Application Security Manager
Listed on 2026-01-12
-
IT/Tech
Cybersecurity, IT Project Manager, Cloud Computing, Systems Engineer
Overview
Join to apply for the Application Security Manager role at Corebridge Financial
.
We are an Equal Opportunity Employer. We encourage applicants from all backgrounds to apply and value diversity and inclusion in our workforce.
Who You’ll Work WithThe Information Technology organization is the technological foundation of our business and works in collaboration with our partners from across the company. The team drives technology and digital transformation, partners with business leaders to design and execute new strategies through IT and operations services and ensures the necessary IT risk management and security measures are in place and aligned with enterprise architecture standards and principles.
AboutThe Role
Application Security Manager to lead and evolve our Dev Sec Ops function. You will oversee a cross-functional team responsible for embedding security throughout the software development lifecycle (SDLC), integrating AI-driven tools and practices, and enabling secure-by-design development. This role is both strategic and technical, requiring deep expertise in App Sec, Dev Sec Ops automation, and a forward-thinking approach to AI adoption in security.
Responsibilities- Lead the application security program with a focus on securing CI/CD pipelines, cloud-native apps, and microservices.
- Manage a team of Dev Sec Ops engineers and security champions across development squads.
- Develop and implement scalable security tooling, static and dynamic code analysis software composition, and Software Bill of Materials.
- Integrate AI and machine learning tools for threat modeling, code analysis, and anomaly detection.
- Collaborate with development, infrastructure, and product teams to ensure secure architecture and coding practices.
- Establish App Sec policies, threat modeling frameworks, and secure coding guidelines.
- Build metrics and reporting to track the effectiveness of App Sec initiatives and risk posture.
- Evaluate and implement AI-based App Sec tools and integrations within the Dev Sec Ops toolchain.
- Lead incident response and secure code review processes for critical applications.
- Act as the primary point of contact for application security audits and compliance initiatives.
- 7+ years of experience in application security, including 2+ years managing security teams.
- Strong knowledge of secure coding practices in modern languages (e.g., Python, Java, JavaScript, Go).
- Experience deploying and managing App Sec tools such as SAST, DAST, SCA, IaC scanners, Application Security Posture Management (ASPM) and secrets detection tools.
- Hands-on experience in CI/CD platforms (e.g., Git Hub Actions, Git Lab CI, Jenkins, Azure Dev Ops).
- Solid understanding of cloud-native architectures (AWS/GCP/Azure), containers (Docker), and orchestration (Kubernetes).
- Experience with Infrastructure-as-Code (e.g., Terraform, Cloud Formation) and securing Dev Ops pipelines.
- Familiarity with AI-driven App Sec tools for vulnerability management, threat detection, and LLM-assisted secure code review.
- Experience with LLMs (e.g., OpenAI GPT, Gemini) for code analysis, threat modeling, secure coding guidance or vibe coding.
- Understanding of prompt engineering, model fine-tuning, or integrating AI APIs into security workflows.
- Bonus:
Experience in AI security (e.g., adversarial ML, model poisoning, AI system threat modeling). - Bonus:
Experience in SAP Security, code review, vulnerability management, and threat monitoring. - Bachelor’s degree in a relevant field or proven record of experience in Information Technology and Cyber Security roles.
- Certifications:
- OSCP – Offensive Security Certified Professional (Required or strong preference)
- GWAPT - GIAC Web Application Penetration Tester
- OSWE – Offensive Security Web Expert (Preferred)
- CISSP – Certified Information Systems Security Professional (Preferred)
- GPEN – GIAC Penetration Tester (Preferred)
- AI/ML Certifications – e.g., Microsoft AI-102, Google Cloud ML Engineer, or similar (Bonus)
The anticipated salary range for this position is $130,000 to $150,000 at the commencement of employment. Not all candidates will be eligible for the upper end of the salary range. The…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).