Application Security Lead

Posted Sep 1

This is a fully remote position, open to applicants in Australia.

📋 Description

• Take charge of application security throughout the Software Development Life Cycle (SDLC).

• Identify and evaluate application security vulnerabilities and collaborate with Engineering teams on remediation efforts.

• Conduct secure code evaluations, primarily in .NET, and promote secure development methodologies.

• Spearhead threat modeling and security assessments for applications and automation workflows.

• Tailor security practices to accommodate various team maturity levels while balancing improvements, standardization, and delivery requirements.

• Manage and enhance AppSec tools (SAST, DAST, SCA) within CI/CD pipelines.

• Ensure effective security testing without compromising delivery speed.

• Take ownership of vulnerability visibility, prioritization, and reporting.

• Define and implement secure design and development standards.

• Establish Security Champions within development teams.

• Mentor developers and enhance secure coding capabilities across teams.


⛳️ Requirements

• Over 5 years of experience in software engineering, including at least 2 years in an application security position.

• Strong background in DevSecOps and CI/CD environments.

• Practical experience with AppSec tools (SAST, DAST, SCA).

• Extensive experience in Azure environments and Azure DevOps pipelines.

• Proficient in reviewing code (C#, .NET, web applications).

• In-depth understanding of the OWASP Top 10 and secure design principles.

• Experience collaborating across various teams or platforms with differing maturity levels.

• Ability to adjust approach based on risk, complexity, and delivery context.

• Self-motivated, accountable, and skilled in stakeholder engagement.


🏝️ Benefits

• Opportunity to lead and manage a robust Application Security capability.

• Engage with a diverse application ecosystem and multiple engineering teams.

• A culture that emphasizes continuous improvement, learning, and knowledge sharing.

• Excellent balance of remote work and in-office collaboration.

• Equal Opportunity Employer.

• Adjustments in the recruitment process to accommodate accessibility needs.

People also viewed

Cloudiax1 day ago

Information Security, Compliance & IKS Manager – ISO 27001

DE flagGermany OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Cisco1 day ago

Senior Manager, Security Channel – Market Growth, Splunk

US flagTexas OnlyFull-timeCybersecurity / Security Engineer$169.3k – $237.2k/year
ApplyView job
Cisco1 day ago

Senior Manager, Security Channel – Market Growth, Splunk

US flagArizona, +10 more statesFull-timeCybersecurity / Security Engineer$169.3k – $237.2k/year
ApplyView job
Skylight1 day ago

Senior Product Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$200k – $250k/year
ApplyView job
Sony Interactive Entertainment1 day ago

Senior Security AI Risk Analyst

US flagCalifornia OnlyFull-timeCybersecurity / Security Engineer$167.5k – $251.3k/year
ApplyView job
Squads1 day ago

Security Engineer

North AmericaFull-timeCybersecurity / Security Engineer$175k – $220k/year
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers