ย 

Sr. Manager

RemoteSeniorManager
๐Ÿ’ฐ$176โ€“220K
๐Ÿ‡บ๐Ÿ‡ธ United States
๐Ÿ‘ถPaid parental leave

Our ideal candidate has a passion for automation, is a deep innovator, wants to solve complex problems and is looking to be part of a company consistently recognized as a Top Place to Work!

As the leader in the Employer of Record industry, our focus at G-P is on GROWTH โ€“ growth of our customers, our business, and our people. We are committed to providing our employees with opportunities for success at every stage in their career.

People are the heartbeat of the company and the key to making G-P an inclusive and fun place to work โ€“ a collaborative environment where you can make a real impact and love the work youโ€™re doing!

Did we mention you can experience all of this while working remotely? As a remote-first employer, we value your experience and skills more than where you are located. Join our collaborative work environment where you can make a real impact and love the work youโ€™re doing!

About the position:

As a Senior Manager of Information Security - Application Security, you will help drive and implement the companyโ€™s application security program. This position reports to the Sr Director of Information Security but works closely with Engineering, DevOps, Product, and other team leads across the organization to build security into the product lifecycle from design through deployment.

On any given day, you might be performing a security review, educating the business on secure SDLC, collaborating with development teams on threat modeling, working with engineers to remediate identified risks, or managing application security tools. Through your efforts, you will be securing a large spectrum of sensitive and highly regulated data, ensuring compliance toward regulations, internal policies, and customer requirements.

What you will do:

  • Manage a team of engineers/analysts and build resiliency into the team.
  • Evangelize application security fundamentals and act as a consultative partner to development teams.
  • Implement and leverage SAST/DAST/SCA security tools like Veracode and Snyk. Make recommendations on application security tools.
  • Guide and perform security activities including threat modeling and vulnerability analysis, code review, and security testing, ensuring teams are validating for OWASP Top 10 and CWE/SANS Top 25.
  • Triage application risks daily as identified by AppSec scanning tools to eliminate false positives and provide a well-vetted set of vulnerabilities to engineering.
  • Collaborate with engineering to drive the timely remediation of vetted risk and to implement creative solutions that increase operational effectiveness.
  • Generate, collect, and report on AppSec metrics on a regular basis.
  • Make recommendations on development processes and provide production application security support as needed.
  • Create and maintain technical documentation for the AppSec program.
  • Contribute to the development and delivery of security awareness and secure development training programs.

What we are looking for:

  • 10+ years of related work experience in the Application Security field.
  • Strong communication and relationship building skills with a high degree of comfort speaking with developers, IT executives, and business partners.
  • Strong experience managing & developing a high-performance team.
  • Strong experience performing security focused application design reviews, threat modeling, manual code reviews, container security, and ethical hacking.
  • Strong experience implementing and working with SAST/DAST/SCA security tools.
  • Deep knowledge of security vulnerabilities, being able to identify issues, assess risk, and provide remediation guidance.
  • Deep knowledge of authentication and authorization options and standards.
  • Strong experience using common security testing tools and techniques to perform security assessments with significant expertise in either web or mobile penetration testing.
  • Strong experience working with developers and knowledgeable about modern web, mobile, and API development practices.
  • Ability to read and write code in at least one programming language.
  • Knowledge of CI/CD practices and experience incorporating security requirements into a SDLC.

The annual gross base salary range for this position is $176,000-$220,000 plus an annual bonus opportunity.

G-P values its employees and offers excellent benefits and perks including generous paid parental leave, flexible time off, flexible spending accounts, medical Insurance, dental Insurance, vision Insurance, 401k, and sabbatical after 5 years of service.

We will consider for employment all qualified applicants, including those with arrest records, conviction records, or other criminal histories, in a manner consistent with the requirements of any applicable state and local laws, including the City of Los Angelesโ€™ Fair Chance Initiative for Hiring Ordinance, the San Francisco Fair Chance Ordinance, and the New York City Fair Chance Act.

Are you ready to work for a company that has continuously being recognized as a Top Place to work. People are the heartbeat of the company and the key to making G- P an inclusive and fun place to work โ€“ a collaborative environment where you can make a real impact and love the work youโ€™re doing!

ย 

G-P

G-P

A company that helps growing companies unlock their full potential by building global teams compliantly and efficiently.

Consulting

LinkedIn

Find, hire and manage teams in days instead of months with the #1 Global Growth Platform.โ„ข

๐ŸญComputer Software
1.6K
233.2K

Updated ย 

Other jobs at G-P

ย 

ย 

ย 

ย 

ย 

ย 

ย 

ย 

View all G-P jobs

Why OmniJobs?

  • Rare & hidden jobs
  • New jobs every day
  • No expired job posts
  • All jobs in English

Receive emails about similar jobs

Get alerts to your inbox about new open jobs that are similar to this one.

๐Ÿ‡บ๐Ÿ‡ธ United States
"Sr. Manager"
Remote

No spam. No ads. Unsubscribe anytime.

Similar jobs

ย 

ย 

ย 

ย 

ย 

ย 

ย 

ย