Talent.com
No longer accepting applications
Director of Application Security [15h Left]

Director of Application Security [15h Left]

HCLSoftwareBengaluru, Karnataka, India
8 hours ago
Job description

HCLSW seeks a Director, Head of Product & Application Security. The successful candidate will lead the end to end Product Security portfolio within HCL Software. Maintains and strengthens the risk posture across the organization through discovery and remediation of product security vulnerabilities and supply chain security. Establishes and communicates strategic vision for the programs, and ensures they align with development goals and opportunities. Leads a dynamic group of Application Security professionals worldwide, with expectations to expand team over time.

This individual is also expected to contribute to additional tasks in a cross-functional security team, especially assisting the Threat Management team; network and operating system vulnerability management; continuous monitoring and reporting; security incident handling, and participation in vendor and third-party application security reviews.

Key Responsibilities :

  • Develop and execute secure software development strategy in the form of Secure SDLC for the enterprise, including policies, standards and governance
  • Advance and execute a software supply chain security development strategy to include Identify security risk and vulnerabilities across client's supply chain partners as well and track implementation of corrective action plans by supply chain partners
  • Identify and manage risks involved with use the of AI within products and within the development of products
  • Manage Product Risk management and risk profiling
  • Lead the updating of the Secure Engineering Framework.
  • Manage the Vulnerability and Penetration Testing Team
  • Manage relationships with multiple 3rd party penetration testing vendors
  • Oversee the security portion of release management
  • Manage Product Security incident response program and team
  • Make data-based decisions and considers measurable metrics as part of the initiative
  • Consult with Development, Operations and Product groups on technical security issues.
  • Closely partner with PISOs, Development Leads to integrate security tool automation such as SAST, DAST, Container Analysis and other security tools
  • Directly engage development leaders to understand their challenges, roll-up sleeves when needed and understand / address their issues at a technical level
  • Lead Comprehensive Penetration Testing Activities, to include both staff and vendor relationships
  • Manage Delivery of Developer Security Training

Key Skills :

  • Proven ability to define strategic visons and lead team through execution.
  • Strong understanding of AI, LLMs and other AI technology
  • Strong planning, organizational, and leadership skills, including the ability to motivate teams, set strategic vision and approach, and resolve conflict.
  • Proven ability to learn, evaluate, and adapt to new technologies and tools.
  • SecDevOps, or DevSecOps, process framework experience.
  • Ability to build a strong network, both inside and outside the organization.
  • Excellent written and verbal communication skills, and ability to present ideas to all organizational levels.
  • Ability to work in a dynamic environment, managing multiple initiatives and commitments simultaneously with tight deadlines and changing priorities.
  • Flexibility to contribute as needed, even in areas not tightly mapped to stated responsibilities.
  • Mandatory Qualifications

  • Experienced people manager with 5-10+ years’ combined experience in application development, application security, vulnerability management, and / or network security.
  • Strong working knowledge of secure coding principles, practices, and frameworks such as OWASP Top Ten and SANS 20 Critical Security Controls.
  • Hands-on experience with application security and vulnerability management tools.
  • Working knowledge of comprehensive information security principles and practices.
  • Bachelor of Science in Computer Science or related field required. Master of Science in Information Security or related field preferred.
  • Desirable Certifications

  • CISSP, CSSLP, CISM, CISA, CEH, GPEN, GWAPT, Hyperscaler certifications
  • Create a job alert for this search

    15H Left Application • Bengaluru, Karnataka, India

    Related jobs
    • Promoted
    Enterprise Applications Security Engineer

    Enterprise Applications Security Engineer

    AviatrixBengaluru, Karnataka, India
    For enterprises struggling to secure cloud workloads, Aviatrix® offers a single solution for pervasive cloud security.Where current cybersecurity approaches focus on securing entry points to a trus...Show moreLast updated: 15 days ago
    • Promoted
    Application Security Engineer

    Application Security Engineer

    Edge Executive SearchBangalore
    Our client is a global leader in the aviation sector, driving a digital-first transformation powered by cloud technologies, data innovation, and machine learning. With a bold vision to redefine how ...Show moreLast updated: 30+ days ago
    • Promoted
    Director of AI - Security Operations Center

