Talent.com
Head of Application Security Strategy

Head of Application Security Strategy

HCLSoftwareBengaluru, Republic Of India, IN
11 days ago
Job description

HCLSW seeks a Director, Head of Product & Application Security. The successful candidate will lead the end to end Product Security portfolio within HCL Software. Maintains and strengthens the risk posture across the organization through discovery and remediation of product security vulnerabilities and supply chain security. Establishes and communicates strategic vision for the programs, and ensures they align with development goals and opportunities. Leads a dynamic group of Application Security professionals worldwide, with expectations to expand team over time.

Experience required- 20+ years

Location - Bangalore, Noida, Pune

Please send profiles to monica_sharma@hcl-software.com with your expected CTC and Notice Period details

  • This individual is also expected to contribute to additional tasks in a cross-functional security team, especially assisting the Threat Management team;
  • network and operating system vulnerability management;
  • continuous monitoring and reporting;

security incident handling, and participation in vendor and third-party application security reviews.

Key Responsibilities :

  • Develop and execute secure software development strategy in the form of Secure SDLC for the enterprise, including policies, standards and governance
  • Advance and execute a software supply chain security development strategy to include Identify security risk and vulnerabilities across client's supply chain partners as well and track implementation of corrective action plans by supply chain partners
  • Identify and manage risks involved with use the of AI within products and within the development of products
  • Manage Product Risk management and risk profiling
  • Lead the updating of the Secure Engineering Framework.
  • Manage the Vulnerability and Penetration Testing Team
  • Manage relationships with multiple 3rd party penetration testing vendors
  • Oversee the security portion of release management
  • Manage Product Security incident response program and team
  • Make data-based decisions and considers measurable metrics as part of the initiative
  • Consult with Development, Operations and Product groups on technical security issues.
  • Closely partner with PISOs, Development Leads to integrate security tool automation such as SAST, DAST, Container Analysis and other security tools
  • Directly engage development leaders to understand their challenges, roll-up sleeves when needed and understand / address their issues at a technical level
  • Lead Comprehensive Penetration Testing Activities, to include both staff and vendor relationships
  • Manage Delivery of Developer Security Training
  • Key Skills :

  • Proven ability to define strategic visons and lead team through execution.
  • Strong understanding of AI, LLMs and other AI technology
  • Strong planning, organizational, and leadership skills, including the ability to motivate teams, set strategic vision and approach, and resolve conflict.
  • Proven ability to learn, evaluate, and adapt to new technologies and tools.
  • SecDevOps, or DevSecOps, process framework experience.
  • Ability to build a strong network, both inside and outside the organization.
  • Excellent written and verbal communication skills, and ability to present ideas to all organizational levels.
  • Create a job alert for this search

    Application Security • Bengaluru, Republic Of India, IN

    Related jobs
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    AtomicworkBengaluru, Karnataka, India
    Atomicwork is reimagining IT and workplace operations by putting employees at the center of the experience.With a strong emphasis on automation, integration, and security, Atomicwork helps organiza...Show moreLast updated: 30+ days ago
    • Promoted
    Head of Integration & Interoperability

    Head of Integration & Interoperability

    VoiceCare AIBengaluru South, Karnataka, India
    Voicecare AI is a Healthcare Administration General Intelligence company specializing in Revenue Cycle Management (RCM) and back-office automation. Our mission is to improve access, adherence, and o...Show moreLast updated: 6 days ago
    • Promoted
    • New!
    Cyber Security Delivery Lead

    Cyber Security Delivery Lead

    YASH TechnologiesGreater Bengaluru Area, India
    To lead the delivery of cybersecurity programs and projects, ensuring alignment with organizational objectives, compliance standards, and risk management frameworks. The role focuses on driving secu...Show moreLast updated: 18 hours ago
    • Promoted
    Lead Application security engineer

    Lead Application security engineer

    Capillary TechnologiesBengaluru, Karnataka, India
    We operate in the loyalty domain where we help our customers to better engage their users to enhance their business outcomes. To provide assurances to our customers, we comply with ISO 27001, PCI & ...Show moreLast updated: 15 days ago
    • Promoted
    • New!
    Application Security Engineer

    Application Security Engineer

    FoodsmartBengaluru, India
    Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 1 hour ago
    • Promoted
    • New!
    Lead Application Security Engineer

