Application Security Senior Leader

hace 5 días


San Antonio Sinicahua, México Capital Group A tiempo completo

**Job Overview**

We are seeking a highly skilled Application Security Senior Manager to join our team at Capital Group. As an experienced security leader, you will be responsible for designing, implementing, and overseeing the execution of secure software development lifecycle practices across various IT initiatives.

Responsibilities:

  • Develop and maintain threat models to identify potential security risks and vulnerabilities in diverse systems.
  • Collaborate with developers, architects, and business stakeholders to design security requirements and communicate risks effectively.
  • Drive organizational direction towards security while meeting business objectives through effective risk management strategies.
  • Consistently learn and share advanced skills that promote team excellence and foster a culture of security awareness.
  • Build relationships with developers, stakeholders, and scrum masters to incorporate security principles into engineering design and deployments.
  • Supervise testing and validation in application security controls across projects.
  • Oversee implementation of defensive practices and countermeasures across infrastructure and applications.
  • Draft and uphold CI/CD security strategy with other technical leaders.
  • Serve as a point of contact for security-based escalations and remain tightly involved through resolution.
  • Design and help build services and tools to enable developers and engineers to easily use security components produced by application security team members.
  • Create/guide engineers to build automation that improves security of software developed using CI/CD pipeline tools.
  • Support the ability to "shift left" and incorporate security early on and throughout the development lifecycle.
  • Find vulnerabilities in code through automated and manual assessments and promote quick remediation.
  • Communicate vulnerability results in a manner understood by technical and non-technical business units based on risk tolerance and threat to the business, and gain support through influential messaging.
  • Provide risks and remediation insights to help teams architect efficiently within AWS (Amazon Web Services) and Azure as well as operating SaaS (Software as a Services) services securely.
  • Promote technology collaboration by using security principles in architecture, infrastructure, and code.
  • Regularly research and learn new tactics, techniques, and procedures (TTPs) in public and closed forums, and work with colleagues to assess risk and design proper controls as necessary.
  • Partner with teams to define key performance indicators (KPIs) and metrics across business units.
  • Guide and mentor other security engineers and managers.

Requirements:

  • Bachelor's degree in computer science or related field and/or at least 12+ years' experience in information security, application security, penetration testing, DevSecOps, network security, and other security disciplines.
  • Experience managing teams of engineers (5+ years) preferably with experience leading multiple teams through other managers.
  • Passionate about management, leadership, and management science.
  • Experience with STRIDE/other threat modeling frameworks, agile workflows, including Scrum and Kanban.
  • Strong understanding of containers (e.g., Docker) and container orchestration (e.g., Docker Swarm, Kubernetes).
  • Cloud-native architectures including API Gateways, ELB, ECS, Lambda/Azure Functions, Terraform, Ansible, Threat modeling tools (Microsoft threat modeler, OWASP Threat Dragon), SAST, DAST, ASPM, SCA, and CI/CD Pipelines.
  • Proficient in securing Windows and *nix operating systems and internals, endpoint detection and response tooling, networking protocols and devices.
  • Ability to drive business initiatives collaboratively to reduce attack surface while performing rapid, continuous implementation.
  • Proficient in designing, building, and deploying complex engineering solutions.
  • Expertise in programming knowledge in one or more of Java, Python, JavaScript, and scripting in Bash and/or PowerShell.

Benefits:

  • Competitive base salary: $193,464 - $328,889 (Southern California), $174,229 - $296,189 (San Antonio), $205,099 - $348,668 (New York)
  • Eligibility for an individual annual performance bonus and profitability bonus
  • Retirement plan with Capital contributing 15% of eligible earnings


  • San Pedro Garza García, Nuevo León, México Clarios A tiempo completo

    About the Role:We are seeking a highly skilled Senior SAP Security Strategist to join our team at Clarios. As the Senior SAP Security Strategist, you will be responsible for developing and implementing a robust SAP security strategy aligned with our overall business objectives and industry best practices.Key Responsibilities:Develop and implement a...


  • San Antonio de Padua, Tamaulipas, México Zillow A tiempo completo

    About the TeamZillow is a leading real estate company that has been in operation since 2006. As the most visited real estate website in the United States, we have received over 10.5 billion visits in 2022, with an average of 220 million monthly unique users. Our company is dedicated to helping high-intent movers find and win their home through digital...


  • San Pedro Garza García, Nuevo León, México SAP A tiempo completo

    We help businesses succeed globally by providing innovative cloud solutions.SAP is a market leader in end-to-end business application software, with a strong focus on cloud technologies. As a Cloud Engineering Senior Leader, you will be at the forefront of our hyperscaler innovation efforts, enabling us to develop and deliver high-quality products...


  • San Pedro Garza García, Nuevo León, México SAP A tiempo completo

    SAP, a global leader in end-to-end business application software and related services, seeks a highly skilled Cloud Security Compliance Specialist to join its team. With over four hundred thousand customers worldwide, SAP has evolved from leadership in enterprise resource planning (ERP) software to become a market leader in cloud computing and intelligent...


  • San Pedro Garza García, Nuevo León, México Clarios A tiempo completo

    About the Role:Clarios, a global leader in advanced, low-voltage battery technologies for mobility, is seeking an experienced Chief SAP Security Strategist to lead our SAP security efforts. This is an exciting opportunity for a seasoned professional to drive the development and implementation of a robust SAP security strategy, aligned with industry best...

