Application Security Manager
2 days ago
At Pearson, we are the world's learning company with over 24,000 employees across 70 countries. Our mission is to combine world-class educational content and assessment, powered by services and technology, to enable more effective teaching and personalised learning at scale. We believe that wherever learning flourishes, so do people.
In this exciting and fast-paced role, you will lead the design, implementation, and continuous improvement of Pearson's global Application Security program, with a strong focus on technical enablement and automation. As an Application Security Manager, you'll operate at the intersection of security engineering, DevSecOps, and cloud-native development, helping secure a diverse portfolio of hundreds of applications built across AWS, Azure, and GCP.
You'll work closely with engineering, DevOps, SRE, and product teams to embed security into every stage of our CI/CD pipelines, ensuring that security is scalable, automated, and aligned with Pearson's rapid adoption of AI-driven technologies.
What You'll Do:
- Design and lead our technical application security strategy, focusing on automation, cloud-native security, and secure software development.
- Manage the local application security team and align them with the broader goals of the global Application Security organization.
- Drive adoption and integration of SAST, DAST, SCA, IaC security, container scanning, RASP, and secret scanning tools.
- Build and enhance automation pipelines that support real-time vulnerability detection and remediation across our development lifecycle.
- Lead the Developer Security Champion program, engaging and mentoring engineers across the business to create a security-first culture.
- Collaborate with DevOps and SRE teams to design secure, scalable cloud infrastructure and application deployment models.
- Translate security requirements into actionable tooling, architecture, and secure coding practices.
- Support security initiatives related to AI/ML-driven development, model security, and responsible use of AI in software.
- Continuously evolve AppSec KPIs and metrics to track risk, compliance, and team effectiveness.
What You Bring:
- Significant hands-on experience (7+ years) in application security, software engineering, or DevSecOps.
- Solid development background — ideally in Java and JavaScript.
- Proven experience implementing and managing AppSec tooling (SAST, DAST, SCA, IaC, RASP, secrets detection).
- Deep knowledge of cloud environments (Azure, AWS, GCP) and cloud-native security principles.
- Strong background in building and securing infrastructure using Infrastructure as Code (e.g., Terraform, ARM).
- Experience supporting and securing modern application architectures including containers and microservices.
- Familiarity with OWASP Top 10, threat modeling, and secure design patterns.
- Exceptional communication and cross-functional collaboration skills; you're comfortable working across Dev, Ops, and Security organizations.
- Experience mentoring or managing a team and running security champion initiatives is a big plus.
- Industry certifications (e.g., OSWE, GSSP, CISSP, CSSLP) are desirable.
Who we are:
At Pearson, our purpose is simple: to help people realize the life they imagine through learning. We believe that every learning opportunity is a chance for a personal breakthrough. We are the world's lifelong learning company. For us, learning isn't just what we do. It's who we are. To learn more: We are Pearson.
Pearson is an Equal Opportunity Employer and a member of E-Verify. Employment decisions are based on qualifications, merit and business need. Qualified applicants will receive consideration for employment without regard to race, ethnicity, color, religion, sex, sexual orientation, gender identity, gender expression, age, national origin, protected veteran status, disability status or any other group protected by law. We actively seek qualified candidates who are protected veterans and individuals with disabilities as defined under VEVRAA and Section 503 of the Rehabilitation Act.
If you are an individual with a disability and are unable or limited in your ability to use or access our career site as a result of your disability, you may request reasonable accommodations by emailing
Job: Security
Job Family: TECHNOLOGY
Organization: Corporate Strategy & Technology
Schedule: PART\_TIME
Workplace Type: Hybrid
Req ID: 20642
-
Application Security Manager
1 week ago
Bengaluru, Karnataka, India Pearson Full time US$ 1,50,000 - US$ 2,00,000 per yearAt Pearson, we are the world's learning company with over 24,000 employees across 70 countries. Our mission is to combine world-class educational content and assessment, powered by services and technology, to enable more effective teaching and personalised learning at scale. We believe that wherever learning flourishes, so do people.In this exciting and...
