Application Security Manager
Application Security Manager

Application Security Manager

City of London Full-Time 48000 - 72000 £ / year (est.) No home office possible
U

At a Glance

  • Tasks: Lead application security initiatives and ensure secure software development practices.
  • Company: Join Unily, a leader in Employee Experience transformation for iconic brands.
  • Benefits: Enjoy a competitive salary, flexible work options, and generous holiday leave.
  • Why this job: Make a real impact on security in a dynamic tech environment.
  • Qualifications: Experience in application security and strong knowledge of secure development practices.
  • Other info: Be part of a diverse team committed to sustainability and community engagement.

The predicted salary is between 48000 - 72000 £ per year.

Unily partners with the world’s largest and most complex enterprises to power Organizational Velocity through digital Employee Experience transformation. Iconic brands, including Estée Lauder Companies, CVS Health, and British Airways, use Unily’s market-leading Employee Experience platform to improve productivity, streamline communication, and foster a highly connected workplace.

Unily is the only triple leader recognized by all three of the major analysts. Unily is recognized as a Leader in the 2024 GartnerMagic Quadrantfor Intranet Packaged Solutions, the 2024 Forrester Wave: Intranet Platforms, and the IDC MarketScape: Worldwide Experience-Centric Intelligent Digital Workspaces 2024. With these accolades, we continue to grow and expand our employee community with people who are passionate about joining us on this exciting journey.

Job Purpose

As we continue to expand our market share in the rapidly emerging Employee Experience platform category, we are looking for an Application Security Manager. This role is responsible for building and executing a comprehensive application security programme that combines strategic oversight with hands-on technical execution. The Application Security Manager ensures that security is embedded throughout the software development lifecycle (SDLC), enabling Unily to deliver secure products at speed.

The Application Security Manager will define and enforce secure development policies and practices, establish privacy by design principles, and mange the risk and escalation process. They will actively engage in technical assurance activities such as threat modelling, application testing, dependency analysis, cloud and container security assessments and CI/CD pipeline hardening.

The role will act as both a strategic partner to leadership and a trusted advisor to engineering teams, being a customer facing point of contact when required.

Main Responsibilities

  • Define and maintain secure development policies and privacy by design requirements
  • Own the risk acceptance and escalation process, maintaining the risk register
  • Develop and measure the application security strategy levering frameworks such as OWASP SAMM
  • Support RFPs and sales responses on application security matters
  • Lead and coordinate external penetration testing engagements and remediation follow up
  • Drive risk-based prioritisation, assigning and validating CVSS scores
  • Deliver and manager secure development training programs
  • Conduct and facilitate threat modelling and architecture and design security reviews
  • Perform or coordinate application security testing
  • Generate and manage software bills of materials (SBOMs) to manage supply chain risks
  • Ensure build verification and oversee IaC and container/Kubernetes scanning within pipelines
  • Provide guidance on secure cloud-native architectures
  • Evaluate and apply security testing tools and techniques (e.g. Burpsuite, fuzzing, IaC scanners, Static Analysers)
  • Contribute to security metrics, reports and dashboards
  • Collaborate with engineering, operations and product teams to embed security best practices throughout the whole SDLC

Requirements

  • Proven experience in application security
  • Strong knowledge of secure software development practices, DevSecOps and CI/CD security integration
  • Hands on experience with application security testing tools and techniques (e.g. SAST, DAST, Dependency checkers, IaC scanners, secret detection, container security tools)
  • Understanding of threat modelling, architecture and design reviews and offensive security principles
  • Familiarity with compliance and regulatory frameworks
  • Experience with risk acceptance processes, CVSS scoring and vulnerability management
  • Experience managing external penetration testing vendors
  • Familiarity with SBOMs and software supply chain security
  • Strong background in cloud and container security
  • Ability to communicate with technical and non-technical stakeholders
  • Knowledge of data privacy regulations and GDPR, and how they intersect with application security
  • Certifications such as CISSP, CSSLP, OSWE, OSCP or equivalents
  • Degree in computer science, cyber security, related fields or equivalent experience

We are united by a shared purpose and are committed to truly understanding each other. We know that everyone is unique and has their own story. We strive to have a diverse workforce that embraces and celebrates one another. We are united in building connections and curious to learn from each other so that we continue to grow together to build the workplace of tomorrow.

Why Work For Unily?