  • SAP Security Lead

    hace 5 meses


    San Pedro Garza García, México Clarios A tiempo completo

    Responsibilities: Develop, implement, and maintain a robust SAP security strategy aligned with overall business objectives and industry best practices. Lead the design, implementation, and ongoing optimization of SAP security controls, including access management, authorization controls, and data security. Oversee vulnerability assessments, penetration...

  • OT Security Engineer

    hace 2 semanas


    san pedro garza garcía, México Clarios A tiempo completo

    OT Security Engineer What you will do As an OT Cybersecurity Engineer at Clarios, you will lead the development and implementation of our OT cybersecurity requirements across our manufacturing facilities. This pivotal role is instrumental in bolstering the robustness and resilience of our OT systems against evolving cyber threats. You will be tasked with...

  • Security Specialist

    hace 1 semana


    San Luis Potosí, San Luis Potosí, México Schweitzer Engineering Laboratories A tiempo completo

    Job Summary As a Schweitzer Engineering Laboratories Security Operator, you will be responsible for providing exceptional customer service while adhering to SEL security policies and culture. Your duties will include creating and maintaining security documentation, performing compliance audits, monitoring alarms, assessing incidents, and operating complex...

  • Ot Security Engineer

    hace 2 semanas


    San Pedro Garza García, N. L., México Clarios A tiempo completo

    OT Security Engineer What you will do As an OT Cybersecurity Engineer at Clarios, you will lead the development and implementation of our OT cybersecurity requirements across our manufacturing facilities This pivotal role is instrumental in bolstering the robustness and resilience of our OT systems against evolving cyber threats. You will be tasked with...


  • San Pedro Garza García, México SAP A tiempo completo

    Bring out your best SAP innovations help more than four hundred thousand customers worldwide work together more efficiently and use business insight more effectively. Originally known for leadership in enterprise resource planning (ERP) software, SAP has evolved to become a market leader in end-to-end business application software and related services...


  • San Luis Potosí, San Luis Potosí, México BMW Group A tiempo completo

    Security Operations Coordinator Role OverviewWe are seeking a skilled Security Operations Coordinator to join our team at the BMW Group. In this role, you will be responsible for coordinating security risk management for all business activities outside our facility to protect our associates, assets, operations, and supply chain.Key Responsibilities:*...


  • San Pedro Garza García, Nuevo León, México Advanced Infrastructure & Security Solutions A tiempo completo

    Descripción del PuestoEn Advanced Infrastructure & Security Solutions, estamos buscando un Desarrollador de Ventas Senior con experiencia en tecnologías avanzadas para unirse a nuestro equipo.Duración y HorarioEste es un puesto a tiempo completo, con una duración indefinida. El horario es de lunes a viernes, con 10 horas diarias.SueldoEl sueldo es de...

  • Senior Software Engineer

    hace 3 semanas


    Unión de San Antonio, México Cronoshare A tiempo completo

    We are looking for a Senior Software Engineer to join our team and contribute to the development of our cloud infrastructure. Your main responsibility will be to design and implement scalable and secure cloud-based systems, ensuring high availability and performance.Key responsibilities include:Design and develop cloud-based infrastructure...


  • San Pedro Garza García, Nuevo León, México CEMEX A tiempo completo

    Job OverviewCEMEX is seeking a Senior Data Architect Leader to join our team. In this role, you will be responsible for designing and implementing data architecture solutions that drive business value and growth.The ideal candidate will have a strong background in data architecture, experience with cloud platforms, and excellent communication skills.This...


  • San Luis Potosí, San Luis Potosí, México Bosch Group A tiempo completo

    **About Us**Bosch Group, a global leader in the field of technology and services, has been shaping the future for over 130 years. With our innovative products and solutions, we are driving progress and improving people's lives.We are now seeking a highly skilled and experienced Digital Transformation Leader to join our team and contribute to our mission of...


  • San Pedro Garza García, Nuevo León, México SAP A tiempo completo

    **Job Summary** We are seeking a highly skilled Cloud Security DevOps Engineer Expert to join our team at SAP. As a key member of our security team, you will be responsible for developing and implementing cloud security solutions that align with our business goals. **Key Responsibilities** Collaborate with internal stakeholders to understand requirements...


  • San Pedro Garza García, N. L., México ContactPoint 360 A tiempo completo

    **Responsibilities**: - Oversee and manage all aspects of the delivery center’s physical security, including access controls, surveillance systems, alarm systems, and security personnel. - Conduct regular assessments and audits to identify potential vulnerabilities and areas for improvement within the delivery center’s security infrastructure. - Stay...


  • San Pedro Garza García, Nuevo León, México SAP A tiempo completo

    Job Title: Cloud Security DevOps Engineer ExpertAbout the Role: We are seeking a highly skilled Cloud Security DevOps Engineer Expert to join our team at SAP.Key Responsibilities:Develop solutions based on business needs and priorities.Provide technical leadership and contribute to high-value SecDevOps projects and solutions.Leverage major security...


  • San Pedro Garza García, México SAP A tiempo completo

    What you’ll do : As a Cloud Security DevOps Engineer Expert, you will be: Working with internal stakeholders to understand requirements and constraints. Developing solutions based on business needs and priorities. Providing technical leadership and contributing on high value SecDevOps projects and solutions. Developing configuration controls...


  • San Pedro de los Pinos, México Data Science Software LLC A tiempo completo

    5+ years of experience in working in network security roles (engineering, analysis, or design) - 10+ years of experience in advanced networking and design - Understanding of Zero Trust Architecture (ZTA) and standards around ZTA - Secure network design experience utilizing security technologies such as firewalls, IDS/IPS, WAF, SASE. - Specific perimeter...