Application Security Manager (AppSec / NIST / SAST / DAST)
Technology
Job Description
Job Description:
We are seeking an experienced Application Security Manager to lead and implement security best practices across applications, infrastructure, and data environments. The ideal candidate will be responsible for ensuring compliance with industry standards and strengthening the organization’s overall security posture.
Key Responsibilities:
- Implement and manage application and data security frameworks
- Ensure compliance with standards such as NIST, FIPS, FedRAMP, HIPAA, and GDPR
- Conduct vulnerability assessments using SAST/DAST tools
- Manage vulnerability remediation and penetration testing processes
- Coordinate with auditors and provide compliance reports
- Perform infrastructure security audits with internal and external teams
- Establish and maintain IT security controls and best practices
- Provide security architecture and configuration recommendations
- Collaborate with QA, development, and infrastructure teams
- Support incident response and participate in on-call rotation
- Train teams on security and compliance practices
Required Skills:
- Strong experience in Application Security (SAST, DAST, Pen Testing)
- Expertise in security frameworks (NIST, HIPAA, GDPR, FedRAMP)
- Experience in vulnerability management and compliance reporting
- Strong problem-solving and analytical skills
- Excellent communication and stakeholder management
Qualifications:
- 10+ years of IT experience
- 5+ years in Security Manager / Security Lead role
- Bachelor’s degree in IT, Computer Science, or related field
- Preferred: AWS Security experience
- Preferred Certifications: CISSP, CISM, CISA, or CCSP
