Enable job alerts via email!

Manager : Application Security Engineering Lead

A 1L Realization (Pty) Ltd

Johannesburg

On-site

ZAR 300,000 - 400,000

Full time

8 days ago

Job summary

A technology solutions company in Johannesburg is seeking an experienced professional in application security to lead initiatives in embedding security within software delivery. The role demands expertise in secure coding and DevSecOps, along with a proven ability to influence engineering teams and ensure compliance. Strong knowledge of security frameworks and a proactive approach are essential for this position.

Skills

Application Security
Cloud Security
DevSecOps
Secure Coding
Stakeholder Engagement

Education

Bachelors degree in Computer Science, Software Engineering or related field
Postgraduate qualification (MSc in Cybersecurity, MBA)
Security Certifications (CISSP, CISM, CISA)
Application Security Certifications (CSSLP, GWAPT, OSWE)
Cloud Security Certifications (AWS, Azure, GCP)
Job description
Educational Qualifications
  • Bachelors degree in Computer Science, Software Engineering, Information Security, or related field (mandatory).
  • Postgraduate qualification (MSc in Cybersecurity, MBA) advantageous.
  • Professional Certifications (preferred / required) :
  • Security : CISSP, CISM, or CISA.
  • Application Security : CSSLP (Certified Secure Software Lifecycle Professional), GWAPT, or OSWE.
  • Cloud / DevSecOps : AWS / Azure / GCP Security certifications, Kubernetes Security Specialist.
  • DevOps / Agile : SAFe Practitioner, Scrum Master (advantageous).
Relevant Experience
  • 812 years experience in software or security engineering, with at least 35 years in an application security leadership role.
  • Proven track record in embedding security into large-scale enterprise software delivery.
  • Hands-on experience with secure coding, API security, cryptography, and OWASP Top 10.
  • Experience implementing SAST, DAST, IAST, and SCA tools into CI / CD pipelines.
  • Strong exposure to cloud-native architectures, microservices, and containerized environments.
  • Experience managing security audits, regulatory compliance, and third-party risk assessments.
Core Skills & Competencies
  • Deep expertise in application security frameworks, secure SDLC, and DevSecOps.
  • Strong knowledge of threat modelling, risk assessment, and security design reviews.
  • Leadership ability to build and mentor security-focused engineering teams.
  • Excellent stakeholder engagement skills, with the ability to influence engineering and executive leadership.
  • Strong analytical and problem-solving abilities with a proactive, prevention-first mindset.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.