-
Bengaluru, Karnataka, India ABB Full time US$ 9,00,000 - US$ 12,00,000 per yearThis Position reports to: Business Title IS Service Owner for Application SecurityYour role and responsibilitiesIn this role, you will have the opportunity to successfully develop, operate and implement security measures for ABB in your area of responsibility. Each day, you will protect ABB from rapidly escalating threats. You will also showcase your...
-
IS Operations Manager for Application Security
3 weeks ago
Bengaluru, Karnataka, India ABB Limited Full timeJob DescriptionAt ABB, we help industries outrun - leaner and cleaner. Here, progress is an expectation - for you, your team, and the world. As a global market leader, we'll give you what you need to make it happen. It won't always be easy, growing takes grit. But at ABB, you'll never run alone. Run what runs the world.This Position reports to:Business Title...
-
Senior Security Engineer
2 days ago
Bengaluru, Karnataka, India Skyhigh Security Full time US$ 1,25,000 - US$ 1,75,000 per yearJob Title:Senior Security EngineerAbout Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and transparency.Since 2011, organizations have...
-
Application Security Tester
1 day ago
Bengaluru, Karnataka, India EduRun Group Full time US$ 1,50,000 - US$ 2,00,000 per yearMinimum 8+ years of hands-on experience in security testing across diverse environments.Strong expertise in DAST (Dynamic Application Security Testing) and SAST (Static Application Security Testing).Proficient in API Security testing and secure design validation.Skilled in Software Composition Analysis (SCA) to detect and remediate vulnerabilities.Experience...
-
Application Security Tester
5 days ago
Bengaluru, Karnataka, India CirrusLabs Full timeOur vision is to become the world's most sought-after niche digital transformation company that helps customers realize value through innovation. Our mission is to co-create success with our customers, partners and community. You welcome diversity at work and within the greater community. You aren't afraid to take risks. You thrive upon continuing education...
-
Application Security Engineer
4 weeks ago
Bengaluru, Karnataka, India RemoteStar Full timeJob DescriptionAbout the client:Our Client is a global technology company, home to more than 220,000 people across 60 countries, delivering industry-leading capabilities centered around digital, engineering, cloud and AI, powered by a broad portfolio of technology services and products. We work with clients across all major verticals, providing industry...
-
Application Security – SAST
1 week ago
Bengaluru, Karnataka, India Tata Consultancy Services Full timeGreetings from TCSJob Title: Application security SAST/DASTExperience: 6 to 10 YearsLocation: Bangalore/Coimbatore/TrivandrumRequired Technical Skill Set**Hands-on experience with Snyk or similar tools for SAST.Deep understanding of OWASP Code Review Guide, OWASP Top 10, CWE/SANS Top 25, NIST Secure Software Development Framework (SSDF), and ISO/IEC...
-
Application Security – SAST
7 days ago
Bengaluru, Karnataka, India Tata Consultancy Services Full timeGreetings from TCSJob Title: Application security SAST/DASTExperience: 6 to 10 YearsLocation: Bangalore/Coimbatore/TrivandrumRequired Technical Skill Set**- Hands-on experience with Snyk or similar tools for SAST.- Deep understanding of OWASP Code Review Guide, OWASP Top 10, CWE/SANS Top 25, NIST Secure Software Development Framework (SSDF), and ISO/IEC...
-
Application Security Specialist
1 day ago
Bengaluru, Karnataka, India beBeeCybersecurity Full time ₹ 1,00,00,000 - ₹ 1,50,00,000Key Cybersecurity Role:We are seeking a detail-oriented, enthusiastic security specialist with excellent analytical and communication skills to enhance our Web Application Firewall (WAF) and Bot Management team.The ideal candidate will play a critical role in ensuring that perimeter security for web properties keeps pace with the changing threat landscape....