Application Security Lead

Virtusa

Not Interested
Bookmark
Report This Job

profile Job Location:

Colombo - Sri Lanka

profile Monthly Salary: Not Disclosed
Posted on: Yesterday
Vacancies: 1 Vacancy

Job Summary

Role Summary

The Application Security Lead will own and mature the enterprise Application Security (AppSec) program across a large decentralized application landscape. This role focuses on risk visibility secure SDLC enablement and pragmatic risk management balancing developer velocity with security requirements.

Key Responsibilities

  • Lead the end-to-end Application Security program
  • Define and maintain secure SDLC standards aligned with OWASP Top 10 and audit requirements
  • Serve as the primary security point of contact for engineering and product teams
  • Own Checkmarx (SAST) strategy and execution
  • Improve signal-to-noise ratio and reduce developer friction
  • Drive visibility into application vulnerabilities including legacy and abandoned apps
  • Triage and prioritize application findings from SAST pen tests and scanning tools
  • Own application penetration testing strategy and vendor engagement
  • Prioritize testing based on business criticality and compliance drivers (PCI SOX)
  • Track remediation
  • Partner with cloud and infrastructure teams to ensure applications are appropriately protected
  • Provide AppSec guidance for API-based and AI-enabled applications

Required Experience & Skills

  • 8 years in application security product security and application infrastructure security
  • Strong hands-on experience with SAST tools (Checkmarx preferred)
  • Deep understanding of OWASP Top 10 and secure SDLC practices
  • Experience supporting PCI SOX and SOC audits
  • Strong written and verbal communication skills

Certifications (Preferred)

  • CSSLP (ISC²) secure SDLC and AppSec leadership
  • GWAPT OSWE or equivalent hands-on application security expertise
Role SummaryThe Application Security Lead will own and mature the enterprise Application Security (AppSec) program across a large decentralized application landscape. This role focuses on risk visibility secure SDLC enablement and pragmatic risk management balancing developer velocity with security ...
View more view more

Key Skills

  • Administrative Skills
  • Facilities Management
  • Biotechnology
  • Creative Production
  • Design And Estimation
  • Architecture

About Company

Company Logo

At Virtusa, we are builders, makers, and doers. Digital engineering is in our DNA. It’s at the heart of everything we do.

View Profile View Profile