Application Security Lead

2 months ago


Gurugram, India Egon Zehnder Full time

The Company

Knowledge Centre India (KCI)

Established in January 2005, KCI in Gurgaon, works in close collaboration with the Global offices of Egon Zehnder. There are 5 teams that make up KCI: Research, Research Operations, Visual Solutions, Projects/CV Capture and Digital IT.

Your Journey at Egon Zehnder Starts Here

At EZ, you have the opportunity to deliver digital transformation initiatives across the globe for the organization. Our focus on emerging technology solutions along with our commitment to internal career growth and exceptional client value has resulted in a firm that is routinely recognized as a “Best Place to Work.”

Who we are

We are part of Digital-IT team established 14 years ago in Gurgaon, India to provide technology support and rollout digital initiatives to 60 plus global offices. Digital IT has six key pillars – Collaboration Technology; Functional Technology; Digital Technology; Security & Architecture; Infrastructure & Services, Digital Success to support business and to take lead on digital transformation initiatives with the total strength of 150+ team members across the globe.

Requirements

Job Description 


Be a part of the application security team as a team lead and work closely with the Application Development team to ensure that any software developed or acquired meets the stringent standards while enabling rapid innovation to meet our firm and clients’ everchanging needs.

Successful candidates will be security evangelists who can translate security concepts into language that is meaningful to many audiences, including business and technical leaders and individual contributors.

Candidates must be able to approach application security from the perspective of risk management and avoid purely academic thinking about software security. Demonstrable ability to influence decision‐making processes at all levels of a large organization will be critical to success.

Responsibilities 

As an application security team lead, your role revolves around ensuring the security of software applications developed within your organization. Here's a breakdown of the key responsibilities typically associated with this role: 

1. Team Management 

 Lead a team of application security professionals, including security engineers and analysts.   Provide guidance, mentorship, and support to team members, fostering their professional development and growth.   Coordinate team activities, prioritize tasks, and allocate resources effectively to meet security objectives. 

2. Security Strategy and Roadmap: 

Develop and implement a comprehensive application security strategy aligned with organizational goals and industry best practices.  Define security standards, policies, and procedures specific to application development and deployment.  Establish a roadmap for enhancing the security posture of applications over time, considering emerging threats and technologies. 

3. Security Assessment and Testing: 

Oversee the assessment and testing of applications for security vulnerabilities throughout the software development lifecycle (SDLC).  Conduct or coordinate security reviews, code reviews, and penetration testing to identify and remediate security weaknesses.  Collaborate with development teams to integrate security testing tools and processes into their workflows. 

4. Security Awareness and Training: 

Promote awareness of application security risks and best practices among development teams, stakeholders, and other relevant parties.  Deliver or facilitate training sessions and workshops on secure coding practices, vulnerability management, and related topics.  Foster a culture of security consciousness and accountability across the organization. 

5. Compliance and Regulatory Compliance: 

Ensure that applications comply with relevant security standards, regulations, and industry certifications (e.g., OWASP, PCI DSS, GDPR).  Collaborate with compliance teams to assess and address security requirements imposed by regulatory bodies or contractual obligations. 

6. Vendor and Third-Party Risk Management: 

Assess the security posture of third-party applications, libraries, and services used within the organization's environment.  Establish and maintain processes for evaluating and managing the security risks associated with third-party software components. 

7. Continuous Improvement and Innovation: 

Monitor industry trends, emerging threats, and evolving security technologies to continuously improve the effectiveness of application security practices.  Identify opportunities for innovation and automation to streamline security processes and enhance the efficiency of security operations. 

