Jobs
>
Dallas

    Application Security Manager - Dallas, United States - TEKsystems

    Default job background
    Part time
    Description

    The client is looking for someone with lead or managerial experience that is reliable. Must have app security experience.

    This individual will be expected to perform integration with the SDLC, working alongside with various stakeholders such as AppSec team, IAM team, App Developers, Third Party vendors, Managed Services Partners to devise a right operational and technical model serving as SME in App Sec to design & address static and run time vulnerabilities, threats, perform and facilitate both internal and third party penetration testing activities, and secure coding training. This individual will be responsible for running DAST, SAST, Threat Modeling and Pen testing activities combined with strong interpersonal skills, ability to quickly learn new technologies, have the ability to work independently and collaboratively, and solve challenges along the way.

    Description:


    • Perform DAST & SAST scans, threat modeling & SCA activities across multiple applications within multiple environments


    • Review source code, identify security vulnerabilities, perform risk analysis, & partner with development team for remediation


    • Create Secure Coding best practices & implement them


    • Perform internal application penetration testing activities & facilitate third-party assessments primarily targeting web & other internally developed applications


    • Perform security assessments of existing architecture & make security recommendations


    • Develop AppSec scorecard & Dashboard with metrics


    • Own the Application Security program as a leader & subject matter expert. Provide Vision to mature the program. Develop plans & roadmaps for the program


    • Work with cross-functional teams to triage the vulnerabilities, identify false positives, & provide recommendations


    • Analyze tools in the market & participate in Proof of Concept & support selection of products/tools


    • Engage with Stakeholders from Application Organization to increase adoption of Security Best Practices & Controls


    • Engage with Management to provide Application Risk View for the organization


    • Lead offshore team and provide accountability. 2-3 direct reports who sit in India. Application security engineers, fluent in English. This does not affect working hours for candidate.

    Skills:

    interpersonal skills, risk analysis, application security, Security, Information security, Risk management, threat model, sast, pen testing, data integration, application integration, penetration test, source code

    Additional Skills & Qualifications:


    • 8-10 years of experience in implementation & administration of App Sec program


    • Experience & familiarity with tools such as HCL App Scan, Veracode, Checkmarx, Fortify, Snyk etc.


    • Skilled in Active Directory concepts, including users, groups, policies, conditional access etc.


    • Solid understanding of IAM protocols, services, & traffic flows for authentication


    • Research, Analytical, & problem-solving skills


    • Can work with multiple stakeholders, vendors, & management staff


    • Understanding of Application Security including Vulnerability Management


    • Experience of guiding customers implement Secure SDLC & driving maturity program


    • Stakeholder Management – Reporting, Coordination with App & Infra teams


    • Knowledge of application development, network engineering, operating systems, & cloud environments


    • Understanding of Application Security Architecture Principles


    • Working understanding of Common Vulnerability Scoring System (CVSS) & their application to cyber analysis, knowledge of cyber intelligence lifecycle


    • Good understanding security Threat Modeling


    • Knowledge of & familiarity with Enterprise Information Systems (web servers, databases, file sharing, etc.)


    • Understanding of common network services (web, mail, DNS, FTP, etc.), network vulnerabilities, & network attack patterns


    • Should have good conceptual understanding of Windows, Linux Operating Systems & Networking – TCP/IP Protocol Suite, Application Architecture


    • Strong analytical & problem-solving skills


    • Strong communication skills (verbal and written) & interpersonal skills


    • Knowledge of cyber security processes & best practices


    • Familiarity of ITIL processes & Service Now


    • Good understanding of Dev Ops concepts


    • This role will require you to work in flexible shift timings supporting US business hours


    • Bachelors/masters degree in technology


    • Security & App Sec related certifications preferably


    • CISSP, CISM, and/or International Information System Security Certification Consortium is a plus

    About TEKsystems:



    We're partners in transformation. We help clients activate ideas and solutions to take advantage of a new world of opportunity. We are a team of 80,000 strong, working with over 6,000 clients, including 80% of the Fortune 500, across North America, Europe and Asia. As an industry leader in Full-Stack Technology Services, Talent Services, and real-world application, we work with progressive leaders to drive change. That's the power of true partnership. TEKsystems is an Allegis Group company.

    The company is an equal opportunity employer and will consider all applications without regards to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.


  • AccorHotels

    Security Manager

    1 week ago


    AccorHotels Dallas, United States

    "Why work for Accor? · We are far more than a worldwide leader. We welcome you as you are and you can find a job and brand that matches your personality. We support you to grow and learn every day, making sure that work brings purpose to your life, so that during your journey wit ...


  • PNC Financial Services Group, Inc. Farmers Branch, United States

    Position Overview · At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our customers. We work together each day to foster an inclusive workplace culture where all of our emp ...


