Talent.com
Senior Application Security Manager
Senior Application Security ManagerConfidential • Mumbai, India
Senior Application Security Manager

Senior Application Security Manager

Confidential • Mumbai, India
14 hours ago
Job description

Job Summary : We are seeking a highly experienced and strategic-minded Senior Manager of Application Security to lead our security initiatives. The ideal candidate will be a seasoned leader with a deep understanding of application security, vulnerability management, and secure software development lifecycle (SDLC) best practices. You will be responsible for building, managing, and scaling our application security program across multiple product lines, ensuring our systems are robust, secure by design, and compliant with all relevant industry standards. This role requires a blend of technical expertise, leadership, and strategic vision

Responsibilities :

  • Strategic Program Leadership :
  • Develop and execute a comprehensive application security strategy that aligns with business objectives and product roadmaps.
  • Build, lead, and mentor a high-performing team of application security engineers and DevSecOps professionals.
  • Define and enforce application security policies, standards, and procedures across the organization.
  • Security Integration & Automation :
  • Oversee the integration of security tools (SAST, DAST, SCA, vulnerability scanners) into the CI / CD pipelines, leveraging both paid and open-source solutions.
  • Champion the use of automation to streamline security testing and provide continuous feedback to development teams.
  • Direct the development and maintenance of scripts and automation frameworks (e.g., Python, Bash) to orchestrate and scale security tool usage across the enterprise.
  • Vulnerability Management & Remediation :
  • Establish and manage a robust vulnerability management program, including a formal process for handling client-reported vulnerabilities and penetration test findings.
  • Provide expert-level guidance and architectural solutions for complex security vulnerabilities.
  • Define and enforce service-level agreements (SLAs) for vulnerability remediation based on severity and business impact, ensuring critical and high-priority issues are fixed promptly.
  • Tracking, Reporting, and Audits :
  • Implement and manage a centralized system to track all open vulnerabilities (VAs) across the entire product portfolio.
  • Generate executive-level reports and dashboards on the company's application security posture for senior leadership and board members.
  • Lead and coordinate internal and external security audits, assessments, and compliance initiatives.
  • Product-wide Security & Threat Intelligence :
  • Implement processes to ensure that a vulnerability discovered in one product or module is systematically evaluated for its existence across all other products and components.
  • Proactively monitor and assess emerging threats, vulnerabilities, and security trends, and translate them into actionable plans for the team
  • Collaboration & Education :
  • Collaborate with engineering, product management, and operations teams to embed security into the early stages of the SDLC.
  • Act as the primary subject matter expert on application security for the entire organization.
  • Develop and lead security awareness and training programs for engineering teams to foster a culture of security.

Required Skills and Qualifications :

  • Bachelor's or Master's degree in Computer Science, Information Security, or a related field.
  • 12+ years of progressive experience in application security, with at least 4+ years in a senior management or leadership role.
  • Proven experience building and managing an application security program from the ground up.
  • Expertise in a wide range of application security tools, including :
  • o SAST : Veracode, Checkmarx, SonarQube, Semgrep or similar.

    o DAST : Invicti, Burp Suite Enterprise, OWASP ZAP, or similar.

    o SCA : Snyk, Black Duck, or similar. o Vulnerability Scanners : Nuclei, Qualys, Nessus, or similar

  • Demonstrated proficiency in scripting and automation (e.g., Python, Bash) for security tooling integration and data analysis.
  • Strong knowledge of CI / CD pipelines (Jenkins, GitLab CI / CD) and cloud platforms (AWS, Azure, GCP).
  • Deep understanding of common web application vulnerabilities (OWASP Top 10, CWE) and secure coding principles.
  • Exceptional leadership, communication, and interpersonal skills, with the ability to influence and drive change at an organizational level.
  • Relevant industry certifications such as CISSP, CSSLP, CISM, or similar are highly preferred
  • Skills Required

    DAST, Bash, Jenkins, SCA, Gcp, SAST, Owasp Top 10, Azure, Python, Aws

    Create a job alert for this search

    Application Security • Mumbai, India

    Related jobs
    Senior Application Security Engineer

    Senior Application Security Engineer

    Sphera • Mumbai, IN
    Sphera is a leading global provider of enterprise software and services that enables companies to manage and optimize their environmental, health, safety and sustainability.Our mission is to create...Show more
    Last updated: 1 day ago • Promoted
    Application Security Manager

    Application Security Manager

    Confidential • Mumbai, India
    Essential Services : Role & Location fungibility.At ICICI Bank, we believe in serving our customers beyond our role definition, product boundaries, and domain limitations through our philosophy of ...Show more
    Last updated: 15 days ago • Promoted
    Senior Manager - Security Application Testing - Information Security

