S

Application Security Manager

Sky Healthy Food

Remote · Full Time

Be the first to apply

Experience
5+ yrs
Salary
Openings
1
Posted
3 ore fa
Work mode
Work from home
Education
Bachelor's degree in Cybersecurity or related field
Resume
Required to apply

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

About the Role

We are looking for a skilled Application Security Manager to join our technology-driven team remotely from the United Arab Emirates. This full-time role involves leading comprehensive application security initiatives to protect digital solutions and ensure compliance with industry standards.

Key Responsibilities

  • Design and execute strategies for application security, secure software development lifecycles, and DevSecOps roadmaps aligned with company goals.
  • Manage security programs including threat modeling, secure design reviews, vulnerability assessments, penetration tests, and continuous security validation during software development.
  • Work closely with cross-disciplinary teams like Software Engineering, Cloud Infrastructure, Risk Management, and Executive Leadership to embed security throughout product lifecycles.
  • Define and enforce secure coding standards, security policies, and architecture guidelines while promoting developer security best practices.
  • Perform security evaluations such as static and dynamic testing, source code reviews, API security checks, and software composition analysis.
  • Lead vulnerability management, coordinate patching, and govern secure release procedures to ensure application resilience.
  • Oversee penetration testing, bug bounty programs, and third-party security assessments to identify and remediate risks.
  • Ensure robust security controls for cloud-native technologies including microservices, containers, APIs, and serverless platforms.
  • Develop awareness programs and training for developers to foster secure coding culture and maturity across the organization.
  • Stay informed on emerging security threats, regulatory requirements, and advanced cybersecurity methodologies to maintain a proactive defense posture.
  • Track and report key metrics such as vulnerability remediation speed, security testing coverage, compliance status, and risk exposure.
  • Conduct audits, risk assessments, architecture reviews, and continuous improvements to enhance application security.
  • Ensure adherence to UAE cybersecurity laws and standards including ISO/IEC 27001, NIST, OWASP ASVS, PCI DSS, GDPR where applicable, and internal policies.
  • Manage budgets, cybersecurity tools, external consultants, and strategic initiatives focused on security enhancement.
  • Leverage AI-driven threat detection, automated code analysis, and advanced security analytics platforms for optimized protection.
  • Utilize various security tools including GitHub and GitLab security features, Microsoft Defender for Cloud, AWS Security Hub, Burp Suite, Checkmarx, Veracode, SonarQube, Snyk, OWASP ZAP, Splunk, Power BI, Tableau, and SIEM systems.
  • Prepare executive-level reports, dashboards, compliance reviews, incident summaries, and risk assessments for leadership decision-making.
  • Lead and mentor a team of application security engineers and DevSecOps specialists fostering an innovative, collaborative, and accountable culture.

Qualifications and Experience

  • Bachelor's degree in Cybersecurity, Information Security, Computer Science, Software Engineering, IT, or related fields; Master’s or MBA preferred.
  • Relevant certifications such as CISSP, CSSLP, GWAPT, CEH, CCSP, Security+, or equivalent desired.
  • At least 5 years in application security, secure software development, penetration testing, or related cybersecurity roles.
  • Minimum 2 years managing teams or leading enterprise-level application security and DevSecOps projects.
  • Expertise in SSDLC, OWASP Top 10 vulnerabilities, secure coding, threat modeling, cloud and API security, identity and access management, and governance.
  • Hands-on experience with prominent security tools and platforms including GitHub Advanced Security, Microsoft Sentinel, Burp Suite, Checkmarx, and more.
  • Knowledge of modern approaches such as AI-based security analytics, runtime application self-protection, CNAPP, software supply chain security, and threat intelligence.
  • Strong leadership, communication, stakeholder collaboration, analytical, project management, and problem-solving skills.
  • Ability to coordinate multiple security initiatives, balance development speed with security, ensure compliance, and manage resources effectively.
  • Capability to work remotely with global teams and occasional travel for workshops, assessments, audits, and conferences.

What We Offer

  • Fully remote work setup with flexible coordination among worldwide technology and cybersecurity teams.
  • Competitive salary and performance-related benefits.
  • Comprehensive health and wellness plans.
  • Opportunities for professional growth and leadership in cybersecurity.
  • Access to cutting-edge AI-powered security platforms and advanced DevSecOps technologies.
  • A culture promoting innovation, resilience, accountability, continuous learning, and security excellence.
  • Chance to shape the company’s security approach by safeguarding key applications and enabling secure innovation.

How they work

Communication Teamwork & Collaboration Problem Solving Leadership
🤖
Online · instant AI help