  • Talent Groups Dallas, United States

    Security Project Manager · 6 month contract · $52-$55/hr W2 · 100% Remote · Job Summary: · The Security Project Manager is responsible for overseeing and managing the implementation of information security projects within the organization. The Project Manager also plays a key ro ...


  • Optomi Dallas, United States

    Optomi, in partnership with a leading provider in the Beverage industry is seeking a Cyber Security Manager to join their team In this role, you will be responsible for developing and implementing the organization's Cyber Security roadmap, evaluating security threats, managing se ...


  • Thomas, Edwards Group Dallas, United States

    JOB DESCRIPTION · Job Summary: · The Cyber Security Manager is responsible for developing and implementing the organization's Cyber Security roadmap, evaluating security threats, managing security systems, policies, and software, conducting regular assessments to ensure complian ...


  • Insight Global Dallas, United States

    Must-haves: · 8-10 years of experience in implementation and administration of App Sec program · Experience and familiarity with tools such as HCL App Scan, Veracode, Checkmarx, Fortify, Snyk etc. · Skilled in Active Directory concepts, including users, groups, policies, conditi ...


  • Optomi Dallas, United States

    Optomi, in partnership with a leading provider in the Beverage industry is seeking a Cyber Security Manager to join their team In this role, you will be responsible for developing and implementing the organization's Cyber Security roadmap, evaluating security threats, managing se ...


  • Amazon Dallas, United States

    Amazon is continuously innovating new services and features for our customers. Our engineers invent, build, and sometimes break things to make them easier, faster, better, and more cost-effective. However, no matter what were building from websites to web services, AR to AI, dron ...


  • Schneider Electric Norge AS Dallas, United States

    What will you do? · Manage security project resources by planning, scheduling, and forecasting manpower requirements · Coordinate project in accordance with contract documents / defined scope of work · Manage all document control for projects, including but not limited to RFI's, ...


  • Thomas Edwards Group Dallas, United States

    Job Description · Job DescriptionJOB DESCRIPTION · Job Summary: · The Cyber Security Manager is responsible for developing and implementing the organization's Cyber Security roadmap, evaluating security threats, managing security systems, policies, and software, conducting regula ...


  • Frontier Communications Dallas, United States

    Senior Managed Security Product Manager At Frontier, seeing what's beyond the horizon is in our fiber. And weve been doing just that for over 80 years connecting communities with emerging communications technology across the country. At Frontier, Product Manager, Security, Manage ...


  • Frontier Communications Dallas, United States

    At Frontier, seeing what's beyond the horizon is in our fiber. And we've been doing just that for over 80 years – connecting communities with emerging communications technology across the country. At Frontier, we're transforming our business to break new ground and taking the dig ...


  • Frontier, Inc. Dallas, United States

    · Senior Managed Security Product Manager · At Frontier, seeing what's beyond the horizon is in our fiber. And we've been doing just that for over 80 years - connecting communities with emerging communications technology across the country. At Frontier, we're transforming our b ...


  • Equinix, Inc. Dallas, United States

    Who are we? · Equinix is the world's digital infrastructure company, operating over 250 data centers across the globe. Digital leaders harness Equinix's trusted platform to bring together and interconnect foundational infrastructure at software speed. Equinix enables organization ...


  • Hamlyn Williams Dallas, United States

    As a Network Security Engineering Manager, your main focus is on supervising the security infrastructure, leading a team of network security engineers, and guaranteeing the efficiency of network security protocols. It involves tasks such as risk management, formulating policies, ...


  • TAMKO Dallas, United States

    To perform this job successfully, an individual must be able to perform each essential function satisfactorily. Reasonable accommodations may be made to enable qualified individuals with disabilities to perform the essential functions. Other duties may also be assigned. · Leader ...


  • British Telecom Dallas, United States

    Security Senior Sales Manager · in · Dallas , United States · Security Senior Sales Manager · Posting Date: 30 Apr 2024 · Function: Sales and Commercial · Unit: Business · Location: · 8951 Cypress Waters BLVD., Dallas, United States · TITLE Security Senior Sales Manager · Flex ...


  • LVI Associates Dallas, United States

    Title: Join Our Client's Team as a Senior Project Manager in Electronic Security · Introduction: · We are currently seeking an experienced and skilled security project manager to join our client's team. As the leading provider of electronic security solutions, our client is comm ...


  • Marler & Associates Search Dallas, United States

    What Our Client Does · Our client is at the forefront of IT, IoT, OT security, delivering cloud and network cybersecurity solutions for a connected world. They empower their customers to optimize their security frameworks through automation and data-powered insights to overcome r ...


  • Hamlyn Williams Dallas, United States

    As a Network Security Engineering Manager, your main focus is on supervising the security infrastructure, leading a team of network security engineers, and guaranteeing the efficiency of network security protocols. It involves tasks such as risk management, formulating policies, ...