Application Security Lead

R2R Consults
Johannesburg
ZAR 400 000 - 500 000
Job description

The Lead Application Security position is responsible for providing technical leadership in securing software applications across the organization. This role involves implementing security policies, conducting security assessments, and working closely with development teams to ensure applications are designed and maintained with robust security measures. The Lead Application Security works with development teams to integrate security best practices throughout the software development lifecycle, helping to mitigate risks and protect organizational data and systems.

Certification must have:

CISSP, CSSLP, GWAPT, OSCP, CKS, Cloud Security certifications (AWS Security, Azure Security, or GCP Security) preferred.

The Role

Key Accountabilities

  1. Lead the technical implementation of application security initiatives, ensuring alignment with organizational security strategy.
  2. Design and implement security controls throughout the software development lifecycle (SDLC).
  3. Conduct detailed threat modeling and risk assessments for critical applications.
  4. Perform advanced code reviews, penetration testing, and vulnerability assessments.
  5. Lead the remediation of security vulnerabilities and track resolution progress.
  6. Deliver application security training and mentor junior team members.
  7. Monitor emerging threats and vulnerabilities, recommending appropriate security measures.
  8. Collaborate with development and operations teams to embed security in the SDLC.
  9. Provide technical guidance and mentorship to application security team members.
  10. Implement and maintain container security policies and best practices.
  11. Assess and enhance security measures for containerized applications.
  12. Review and secure cloud-native application architectures.
  13. Security Testing: Advanced experience with SAST, DAST, and IAST methodologies.
  14. DevSecOps: Experience integrating security into CI/CD pipelines.
  15. Security Frameworks: In-depth knowledge of OWASP, NIST, and ISO 27001.

Ideal Profile

  1. You have at least 6 years of experience, ideally within an IT Security role.
  2. You have good interpersonal and communication skills and are adept at working with multiple stakeholders to drive desired outcomes.
  3. You have working knowledge of security testing, SAST, OWASP, ISO 27001, and CI/CD.
  4. You are a strong networker and relationship builder.
  5. You possess strong analytical skills and are comfortable dealing with numerical data.
  6. You are a strong team player who can manage multiple stakeholders.

What's on Offer?

  1. Leadership Role.
Get a free, confidential resume review.
Select file or drag and drop it
Avatar
Free online coaching
Improve your chances of getting that interview invitation!
Be the first to explore new Application Security Lead jobs in Johannesburg