Position Overview
At Arctic Wolf, we’re looking for a Senior Manager – Application Security to lead the adoption of secure development practices, partner with engineering and product leaders, and embed security throughout the software development lifecycle.
Responsibilities
- Lead and develop a team of Application Security engineers, providing technical guidance, mentorship, and career development.
- Collaborate with senior leadership to define strategic priorities for the AppSec program and lead execution against the program roadmap.
- Translate AppSec strategy into actionable initiatives, team objectives, and measurable outcomes through well‑defined roadmaps, OKRs, and operational metrics.
- Oversee threat‑modeling efforts and ensure security risks are identified and addressed early in the development lifecycle.
- Drive the continuous improvement of application security testing capabilities, including SAST, DAST, SCA, secrets detection, and emerging security testing technologies.
- Support the secure adoption of emerging technologies, including AI and GenAI‑enabled applications.
- Lead and grow the Security Champions program, enabling engineers across the organization to serve as security advocates and help scale security ownership within development teams.
- Partner with engineering and product leadership to make risk‑informed security decisions aligned with business priorities.
- Define and track metrics to measure program effectiveness, security outcomes, and engineering adoption.
Qualifications
- 12+ years of experience in Application Security, Product Security, Software Engineering, or related security engineering roles.
- 3+ years of experience leading security engineers, technical programs, or Application Security initiatives.
- Strong foundation in secure software design, threat modeling, security architecture reviews, and vulnerability management.
- Experience building and scaling Application Security programs within modern software development organizations.
- Experience deploying security testing technologies including SAST, DAST, SCA, container security, secrets detection, and cloud‑native security tools.
- Ability to assess and prioritize risk in modern application architectures, including cloud‑native environments.
- Effective communicator who can engage technical and non‑technical stakeholders at all levels of the organization.
- Experience defining program metrics and driving measurable improvements in security outcomes.
- Background checks required for this position.
- Preferred: Experience integrating security into CI/CD pipelines and developer platforms at scale; experience with Responsible Disclosure and Bug Bounty programs; experience securing cloud‑native applications on AWS, Azure, or GCP; familiarity with AI and GenAI security concepts, including the OWASP Top 10 for LLM Applications and secure AI development practices.
Benefits
- Equity for all employees
- Flexible annual leave, paid holidays and volunteer days
- Comprehensive private benefits plan (medical insurance for you and your family, life insurance (3x compensation), and personal accident insurance)
- Fertility support and paid parental leave
- Employee Assistance Program
EEO Statement
Arctic Wolf is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, provincial, or local law. Arctic Wolf is committed to fostering a welcoming, accessible, respectful, and inclusive environment ensuring equal access and participation for people with disabilities.