    Senior Manager - Security Application Testing - Information Security

    Confidential • Mumbai, India
    OSCP certification, Penetration testing or OWASP Top 10, Team Management.Job Title Senior Manager Application Security Testing - ISG. Bachelors in engineering or MCA.Certification – any two of the c...Show more
    Last updated: 15 days ago • Promoted
    Senior PAM engineer Application Manager

    Senior PAM engineer Application Manager

    Confidential • Mumbai
    Strategic and Governance Responsibilities : .Contribute to the strategic roadmap for Identity and Access Management (IAM) and Privileged Access Management (PAM) within Nouryon.Ensure IAM / PAM practice...Show more
    Last updated: 15 days ago • Promoted
    Team Lead - Application Security - Bank

    Team Lead - Application Security - Bank

    Confidential • Mumbai
    OWASP, SANS / CWE and WASC (Testing approach and top web application vulnerabilities).Web application, thick client, API, Mobile (Android and ios) security testing. Vulnerability assessment and config...Show more
    Last updated: 30+ days ago • Promoted
    Senior Data Security & Governance Specialist

    Senior Data Security & Governance Specialist

    Integris Group • Kalyan-Dombivli, IN
    The Senior Data Security & Governance Specialist is responsible for defining and enforcing governance, compliance, and security controls across modern data platforms built on Azure and Databricks.T...Show more
    Last updated: 11 days ago • Promoted
    Senior Security Engineer – Cloud, AI & Application Security

    Senior Security Engineer – Cloud, AI & Application Security

    Symosis Security • Thane, IN
    Symosis Security is a fast-growing cybersecurity and technology firm helping global organizations strengthen their cloud, application, and AI security posture. We combine deep technical expertise wi...Show more
    Last updated: 6 days ago • Promoted
    Senior Application Security Manager

    Senior Application Security Manager

    ARCON • Mumbai, Maharashtra, India
    We are seeking a highly experienced and strategic-minded Senior Manager of Application Security to lead our security initiatives. The ideal candidate will be a seasoned leader with a deep understand...Show more
    Last updated: 30+ days ago • Promoted
    Senior Operations Manager - Electronic Security / Fire Detection

    Senior Operations Manager - Electronic Security / Fire Detection

    Confidential • Mumbai
    Senior Operations Manager - Electronic Security / Fire Detection.We are looking for a Senior Operations Manager to oversee and optimize business operations, ensuring efficiency, cost-effectiveness,...Show more
    Last updated: 30+ days ago • Promoted
    Lead Security Engineer

    Lead Security Engineer

    Arcana • Thane, IN
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show more
    Last updated: 30+ days ago • Promoted
    SOC Manager

    SOC Manager

    Network Intelligence • Mumbai Metropolitan Region, India, India
    The SOC Manager will lead and mature the Security Operations Center (SOC), overseeing threat monitoring, detection, incident response, and overall security operations. This role requires strong lead...Show more
    Last updated: 2 days ago • Promoted
    Applications Security Engineer - Vulnerability Management

    Applications Security Engineer - Vulnerability Management

    Employee Forums • Mumbai
    Role Summary : We are looking for an experienced and technically skilled Application Security Engineer to strengthen our cybers...Show more
    Last updated: 30+ days ago • Promoted
    HDB Financial Services - Senior Manager - Information Security & Governance

    HDB Financial Services - Senior Manager - Information Security & Governance

    HDB Financial Services Ltd • Mumbai
    HDB Financial Services Ltd is looking for an experienced Red Team Assessment expert to join our Cyber Security Team.This role is responsible for simulating real-world attacks to test the effectiven...Show more
    Last updated: 30+ days ago • Promoted
    Technical Lead - Application Security

    Technical Lead - Application Security

    Confidential • Mumbai, India
    Technical Lead – Application Security.Location : Mumbai, India (Onsite).Experience Required : 20+ years (Application security + AI / ML security). Compensation : As per industry benchmarks.Employment Typ...Show more
    Last updated: 15 days ago • Promoted
    Senior Manager - Application

    Senior Manager - Application

    Confidential • Mumbai, India
    Business Intelligence Analyst Responsibilities.Meet with stakeholders to determine their requirements and issues.Conduct information-gathering interviews with stakeholders and solicit feedback.Use ...Show more
    Last updated: 15 days ago • Promoted
    Senior Manager Information Security

    Senior Manager Information Security

    Confidential • Mumbai, India
    The Senior Manager – Information Security will spearhead the development and execution of.This role requires a strategic leader with deep. Develop and implement a comprehensive information security ...Show more
    Last updated: 15 days ago • Promoted
    Application Specialist

    Application Specialist

    Repario • Kalyan-Dombivli, IN
    We are seeking a highly skilled Application Specialist to provide first-call resolution support for hosted eDiscovery applications and infrastructure services. Primary duties include providing clien...Show more
    Last updated: 11 days ago • Promoted
    Application Security Engineer

    Application Security Engineer

    Foodsmart • Mumbai, IN
    Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show more
    Last updated: 30+ days ago • Promoted