drjobs Application Security Manager

Application Security Manager

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Hyderabad - India

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

The Application Security Manager will be part of a team of Information Security Application Engineers and Penetration Testers tasked with advancing and maturing Application Attack Surface Management Program and Application Security Posture at Experian. You will build and foster the teams abilities to collaborate and achieve security outcomes manage the teams project and operational activities with Experians global directory of product owners and developers advocate and advance goals of the application attack surface management program lead application security reviews deliver reports that enable understanding and remediation of security findings and consult in risk centric strategies.

  • You will be #LIhybrid based in Hyderabad and reporting to Director.
  • This is a Managerial role

Summary of Primary Responsibilities

  • Oversee and deliver Application Security Assessment services.
  • Lead mentor and manage a team of application security engineers and penetration testers ensuring effective daily operations.
  • Maintain and update set of metrics to reflect efficiency and effectiveness of the program and bring visibility to security posture of applications and Experian teams.
  • Mature the security testing program by identifying areas for improvement developing and implementing enhancement projects and continuously refining processes
  • Participate in strategic planning to integrate risk governance and provide software security advice for business decisions.
  • Develop strategies and oversee operations for penetration testing ensuring secure application and configuration testing outcomes.
  • Be a subject matter expert in application network and cloud penetration testing.
  • Execute a comprehensive security testing strategy optimizing test resource performance.
  • Oversee vulnerability identification and measurement collaborating with software engineers and leadership to address security risks.
  • Maintain and collaborate with the Security Champion and partners network assessing applications against common flaws like OWASP Top 10.
  • Provide senior management with visibility and prioritisation of security issues.
  • Advocate for security in interactions with internal and external teams and collaborate with Risk & Compliance teams on audits (SOC 2 PCIDSS HIPAA).
  • Research and recommend policies and procedures related to application security.
  • Define security guardrails through automated tool policies and SLAs managing vulnerabilities through automated and manual assessments.
  • Build relationship and foster trust with technologist across company to provide vulnerability remediation support advocate security best practices promote security awareness and share latest security trend.

Qualifications :

Qualifications

  • 8 years of experience in enterpriselevel applications security. 3 years of experience in security organization preferred 2 years experience in leading pen testing team
  • Indepth knowledge of penetration testing tools and methodologies including cloudbased application architectures. Experience offensive focused automation tools. SAST DAST Software Composition Analysis (SCA) IAST RASP tooling Experience im DevSecOps CI/CD pipelines is also a plus. Experience with AI/ML/LLM pen testing is desired
  • Experience overseeing the linking of crossfunctional applications between disparate business units and systems and good project management skills and/or substantial exposure to projectbased work structures project lifecycle models etc.
  • Experience with business and technical requirements analysis business process modelling/mapping methodology development and data mapping.
  • Strong understanding and background in MITRE OWASP SafeCode risk management methodologies as they relate to integration/software testing.


Additional Information :

Our uniqueness is that we celebrate yours. Experians culture and people are important differentiators. We take our people agenda very seriously and focus on what matters; DEI work/life balance development authenticity collaboration wellness reward & recognition volunteering... the list goes on. Experians people first approach is awardwinning; Worlds Best Workplaces 2024 (Fortune Global Top 25) Great Place To Work in 24 countries and Glassdoor Best Places to Work 2024 to name a few. Check out Experian Life on social or our Careers Site and Glassdoor to understand why.

Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is a critical part of Experians DNA and practices and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work irrespective of their gender ethnicity religion color sexuality physical ability or age. If you have a disability or special need that requires accommodation please let us know at the earliest opportunity.

Benefits

Experian care for employees work life balance health safety and wellbeing. In support of this endeavor we offer bestinclass family wellbeing benefits enhanced medical benefits and paid time off.

Experian Careers Creating a better tomorrow together

Find out what its like to work for Experian by clicking here


Remote Work :

No


Employment Type :

Fulltime

Employment Type

Full-time

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.