Skills:

Prior work experience in application security is mandatory.  Should have solid experience in Penetration testing.  Candidates must have strong leadership skills.  Candidates must have excellent verbal and written communication skills.  Candidates should be familiar with waterfall and agile development processes and have experience integrating secure development practices into both models.  Familiarity with a variety of development and testing tools  Candidates must be able to explain all vulnerabilities and weaknesses in the OWASP Top 10, WASC TCv2, and CWE 25 to any audience and discuss effective defensive techniques.  Familiarity with industry standards and regulations including PCI, FFIEC, SOX, and ISO27001 is desired.  Experienced in tools like Snyk, Tenable WAS, Invicti, Burp suite, Postman, kali linux Experience in conducting Threat Modelling using STRIDE, PASTA etc 

Experience: At least 6 years of relevant experience 

Should be willing to support and be available during non-working hours in case of emergency situations. 

Benefits

Benefits which make us unique

At EZ, we know that great people are what makes a great firm. We value our people and offer employees a comprehensive benefits package. Learn more about what working at Egon Zehnder can mean for you

Benefits Highlights:

5 Days working in a Fast-paced work environment. Work directly with the senior management team Reward and Recognition Employee friendly policies Personal development and training Health Benefits, Accident Insurance

  • gurugram, India Egon Zehnder Full time

    The Company Knowledge Centre India (KCI) Established in January 2005, KCI in Gurgaon, works in close collaboration with the Global offices of Egon Zehnder. There are 5 teams that make up KCI: Research, Research Operations, Visual Solutions, Projects/CV Capture and Digital IT. Your Journey at Egon Zehnder Starts Here At EZ, you have the opportunity to...


  • Gurugram, India Egon Zehnder Full time

    The Company Egon Zehnder (www.egonzehnder.com) is trusted advisor to many of the world’s most respected organizations and a leading Executive Search firm, with more than 550 consultants and 63 offices in 36 countries spanning Europe, the Americas, Asia Pacific, the Middle East and Africa. Our clients range from the largest corporations to emerging growth...


  • gurugram, India Egon Zehnder Full time

    The Company Egon Zehnder ( is trusted advisor to many of the world’s most respected organizations and a leading Executive Search firm, with more than 550 consultants and 63 offices in 36 countries spanning Europe, the Americas, Asia Pacific, the Middle East and Africa. Our clients range from the largest corporations to emerging growth companies,...


  • gurugram, India Egon Zehnder Full time

    The Company Egon Zehnder ( is trusted advisor to many of the world’s most respected organizations and a leading Executive Search firm, with more than 550 consultants and 63 offices in 36 countries spanning Europe, the Americas, Asia Pacific, the Middle East and Africa. Our clients range from the largest corporations to emerging growth companies,...


  • Gurugram, India Egon Zehnder Full time

    The Company Egon Zehnder (www.egonzehnder.com) is trusted advisor to many of the world’s most respected organizations and a leading Executive Search firm, with more than 550 consultants and 63 offices in 36 countries spanning Europe, the Americas, Asia Pacific, the Middle East and Africa. Our clients range from the largest corporations to emerging growth...


  • Gurugram, India Ciena Corporation Full time

    Ciena is committed to our people-first philosophy. Our teams enjoy a culture focused on prioritizing a personalized and flexible work environment that empowers an individual’s passions, growth, wellbeing and belonging. We’re a technology company that leads with our humanity—driving our business priorities alongside meaningful social, community, and...


  • Gurugram, India Ciena Corporation Full time

    Ciena is committed to our people-first philosophy. Our teams enjoy a culture focused on prioritizing a personalized and flexible work environment that empowers an individual’s passions, growth, wellbeing and belonging. We’re a technology company that leads with our humanity—driving our business priorities alongside meaningful social, community, and...


  • Gurugram, India Ciena Corporation Full time

    Ciena is committed to our people-first philosophy. Our teams enjoy a culture focused on prioritizing a personalized and flexible work environment that empowers an individual’s passions, growth, wellbeing and belonging. We’re a technology company that leads with our humanity—driving our business priorities alongside meaningful social, community, and...


  • gurugram, India Ciena Corporation Full time

    Ciena is committed to our people-first philosophy. Our teams enjoy a culture focused on prioritizing a personalized and flexible work environment that empowers an individual’s passions, growth, wellbeing and belonging. We’re a technology company that leads with our humanity—driving our business priorities alongside meaningful social, community, and...


