Application Security Assurance Associate Director
Application Security Assurance Associate Director

Application Security Assurance Associate Director

Full-Time 70000 - 90000 ÂŁ / year (est.) No home office possible
Go Premium
D

At a Glance

  • Tasks: Lead application security governance and enhance security across DTCC’s container platforms.
  • Company: Join DTCC, a leader in financial market innovation with a supportive team culture.
  • Benefits: Enjoy competitive pay, comprehensive health benefits, and a flexible hybrid work model.
  • Other info: Diverse workplace committed to professional growth and continuous improvement.
  • Why this job: Make a real impact on security while working with cutting-edge technology in a dynamic environment.
  • Qualifications: 8+ years of experience in application security and relevant certifications preferred.

The predicted salary is between 70000 - 90000 ÂŁ per year.

Are you ready to make an impact at DTCC? Do you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We are committed to helping our employees grow and succeed. We believe that you have the skills and drive to make a real impact. We foster a thriving internal community and are committed to creating a workplace that looks like the world that we serve.

Pay and Benefits

  • Competitive compensation, including base pay and annual incentive
  • Comprehensive health and life insurance and well-being benefits
  • Pension
  • Paid Time Off and Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
  • DTCC offers a flexible/hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a third day unique to each team or employee).

The Impact you will have in this role

As a member of the CISO organization, this role provides strategic leadership for application security governance across DTCC’s container platforms by unifying container security and vulnerability management into a cohesive, risk‑driven control framework. The leader owns the design, delivery, and continuous improvement of platform‑native AppSec controls—spanning build, deployment, and runtime—ensuring security is embedded through automation, policy‑as‑code, and standardized guardrails. By partnering closely with Cloud, Platform, and Application teams, this role enables secure scaling of containerized workloads while reducing material risk, improving vulnerability signal quality, and ensuring controls are audit‑ready, measurable, and aligned to DTCC’s regulatory and risk management expectations.

Your Primary Responsibilities

  • Execute application security assessments at scale.
  • Conduct application security assessments, risk analysis, vulnerability testing, and security reviews across DTCC businesses in alignment with established processes and DTCC Control Standards.
  • Identify, monitor, and elevate risk.
  • Monitor application security risk, validate findings, track remediation, and elevate material issues in accordance with DTCC risk and escalation procedures.
  • Enable consistent security outcomes.
  • Coordinate effectively with application development, infrastructure, database, and platform teams to ensure timely assessment, remediation, and risk mitigation.
  • Operate and optimize AppSec tooling.
  • Manage and maintain the tools, servers, and supporting infrastructure used for application vulnerability testing and analysis, ensuring reliability, coverage, and effective use.
  • Strengthen secure development practices.
  • Contribute to, maintain, and promote secure coding standards, guidelines, and best practices across engineering teams.
  • Continuously improve detection capabilities.
  • Research emerging application and container security trends, tools, and techniques—including AI‑enabled capabilities—and apply them pragmatically to improve detection, prioritization, and reporting.
  • Uphold strong risk and ethics discipline.
  • Mitigate risk by following established procedures, monitoring controls, identifying control gaps or errors, and consistently demonstrating strong ethical judgment.

Qualifications

  • Minimum of 8 years of related experience
  • Bachelor's degree preferred or equivalent experience
  • Relevant certification, for example CISM, CISSP, Burp Suite Certified Practitioner

Talents Needed for Success

  • Container and cloud‑native security expertise.
  • Strong hands‑on experience securing containers, Kubernetes, and cloud‑native workloads across build, deploy, and runtime.
  • Modern AppSec execution.
  • Practical experience with container scanning, SBOMs, image signing, runtime protection, and CI/CD security integration.
  • Automation mindset.
  • Ability to apply automation and AI‑enabled capabilities to reduce manual effort and improve prioritization and scale.
  • Delivery‑focused leadership.
  • Proven ability to lead small teams or pods, manage execution, and deliver measurable security outcomes.
  • Risk‑based thinking.
  • Comfortable prioritizing container and application risk in partnership with engineering teams.
  • Clear communicator.
  • Able to explain technical risk and remediation expectations clearly to engineers and security leadership.
  • Continuous improvement orientation.
  • Demonstrates curiosity, learning mindset, and willingness to evolve practices as platforms and threats change.

We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.

Application Security Assurance Associate Director employer: Depository Trust & Clearing Corporation

At DTCC, we pride ourselves on being an exceptional employer, offering a dynamic and supportive work environment that fosters innovation and collaboration. Our commitment to employee growth is reflected in our comprehensive benefits package, including competitive compensation, health and well-being support, and a flexible hybrid work model that promotes work-life balance. Join us to be part of a thriving community where your contributions make a real impact in the financial markets.
D

Contact Detail:

Depository Trust & Clearing Corporation Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Application Security Assurance Associate Director

✨Tip Number 1

Network like a pro! Reach out to current employees at DTCC on LinkedIn or through mutual connections. A friendly chat can give you insider info and might just get your foot in the door.

✨Tip Number 2

Prepare for the interview by researching DTCC’s recent projects and initiatives. Show us that you’re not just interested in the role, but also in how you can contribute to our innovative culture.

✨Tip Number 3

Practice your responses to common interview questions, especially around application security and risk management. We want to see your expertise shine, so be ready to share specific examples from your experience.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows us you’re serious about joining our team.

We think you need these skills to ace Application Security Assurance Associate Director

Application Security Governance
Container Security
Vulnerability Management
Risk Analysis
Security Assessments
Automation
Policy-as-Code
Secure Coding Standards
CI/CD Security Integration
Kubernetes Security
Cloud-Native Workloads
Communication Skills
Continuous Improvement
Team Leadership

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience in application security and container management. We want to see how your skills align with the role, so don’t hold back on showcasing your relevant achievements!

Showcase Your Technical Skills: When detailing your experience, focus on your hands-on expertise with tools like Kubernetes and CI/CD security integration. We love seeing candidates who can demonstrate their technical prowess and how it relates to the job.

Be Clear and Concise: Keep your application straightforward and to the point. Use clear language to explain your past roles and responsibilities, especially when discussing risk management and security practices. We appreciate clarity!

Apply Through Our Website: We encourage you to submit your application directly through our website. It’s the best way for us to receive your details and ensures you’re considered for the role. Plus, it’s super easy!

How to prepare for a job interview at Depository Trust & Clearing Corporation

✨Know Your Stuff

Make sure you brush up on your application security knowledge, especially around container security and vulnerability management. Be ready to discuss specific tools and techniques you've used in the past, like CI/CD security integration or container scanning.

✨Show Your Leadership Skills

Since this role involves strategic leadership, be prepared to share examples of how you've led teams or projects in the past. Highlight your ability to manage execution and deliver measurable outcomes, as well as how you’ve fostered collaboration with engineering teams.

✨Communicate Clearly

Practice explaining complex technical concepts in simple terms. You’ll need to convey risk and remediation expectations to both engineers and security leadership, so being a clear communicator is key. Think of examples where you successfully bridged the gap between technical and non-technical stakeholders.

✨Emphasise Continuous Improvement

Demonstrate your curiosity and willingness to evolve practices. Share instances where you’ve researched emerging trends or tools in application security and how you applied them to improve detection and prioritisation. This shows that you’re not just about maintaining the status quo but are keen on driving innovation.

Application Security Assurance Associate Director
Depository Trust & Clearing Corporation
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>