Manager, Application Security

Lumin Digital
170d$175,000 - $194,998

About The Position

The Application Security (AppSec) team at Lumin Digital is responsible for guiding and supporting a secure software development lifecycle across all products and internal applications developed within the company. This team is responsible for helping code authors across the entire organization build security into our technology from early conceptualization and design phases, not bolt it on as an afterthought or check-the-box activity. This role leads the AppSec function by driving strategic improvements in application security, coordinating with teams across the company, and promoting a shared understanding that code quality includes security. The role requires strong technical leadership and collaboration to ensure our application security posture continuously evolves and strengthens over time.

Requirements

  • Bachelor's degree in Computer Science, Information Assurance, Information Security, Cybersecurity, or related field is required; or equivalent combination of education and experience in cybersecurity with demonstrated command of key application security concepts and technologies.
  • 5 years of hands-on technical experience directly working with detective security controls, including web application firewalls, TLS introspecting proxies, tools integrated into CI/CD pipelines, including SCA, SAST, DAST, and MAST required.
  • 3 years of experience leading complex security initiatives or driving secure application design practices within a team or organization required.
  • Experience with large-scale AWS operating environments, Linux, Kubernetes, Git, and scripting languages required.
  • Experience with administering public or private bug bounty programs required.
  • Experience analyzing and summarizing trends in application-layer threats, vulnerabilities, and posture to internal management teams is required.

Nice To Haves

  • Certifications relevant to application security or management of application security teams, such as the GWEB, GWAPT, CSSLP, or CISM, are preferred.

Responsibilities

  • Identify emerging industry threats, observed trends, and industry best practices guidelines to identify gaps and enhance our application security posture in collaboration across Lumin Digital.
  • Develop, collect, and summarize meaningful measures of application security to evaluate program performance.
  • Collaborate with other leaders to understand vulnerabilities and to develop mitigation strategies that address current findings and reduce the likelihood of future occurrence of the same classes of issues.
  • Ensure integration of security tooling into CI/CD pipelines with minimal developer friction.
  • Review the technical methods and output of the AppSec team to ascertain the quality and fit of activities such as thread modeling, secure design reviews, and architectural risk assessments, and provide constructive and detailed feedback to improve team members’ ability to perform their duties.
  • Lead improvements in secure coding standards, developer training, and evaluation of assessment tools.
  • Review client-sponsored application assessments to qualify and prepare responses.
  • Perform other duties as assigned.

Benefits

  • $175,000 - $194,998 a year
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service