In addition to a generous base salary and discretionary company bonus, here are some things we think you will love:

Our awesome team culture. We are focused on achieving results as a team and having fun while we do it. You won’t find a friendlier or more dedicated bunch of people.

Our industry leading product. We are very proud of our ever-evolving product, naturally we use (and love) it internally and provide the tools and resources for you (and our clients) to become a Unily expert.

The flexibility that we offer. We don’t just mean working from home occasionally. We operate on a hybrid basis, and also recognize that life happens during the 9-5.30 and encourage a sustainable work/life balance.

Our bright and modern office spaces. When you need to be in the office we want it to be like being at home. We have a well-stocked kitchen and the option to bring your dog to work.

We offer a fantastic suite of benefits. Including 25 days holiday plus an extra paid day off to enjoy your birthday, Vitality life cover (for health, sight, hearing and dental), Aviva pension (via a salary sacrifice scheme), life assurance, income protection and so many more.

Our commitment to sustainability and giving back to the community.We know working for an organisation that takes its environmental & social impact seriously is important, and we are proud to offer 1 fully paid volunteering day per year, an employee matching charity donation scheme and options to lease an Electric Vehicle through our salary sacrifice scheme.

View Unily\’s UK & EEA Careers Privacy Notice here

View Unily\’s USA Careers Privacy Notice here

#J-18808-Ljbffr

Application Security Manager employer: Unily

Unily is an exceptional employer that fosters a vibrant team culture, prioritising collaboration and enjoyment in achieving results. With a commitment to employee well-being, we offer flexible working arrangements, a modern office environment, and a comprehensive benefits package, including generous holiday allowances and health coverage. Our dedication to sustainability and community engagement further enhances the rewarding experience of being part of our innovative team, making it an ideal place for those seeking meaningful career growth in the tech industry.
U

Contact Detail:

Unily Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Application Security Manager

✨Tip Number 1

Network like a pro! Reach out to folks in your industry on LinkedIn or at events. A friendly chat can lead to opportunities that aren’t even advertised yet.

✨Tip Number 2

Prepare for interviews by researching the company and its culture. Show them you’re not just another candidate; you’re genuinely excited about what they do!

✨Tip Number 3

Practice your pitch! Be ready to explain how your skills align with the role of Application Security Manager. Confidence is key, so rehearse until it feels natural.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who take that extra step!

We think you need these skills to ace Application Security Manager

Application Security
Secure Software Development Practices
DevSecOps
CI/CD Security Integration
Application Security Testing Tools
Threat Modelling
Architecture and Design Reviews
Offensive Security Principles
Risk Acceptance Processes
CVSS Scoring
Vulnerability Management
External Penetration Testing Management
Software Supply Chain Security
Cloud Security
Container Security

Some tips for your application 🫡

Tailor Your Application: Make sure to customise your CV and cover letter for the Application Security Manager role. Highlight your experience with secure software development practices and any relevant certifications. We want to see how your skills align with our needs!

Showcase Your Technical Skills: Don’t hold back on detailing your hands-on experience with application security testing tools and techniques. Mention specific tools you've used, like SAST or DAST, as this will show us you’re ready to hit the ground running.

Communicate Clearly: When writing your application, keep it clear and concise. Use straightforward language to explain your experience and how it relates to the role. Remember, we appreciate both technical and non-technical communication skills!

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you don’t miss out on any important updates. Plus, we love seeing applications come in through our own platform!

How to prepare for a job interview at Unily

✨Know Your Stuff

Make sure you brush up on your application security knowledge, especially around secure software development practices and tools like SAST and DAST. Be ready to discuss how you've applied these in past roles, as this will show you're not just familiar with the concepts but have real-world experience.

✨Showcase Your Strategic Thinking

Unily is looking for someone who can blend technical skills with strategic oversight. Prepare examples of how you've defined and enforced secure development policies or managed risk acceptance processes. This will demonstrate your ability to think both tactically and strategically.

✨Engage with the Team

Since you'll be a trusted advisor to engineering teams, it's crucial to show that you can communicate effectively with both technical and non-technical stakeholders. Practice explaining complex security concepts in simple terms, and be ready to discuss how you've collaborated with cross-functional teams in the past.

✨Prepare for Scenario Questions

Expect to face scenario-based questions that assess your problem-solving skills in real-time. Think about potential security threats and how you would approach threat modelling or application testing in those situations. This will help you showcase your analytical skills and practical knowledge.

Application Security Manager
Unily
Location: City of London

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

U
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>