  • Gurugram, India Egon Zehnder Full time

    The CompanyEgon Zehnder (www.egonzehnder.com) is trusted advisor to many of the world's most respected organizations and a leading Executive Search firm, with more than 550 consultants and 63 offices in 36 countries spanning Europe, the Americas, Asia Pacific, the Middle East and Africa. Our clients range from the largest corporations to emerging growth...


  • gurugram, India Partech Full time

    Hi there! We’re PAR and our purpose is: To deliver solutions that connect people to the restaurants, meals and moments they love. We take that responsibility very seriously. As a leading provider of technology to the top restaurant brands in the world we’re calling all rebels, instigators, idealists and builders to join our constantly growing team! PAR...


  • Gurugram, India Partech Full time

    Hi there! We’re PAR and our purpose is:To deliver solutions that connect people to the restaurants, meals and moments they love.We take that responsibility very seriously. As a leading provider of technology to the top restaurant brands in the world we’re calling all rebels, instigators, idealists and builders to join our constantly growing team!PAR...


  • Gurugram, India Partech Full time

    Hi there! We’re PAR and our purpose is:To deliver solutions that connect people to the restaurants, meals and moments they love.We take that responsibility very seriously. As a leading provider of technology to the top restaurant brands in the world we’re calling all rebels, instigators, idealists and builders to join our constantly growing team!PAR...


  • gurugram, India Partech Full time

    Hi there! We’re PAR and our purpose is: To deliver solutions that connect people to the restaurants, meals and moments they love. We take that responsibility very seriously. As a leading provider of technology to the top restaurant brands in the world we’re calling all rebels, instigators, idealists and builders to join our constantly growing team! PAR...


  • Gurugram, India Sun Security Services Full time

    Job Requirements Job Title: Security Guard SupervisorCompany Name: Sun Security ServicesLocation: Sector 76, Gurgaon, HaryanaSalary: ₹25,000 - ₹30,000 per monthQualification: 12th Pass and aboveJob Description:As a Security Guard Supervisor at Sun Security Services, your responsibilities will encompass:Maintaining detailed In & Out entries of...

  • Senior Associate

    1 month ago


    gurugram, India Publicis Re:Sources India Full time

    Job Description The position requires hands-on experience in application security testing, vulnerability management, and governance. The team lead will support the Global Security Office's existing DevSecOps practice and embed security in SDLC phases. He will need to be familiar with common vulnerabilities and must be proficient in performing...

  • Senior Associate

    2 months ago


    Gurugram, India Publicis Re:Sources India Full time

    Job Description The position requires hands-on experience in application security testing, vulnerability management, and governance. The team lead will support the Global Security Office's existing DevSecOps practice and embed security in SDLC phases. He will need to be familiar with common vulnerabilities and must be proficient in performing manual...

  • Senior Associate

    7 days ago


    Gurugram, India Publicis Re:Sources India Full time

    Job Description The position requires hands-on experience in application security testing, vulnerability management, and governance. The team lead will support the Global Security Office's existing DevSecOps practice and embed security in SDLC phases. He will need to be familiar with common vulnerabilities and must be proficient in performing manual...


  • Gurugram, Haryana, India Vega Consulting Full time

    Responsibilities Participate in the implementation of full CI/CD pipeline lifecycle on hybrid environment i.e. On-prem and Cloud. Ensure Application Teams have full visibility on all identified vulnerabilities and manage exceptions in a timely manner Database dacpack file creation and deployment on database servers using CI/CD pipeline. Migrating TFS...


  • Gurgaon/Gurugram, India Egon Zehnder Full time

    The CompanyEgon Zehnder ( is trusted advisor to many of the world's most respected organizations and a leading Executive Search firm, with more than 550 consultants and 63 offices in 36 countries spanning Europe, the Americas, Asia Pacific, the Middle East and Africa. Our clients range from the largest corporations to emerging growth companies,...