive Penetration Testing Activities, to include both staff and vendor relationships
  • Manage Delivery of Developer Security Training

Key Skills :

  • Proven ability to define strategic visons and lead team through execution.
  • Strong understanding of AI, LLMs and other AI technology
  • Strong planning, organizational, and leadership skills, including the ability to motivate teams, set strategic vision and approach, and resolve conflict.
  • Proven ability to learn, evaluate, and adapt to new technologies and tools.
  • SecDevOps, or DevSecOps, process framework experience.
  • Ability to build a strong network, both inside and outside the organization.
  • Excellent written and verbal communication skills, and ability to present ideas to all organizational levels.
  • Ability to work in a dynamic environment, managing multiple initiatives and commitments simultaneously with tight deadlines and changing priorities.
  • Flexibility to contribute as needed, even in areas not tightly mapped to stated responsibilities.
  • Mandatory Qualifications

  • Experienced people manager with 5-10+ years’ combined experience in application development, application security, vulnerability management, and / or network security.
  • Strong working knowledge of secure coding principles, practices, and frameworks such as OWASP Top Ten and SANS 20 Critical Security Controls.
  • Hands-on experience with application security and vulnerability management tools.
  • Working knowledge of comprehensive information security principles and practices.
  • Bachelor of Science in Computer Science or related field required. Master of Science in Information Security or related field preferred.
  • Desirable Certifications

  • CISSP, CSSLP, CISM, CISA, CEH, GPEN, GWAPT, Hyperscaler certifications
  • Create a job alert for this search

    Application Security • Delhi, India

    Related jobs
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    QualiZealDelhi, India
    Conduct Static Application Security Testing (SAST) and Software Composition Analysis (SCA) - Perform Dynamic Application Security Testing (DAST) and Interactive Application Security Testing (IAST) ...Show moreLast updated: 10 days ago
    • Promoted
    Application Manager

    Application Manager

    ConfidentialGurgaon / Gurugram
    Provides vision and goals for team.Guides developers and support teams on product direction, project execution, issue resolution, and provides escalation framework via governance.Work to educate cu...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Application Security Engineer

    Lead Application Security Engineer

    InMobi AdvertisingDelhi, India
    About Us InMobi is the leading provider of content, monetization, and marketing technologies that fuel growth for industries around the world. Our end-to-end advertising software platform, connected...Show moreLast updated: 10 days ago
    • Promoted
    Director of Cyber Security

    Director of Cyber Security

    Wenger & WatsonDelhi, India
    Director – Cybersecurity Location : .BFSI (Banking, Financial Services) Employment Type : .Job Summary : We are seeking an accomplished and visionary. This strategic role requires a strong background in ...Show moreLast updated: 1 day ago
    • Promoted
    Principal Application Security Engineer

    Principal Application Security Engineer

    ConfidentialGurgaon / Gurugram
    Principal Application Security Engineer / Architect.Gurgaon, India (Hybrid 2 days / week in office).Information Security / Application Security. Full-time | Hybrid- 2 days / week.You are a highly experi...Show moreLast updated: 30+ days ago
    • Promoted
    Director, IT Ops Services- Cloud, Infrastructure & Cyber Security

    Director, IT Ops Services- Cloud, Infrastructure & Cyber Security

    CoforgeNoida, Uttar Pradesh, India
    Director, IT Ops Services- Cloud, Infrastructure & Cyber Security.We are seeking a dynamic and experienced Technology Support Group Leader to spearhead our Technology Support Group.The ideal candid...Show moreLast updated: 30+ days ago
    • Promoted
    Enterprise Applications Security Engineer

    Enterprise Applications Security Engineer

    AviatrixDelhi, India
    For enterprises struggling to secure cloud workloads, Aviatrix® offers a single solution for pervasive cloud security.Where current cybersecurity approaches focus on securing entry points to a trus...Show moreLast updated: 4 days ago
    • Promoted
    Senior Application Security Manager

    Senior Application Security Manager

    ARCONDelhi, India
    Job Summary : We are seeking a highly experienced and strategic-minded Senior Manager of Application Security to lead our security initiatives. The ideal candidate will be a seasoned leader with a de...Show moreLast updated: 4 days ago
    • Promoted
    Director – Head of Security Operations Center

    Director – Head of Security Operations Center

    MindsprintDelhi, India
    Director – Head of Security Operations Center Location : .Chennai Key Competencies : Strategic Vision – Ability to align SOC service evolution with MSSP business objectives.Technical Skills – Deep un...Show moreLast updated: 2 days ago
    • Promoted
    Senior Applications Security Manager

    Senior Applications Security Manager

    DEUTSCHE TELEKOM DIGITAL LABS PRIVATE LIMITEDGurugram
    We are seeking a highly skilled and experienced Senior Manager Application Security to lead our application security strategy, governance, and execution. This role will oversee secure software devel...Show moreLast updated: 24 days ago
    Director - Data Center ( Cyber Security )

    Director - Data Center ( Cyber Security )

    Talent WorxGurugram, HR, IN
    Quick Apply
    Job Summary : Responsible for establishing a comprehensive cybersecurity framework during the setup of an AI data center. This role focuses on defining and implementing robust policies and procedures...Show moreLast updated: 23 days ago
    • Promoted
    Senior Manager - Applications Security

    Senior Manager - Applications Security

    QuesthiringGurugram
    Job Description : About the job : We are seeking a highly skilled and experienced Senior Manager Application Security to lead ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    AtomicworkDelhi, India
    Atomicwork is reimagining IT and workplace operations by putting employees at the center of the experience.With a strong emphasis on automation, integration, and security, Atomicwork helps organiza...Show moreLast updated: 10 days ago
    • Promoted
    Director - AWS Implementation & Cloud Security

    Director - AWS Implementation & Cloud Security

    HyrEzy Talent SolutionsNoida
    Job Description : General Purpose : We are looking for an experience security leader with a background in AWS and cloud operations.A successful ...Show moreLast updated: 30+ days ago
    • Promoted
    Principal Engineer, Application Security

    Principal Engineer, Application Security

    ConfidentialGurgaon / Gurugram
    You are a highly experienced and visionary security professional with deep expertise in application security, architecture, and secure software development. You're not only a strategist and a techni...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    [Immediate Start] Application Security Engineer

    [Immediate Start] Application Security Engineer

    FoodsmartDelhi, Delhi, India
    About us : Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians. Our platform is designed to foster healthier food choices, drive lasting...Show moreLast updated: less than 1 hour ago
    • Promoted
    Application Security Engineer

    Application Security Engineer

    FoodsmartDelhi, IN
    Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 2 days ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    MOURI TechDelhi, India
    We are seeking a highly skilled DevSecOps Engineer with a strong background in application security, penetration testing, and secure development practices. The ideal candidate will bring hands-on ex...Show moreLast updated: 10 days ago