    Director of AI - Security Operations Center

    Zyoin GroupBangalore
    Description : Responsibilities : - Lead a team of software engineers focused on automating SOC workflows using...Show moreLast updated: 21 days ago
    • Promoted
    Application Security Architect

    Application Security Architect

    Intraedge Technologies Ltd.Bangalore
    Job Description : AppSec Architect (AWS) Experience : 7+ Years Location : Bangalore / Gurugram / Noida&l...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    AtomicworkBengaluru, Karnataka, India
    Atomicwork is reimagining IT and workplace operations by putting employees at the center of the experience.With a strong emphasis on automation, integration, and security, Atomicwork helps organiza...Show moreLast updated: 26 days ago
    • Promoted
    Director of Application Security

    Director of Application Security

    HCLSoftwareBengaluru, Karnataka, India
    Director, Head of Product & Application Security.The successful candidate will lead the end to end Product Security portfolio within HCL Software. Maintains and strengthens the risk posture across t...Show moreLast updated: 15 days ago
    • Promoted
    IS Operations Manager for Application Security

    IS Operations Manager for Application Security

    ABBBengaluru, Karnataka, India
    This job is with ABB, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly.At ABB, we help indu...Show moreLast updated: 2 days ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    ConfidentialBengaluru / Bangalore
    EagleView, the leader in aerial imagery, is hiring a Senior Application Security Engineer to help validate that our services, applications, and websites are designed and implemented to the highest ...Show moreLast updated: 30+ days ago
    • Promoted
    Application Security Engineer

    Application Security Engineer

    ConfidentialBengaluru / Bangalore
    Conduct DAST (manual and automated) for web, API, and thick client applications.Perform manual code reviews and mobile application VAPT (static and dynamic). Execute infrastructure VA and configurat...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer, Application Security

    Security Engineer, Application Security

    AmazonBengaluru, Karnataka, India
    This job is with Amazon, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly.DESCRIPTION : In A...Show moreLast updated: 2 days ago
    • Promoted
    Director - Security Solution Development

    Director - Security Solution Development

    ConfidentialMumbai, Bengaluru / Bangalore, Pune
    Job Title : Security Delivery Lead.Role : Leads the implementation and delivery of Security Services projects.Must have skills : Security Solution Development. Experience Required : Minimum of 18 years....Show moreLast updated: 30+ days ago
    • Promoted
    Application Security Architect

    Application Security Architect

    YASH TechnologiesGreater Bengaluru Area, India
    Role : Application Security Architect.This role is responsible for architecting, designing security controls for applications. The successful candidate will lead efforts to establish and improve secu...Show moreLast updated: 15 days ago
    • Promoted
    Application Security Manager (Technical Lead)

    Application Security Manager (Technical Lead)

    PearsonBengaluru, Karnataka, India
    This job is with Pearson, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly.At Pearson, we a...Show moreLast updated: 2 days ago
    • Promoted
    Sr. Security Engineer, Application Security

    Sr. Security Engineer, Application Security

    AmazonBengaluru, Karnataka, India
    This job is with Amazon, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly.DESCRIPTION : In A...Show moreLast updated: 2 days ago
    • Promoted
    Application Security Engineer

    Application Security Engineer

    FoodsmartBengaluru, IN
    Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 13 days ago
    • Promoted
    Senior Director Cyber Security

    Senior Director Cyber Security

    The Edge Partnership - The Edge in AsiaBengaluru, Karnataka, India
    Our client is a leading global investment and advisory firm known for its deep expertise in private equity, real estate, and alternative asset management. The ideal professional will be responsible ...Show moreLast updated: 30+ days ago
    • Promoted
    Director - Cyber Security

    Director - Cyber Security

    Edge in Asia Recruitment Private LimitedBangalore
    Our client is a leading global investment and advisory firm known for its deep expertise in private equity, real estate, and alternative asset management. The ideal professional will be responsible ...Show moreLast updated: 30+ days ago
    • Promoted
    Application Manager - Controls

    Application Manager - Controls

    ConfidentialBengaluru / Bangalore
    Meta is seeking an experienced, process-oriented, and technically hands-on Application Manager to lead and manage SOX and Security compliance across the Enterprise Products (EP) organization.This r...Show moreLast updated: 30+ days ago