    Lead Application Security Engineer

    GrowwBengaluru, Republic Of India, IN
    We are a strong and enthusiastic team focused on making financial services accessible to every Indian through a multi-product platform. Each day, we help millions of customers take charge of their f...Show moreLast updated: 15 hours ago
    • Promoted
    Director of Product Security

    Director of Product Security

    HCLSoftwareBengaluru, Karnataka, India
    Director, Head of Product & Application Security.The successful candidate will lead the end to end Product Security portfolio within HCL Software. Maintains and strengthens the risk posture across t...Show moreLast updated: 11 days ago
    • Promoted
    • New!
    Proofpoint Email security Engineer

    Proofpoint Email security Engineer

    Tata Consultancy ServicesGreater Bengaluru Area, India
    Proofpoint Email security Engineer (L3).Bachelor’s degree in computer science.Information Technology, Cybersecurity, or a related field. Proofpoint Email Security solutions.Strong understanding of e...Show moreLast updated: 18 hours ago
    • Promoted
    • New!
    Application Security Specialist

    Application Security Specialist

    OperlityBengaluru, Republic Of India, IN
    We are hiring an experienced Application Security (AppSec) Engineer to strengthen secure software development across our products and platforms. You will collaborate with development teams, perform ...Show moreLast updated: 13 hours ago
    • Promoted
    Sailpoint Iiq & Idn

    Sailpoint Iiq & Idn

    ARA Resources Pvt. Ltd.Bengaluru, Republic Of India, IN
    Define the cloud security framework and architecture, ensuring it meets business requirements and performance goals.Document the implementation of security controls and transition to cloud security...Show moreLast updated: 30+ days ago
    • Promoted
    Pixis - Head - Information Security

    Pixis - Head - Information Security

    PixisBangalore, India
    Pixis is a global AI technology company transforming how brands plan, create, and optimize marketing.Our flagship marketing operating system, Prism, sits at the core of the Pixis platform, using AI...Show moreLast updated: 30+ days ago
    • Promoted
    Director Of Product Security

    Director Of Product Security

    HCLSoftwareBengaluru, Republic Of India, IN
    Director, Head of Product & Application Security.The successful candidate will lead the end to end Product Security portfolio within HCL Software. Maintains and strengthens the risk posture across t...Show moreLast updated: 11 days ago
    • Promoted
    Application & System Infrastructure Audit, Director, Technology Audit

    Application & System Infrastructure Audit, Director, Technology Audit

    Morgan StanleyBangalore, India
    We're seeking someone to join our team as an Director to provide audit coverage for application and system infrastructure supporting Finance Technology Audit. In the Audit division, we provide senio...Show moreLast updated: 13 days ago
    • Promoted
    Security Project Manager

    Security Project Manager

    NokiaBengaluru, Karnataka, India
    Bachelor’s degree in Engineering or a comparable major; Master’s degree preferred.Minimum of 10 years of telecom experience, with at least 5 years in Program / Project Management or NPI Project Manag...Show moreLast updated: 18 days ago
    • Promoted
    • New!
    Application Security Engineer

    Application Security Engineer

    OperlityBengaluru, Karnataka, India
    We are hiring an experienced Application Security (AppSec) Engineer to strengthen secure software development across our products and platforms. You will collaborate with development teams, perform ...Show moreLast updated: 14 hours ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    SpheraBengaluru, IN
    Sphera is a leading global provider of enterprise software and services that enables companies to manage and optimize their environmental, health, safety and sustainability.Our mission is to create...Show moreLast updated: 8 days ago
    • Promoted
    • New!
    Oracle Security

    Oracle Security

    EliteRecruitmentsGreater Bengaluru Area, India
    Immediate Joiners to Max 60 days.Good understanding of Oracle functionality including.Security, Business Process, Finance, HCM, and SCM modules. Oracle Cloud Security and Controls.Oracle Risk Manage...Show moreLast updated: 18 hours ago
    • Promoted
    Security Operations Engineer

    Security Operations Engineer

    ITPeopleNetworkhosur, tamil nadu, in
    We are looking for a junior to mid-level.Saviynt Identity Access Management (IAM / IGA).CyberArk Endpoint Privilege Manager (EPM). The ideal candidate will assist in user access governance, email thre...Show moreLast updated: 1 day ago