Application Security Manager

1 week ago


Bengaluru South Karnataka, India Liminal Custody Full time ₹ 15,00,000 - ₹ 20,00,000 per year

About the Role:
Liminal is
seeking an experienced and technically strong Application Security Manager to lead and mature our application security program. The ideal candidate will have 7–10 years of relevant experience, a deep understanding of secure software development, and the ability to work independently while collaborating with cross-functional teams. You will be responsible for integrating security into the software development lifecycle, managing application security initiatives, and enabling secure innovation across the organization.

Responsibilities:

Program Leadership:

  • Lead and manage the application security program, aligning with the overall security strategy and business objectives.

Secure SDLC Integration:

  • Integrate security tools, standards, and processes into the product lifecycle (SDLC, CI/CD), ensuring security is embedded from design through deployment.

Security Assessments & Testing:

  • Oversee and conduct application security assessments, including static and dynamic analysis, manual and automated penetration testing, and code reviews.

Vulnerability Management:

  • Manage the process for identifying, prioritizing, and remediating application vulnerabilities in collaboration with engineering and product teams.

Threat Modeling & Risk Analysis:

  • Lead threat modeling and risk analysis activities for new and existing applications, ensuring security requirements are defined and addressed early in the development process.

Policy & Standards Development:

  • Develop, maintain, and improve secure development standards, policies, and guidelines; ensure compliance with regulatory and industry standards (e.g., PCI, SOX, ISO27001).

Incident Response Support:

  • Provide application security expertise during incident response and architecture review processes as needed.

Training & Awareness:

  • Train and mentor developers, QA, and other stakeholders on secure coding practices, secure design, and emerging threats.

Metrics & Reporting:

  • Produce and communicate metrics and reports on the state of application security, including program effectiveness and development team performance against security requirements.

Vendor & Third-Party Security:

  • Support vendor security reviews to ensure third-party software and services meet organizational security standards.

Desired Candidate Profile:

  • 7–10 years of experience in application security, software development, or related roles, with a strong track record managing or leading application security programs.
  • Deep understanding of common application vulnerabilities (e.g., OWASP Top 10), secure coding practices, and application security testing methodologies.
  • Hands-on experience with security tools such as SAST, DAST, IAST, SCA, and penetration testing frameworks.
  • Proficiency in at least one major programming language (e.g., Java, C/C++, JavaScript) and familiarity with modern development and testing tools (e.g., Git, JIRA, Maven).
  • Experience integrating security into agile and waterfall development processes.
  • Strong leadership, communication, and stakeholder management skills, with the ability to influence and educate both technical and non-technical audiences.
  • Experience with regulatory and industry standards (PCI, SOX, ISO27001, etc.).
  • Ability to translate security and risk concepts into actionable requirements for diverse audiences.

Preferred Qualifications:

  • Relevant certifications (e.g., CISSP, CISM, OSCP, CSSLP, SANS GIAC)
  • Experience managing budgets and multi-year roadmaps for security initiatives
  • Background in highly regulated industries (e.g., financial services) is a plus.
  • Experience with cloud-native application security and DevSecOps practices
    .

  • Application Security

    2 weeks ago


    Bengaluru, India Application Security Full time

    **Qualifications and Experience** 1. Bachelor’s degree in Computer Engineering/Computer Science, Information Technology, MCA or M.Sc. (IT). 2. 5+ years of experience in manual and automaton testing for previous software development. 3. Strong technical skills including scripting language and test automation disciplines, tools and processes. **Skills...


  • Bengaluru, Karnataka, India iXceed Solutions Full time

    **Job title**: Java security Lead **Job Location**: Bangalore **Role Type**: Permanent **Work Mode**: Hybrid (2-3 days onsite in a week) - Java, Spring, Maven, REST, SOAP Web Services - OWASP Top 10, Secure Development - Knowledge of about Snyk tools - CI/CD tools and processes like Jenkins - Basics of cloud platforms and dockerization. - Good in Core...


  • Bengaluru, Karnataka, India Menlo Security Full time

    Menlo Security's mission is enabling the world to connect, communicate and collaborate securely without compromise. COVID-19 has made our mission all the more real. We support customers across various enterprises including Fortune 500 companies, 9/10 of the largest global banks and the Department of Defense. Menlo is well-funded for growth and our investors...


  • Bengaluru, Karnataka, India Pearson Full time US$ 1,50,000 - US$ 2,00,000 per year

    At Pearson, we are the world's learning company with over 24,000 employees across 70 countries. Our mission is to combine world-class educational content and assessment, powered by services and technology, to enable more effective teaching and personalised learning at scale. We believe that wherever learning flourishes, so do people.In this exciting and...


  • Bengaluru, Karnataka, India RemoteStar Full time

    **About the client**: Our Client is a global technology company, home to more than 220,000 people across 60 countries, delivering industry-leading capabilities centered around digital, engineering, cloud and AI, powered by a broad portfolio of technology services and products. We work with clients across all major verticals, providing industry solutions for...


  • Bengaluru, Karnataka, India Menlo Security Full time

    Menlo Security's mission is enabling the world to connect, communicate and collaborate securely without compromise. COVID-19 has made our mission all the more real. We support customers across various enterprises including Fortune 500 companies, 9/10 of the largest global banks and the Department of Defense. Menlo is well-funded for growth and our investors...


  • Bengaluru, Karnataka, India ABB Full time US$ 9,00,000 - US$ 12,00,000 per year

    This Position reports to: Business Title IS Service Owner for Application SecurityYour role and responsibilitiesIn this role, you will have the opportunity to successfully develop, operate and implement security measures for ABB in your area of responsibility. Each day, you will protect ABB from rapidly escalating threats. You will also showcase your...


  • Bengaluru, India Skillventory Full time

    **Application Security**: - From 3 to 8 year(s) of experience - ₹ Not Disclosed by Recruiter - Bangalore/Bengaluruor **Roles and Responsibilities** ROLE AND RESPONSIBILITIES: - Conduct Vulnerability Assessment and Penetration Testing (VAPT) on Web Applications, Mobile - Applications - iOS and Android apps, APIs. - Conduct Manual and Automated source...


  • Bengaluru, Karnataka, India Rubrik Security Cloud Full time

    **About the team**: The Information Security organization advances the overall state of security at Rubrik through purposeful initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate security...


  • Bengaluru East, Karnataka, India Infosys Full time ₹ 15,00,000 - ₹ 20,00,000 per year

    Primary skills:Technology->Application Security->Application Security - ALL,Technology->Application Security->Vulnerability Management,Technology->Finacle-Core-Payments->Electronic Clearing System->Advance,Technology->Mobile Testing->Mobile Security Testing,Technology->OpenSystem->Python - OpenSystemKey Responsibilities:Conduct secure code reviews, static...