Position Overview
In this role, you will drive the adoption of secure development practices, partner with engineering and product leaders to manage risk, and ensure security is embedded throughout the software development lifecycle. You will lead a team of Application Security engineers, oversee key AppSec functions, shape the direction of the AppSec program, establish standards and processes, and drive measurable improvements in security outcomes across the organization. This role requires strong technical depth in Application Security combined with proven leadership, program management, and the ability to influence engineering organizations at scale.
What You'll Do
- Lead and develop a team of Application Security engineers, providing technical guidance, mentorship, and career development.
- Collaborate with senior leadership to define strategic priorities for the AppSec program and lead execution against the program roadmap.
- Translate AppSec strategy into actionable initiatives, team objectives, and measurable outcomes through well‑defined roadmaps, OKRs, and operational metrics.
- Oversee threat modeling efforts and ensure security risks are identified and addressed early in the development lifecycle.
- Drive the continuous improvement of application security testing capabilities, including SAST, DAST, SCA, secrets detection, and emerging security testing technologies.
- Support the secure adoption of emerging technologies, including AI and GenAI‑enabled applications.
- Lead and grow the Security Champions program, enabling engineers across the organization to serve as security advocates and help scale security ownership within development teams.
- Partner with engineering and product leadership to make risk‑informed security decisions aligned with business priorities.
- Define and track metrics to measure program effectiveness, security outcomes, and engineering adoption.
What We're Looking For
- 12+ years of experience in Application Security, Product Security, Software Engineering, or related security engineering roles.
- 3+ years of experience leading security engineers, technical programs, or Application Security initiatives.
- Strong foundation in secure software design, threat modeling, security architecture reviews, and vulnerability management.
- Experience building and scaling Application Security programs within modern software development organizations.
- Experience deploying security testing technologies including SAST, DAST, SCA, container security, secrets detection, and cloud‑native security tools.
- Ability to assess and prioritize risk in modern application architectures, including cloud‑native environments.
- Effective communicator who can engage technical and non‑technical stakeholders at all levels of the organization.
- Experience defining program metrics and driving measurable improvements in security outcomes.
Preferred Qualifications
- Experience integrating security into CI/CD pipelines and developer platforms at scale.
- Experience with Responsible Disclosure and Bug Bounty programs.
- Experience securing cloud‑native applications and architectures in AWS, Azure, or GCP.
- Familiarity with AI and GenAI security concepts, including the OWASP Top 10 for LLM Applications and secure AI development practices.
Benefits
- Equity for all employees.
- Flexible annual leave, paid holidays, and volunteer days.
- Comprehensive private benefits plan including medical insurance for you and your family, life insurance (3x compensation), and personal accident insurance.
- Fertility support and paid parental leave.
- Employee Assistance Program.
Security Requirements
- Conduct duties and responsibilities in accordance with AWN’s Information Security policies, standards, processes, and controls.
- Background checks are required for this position.
- This position may require access to information protected under U.S. export control laws and regulations, including the Export Administration Regulations (EAR). If applicable, an offer for employment will be conditioned on authorization to receive software or technology controlled under these laws and regulations.
Equal Employment Opportunity Statement
Arctic Wolf is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, provincial, or local law. Arctic Wolf is committed to fostering a welcoming, accessible, respectful, and inclusive environment ensuring equal access and participation for people with disabilities. As such, we strive to make our entire experience as accessible as possible and provide accommodations as required for candidates and employees with disabilities and/or other specific needs where possible. Please let us know if you require any accommodation by emailing recruiting@arcticwolf.com.