ForgeApply · Job listing
Manager, Application Engineer, Cyber Security
Inmar
See all 40 open roles at Inmar →
Tailor your resume for this Inmar job in about a minute.
ForgeApply tailors your resume and cover letter to this exact posting, then hands you a ready-to-submit application for Inmar's site. Free trial, no card required.
About this role
The Manager, Application Engineering, Cyber Security is responsible for leading the Application Security team, which is responsible for developing automation and tooling to identify, manage and monitor security risks at scale, integrating security requirements into products and processes, proactively performing security assessments to detect and prevent security vulnerabilities, conducting trainings to raise developer awareness of security best practices, performing security testing before release, and partnering closely with our development teams to produce innovative and secure solutions.
The Manager, Application Engineering, Cyber Security has broad and deep technical experience in a wide variety of enterprise technologies and is the subject matter expert (SME) for concepts behind security controls and how they apply to the application engineering, configuration and deployment lifecycles. This individual provides hands-on technical leadership, e.g. design, code review, quality assurance, both to the security engineering team and collaboratively to cross-organization engineering teams. Accountable for identifying key security risks, as well as targeted and prioritized planning and implementation of respective mitigations.
The incumbent must have a service-oriented mentality, a high sense of ownership of the problems and requests assigned, a focus on managing and resolving issues in alignment with the SLAs, policies and standards, establishing and maintaining communication with technology customers to keep them updated with status of their requests, initiating and performing changes on production systems and proactively escalating any issues that cannot be resolved within the established timeframes.
Additional insights, experience or background in any of the following are also of great value: CIS, NIST, ISO27001, Data Protection, Software Engineering, Static Code Analysis, Dynamic Code Analysis, Penetration Testing, Containers, MicroServices, CI/CD Pipelines, Agile, Project Planning, Team Leadership and Management, Git, Jira, Docker, Kubernetes, Cloud Security (AWS, Azure, GCP) and design, process maturity, and other related focuses. Primary Accountabilities Technical (40%) • Provide hands-on technical leadership on multiple fronts, e.g. architecture, design, code review, quality assurance, directly to the security engineering team and indirectly to other engineering and/or product teams
• Establish and drive adoption of design, standards, documentation and coding best practices within the security engineering team
• Define, evangelize and drive security engineering best practices and improvements across organizational boundaries
• Collaborate on engineering-wide initiatives as a member of the broader engineering leadership team
• Drive compliance through evangelizing, partnership, and education, as well as a robust program of third-party/vendor, application, and data security reviews, threat modeling, proactive auditing and penetration testing
• Develop policy, standards and other relevant documentation to guide the practical implementation of application security best practices
• Evaluate client needs, coordinate design for a solution, and clearly communicate the value proposition of complex and highly technical subjects.
• Design systems characterized by managed levels of risk, manageable business and technical complexity and meaningful impact; works with well-understood technology and identifies appropriate patterns.
Strategic (20%) • Integrate and collaborate with business and engineering organizations to facilitate early identification and implementation of security standards and compliance.
• Proactive identification of security engineering goals and objectives, development of implementation plans to address targeted and prioritized threat mitigations.
• Drive engineering innovation by producing quality code and artifacts for inter-team collaboration
Operational (20%) • Work with application development teams to ensure secure software development lifecycle (S-SDLC) implementation and validation.
• Educate and train product and engineering teams.
• Evaluate client needs, coordinate design for a solution, and clearly communicate the value proposition of complex and highly technical cyber security subjects.
• Schedule and manage prioritized pipeline of engineering objectives and tasks and ensure timely delivery, while managing technical project risks
• Train new team members on documented guidelines
Leadership (20%) • Manage and grow a team of world-class application security engineers to deliver high impact projects on schedule with high-quality
• Accountable for staffing projections, year-end performance reviews, salary planning and administration, employee development and mentoring, and promoting a culture of open and honest communication, partnership, continuous improvement and opportunities.
• Responsible for measuring and improving technical competence of team members.
Required Qualifications: • Bachelor of Science Degree in Computer Science, related field or relevant experience
• 10+ years of related work experience in security engineering, systems engineering and/or DevOps with a focus on information security o r any equivalent combination of experience and training/certification that provides the required knowledge, skills, and abilities needed to complete the major responsibilities/essential functions of the position
• Proven ability to lead engineering teams, particular within an Agile environment
• Experience with regulatory and compliance frameworks, such as HIPAA, PCI-DSS, CCPA, GDPR
• Certifications preferred. CISSP, Security +, CISM, GSLC
• Experience in web, application, server and endpoint security
• Strong experience in distributed platform development security and design
• In-depth knowledge of application, platform and system security standards and best practices (OWASP, CIS, etc.)
• Foundational experience in core information sec
Tailor your resume for this Inmar role before you apply.
Tailor my resume for this jobSimilar jobs
- Manager, Cyber Security Engineering — Morgan Stanley · Alpharetta, Georgia, United States
- Manager, Cyber Security — ICF · Reston, VA
- Manager, Security Engineering, Cloud & AppSec — Horizon3ai · Remote
- Manager, Cybersecurity — Litera · Colorado, United States
- Sr. Application Engineer, Cyber Security — Inmar · Headquarters, Winston Salem, NC
- Engineering Manager, Application Security — Roblox · San Mateo, CA, United States
- Engineering Manager, Application Security — Qualia · Austin, TX
- Cybersecurity Application Engineer — Axiomspace · Houston
Free ATS checker · No Salary on the Job Posting? How to Find the Number Before You Interview