Application Security Manager
Talent Groups ·www.talentgroups.com
Apply direct
Hybrid Details: Greater Boston Area, MA - Onsite/Remote
Duration: 12 months to start
Summary (Job Overview):
The client is looking for a Security manager who will be responsible for ensuring the security of the company's infrastructure, networks, data and applications. Application Security manager will ensure that applications and services of an organization are secured and implemented with best security practices following the organization’s governance model.
Job Duties (Detailed Statement of Duties and Responsibilities):
Required Skills (Special Skill Set, Abilities, Knowledge):
Qualifications (Education, Years’ Experience, Certificates):
#LI-Hybrid
Duration: 12 months to start
Summary (Job Overview):
The client is looking for a Security manager who will be responsible for ensuring the security of the company's infrastructure, networks, data and applications. Application Security manager will ensure that applications and services of an organization are secured and implemented with best security practices following the organization’s governance model.
Job Duties (Detailed Statement of Duties and Responsibilities):
- Implement Data Security Management and Operation models.
- Establish various security compliance standards including (but not limited to) NIST(National Institute of Standards and Technology), FIPS(Federal Information Processing Standards), FedRAMP(Federal Risk and Authorization Management Program)
- Engage with agency Privacy and Security office teams to exchange Compliance reports and obtain approvals as necessary.
- Involve with auditors as necessary to provide compliance reports as requested and implement mitigation steps as required.
- Implement process and tools for application vulnerability testing(SAST/DAST).
- Establish and manage a vulnerability management including coordination of penetration testing and ongoing vulnerability remediation, tracking, and security compliance reporting.
- Setup requirements for penetration testing and engage with vendors and agencies to perform/report pen tests.
- Setup infrastructure audits and reports with the help of system admins and vendors as necessary.
- Maintaining the system integrity and security by following the industry standard IT Controls
- Implement automation of systems administration and software migration for QA and Production
- Develop relationships with QA and application teams to establish quality and application compliance based on Organization standards.
- Provide architecture and configuration recommendations to ensure hosted/deployed environments are security and best practices compliant.
- Provide technical assistance/recommendations to agency users and other agency personnel.
- Evaluate security and audit tools and support them as necessary.
- Identify and successfully troubleshoot problems in all environments and work across teams to ensure problems get resolved in a timely manner
- Available for off-hour incidents and provide 24x7 on-call production support on a rotation basis
- Provide training to teams on security and compliance as necessary
- Work towards continuous process improvements.
Required Skills (Special Skill Set, Abilities, Knowledge):
- In-depth knowledge and experience working with common regulatory framework applications related to data security, including HIPAA, HITRUST, - General Data Protection Regulation (GDPR), National Institute of Standards & Technology (NIST) standards, and similar constructs are highly desired.
- Previous knowledge and experience in designing and architecting information technology and security controls across complex and diverse networks, applications, and infrastructures are strongly preferred.
- Technical aptitude, critical thinking skills, and the ability to think outside the box.
- Demonstrated ability to solve complex information security problems, observe security risks and weaknesses, and provide security recommendations to the respective project and delivery teams.
- Ability to translate technical risk issues to business leaders and upper management.
- Excellent verbal, written, and interpersonal communication skills.
- Detail-oriented and value teamwork.
- Ability to resolve problems as they arise and handle situations expediently.
- Must be able to work a flexible schedule according to business needs, including evenings, weekends, and holidays.
Qualifications (Education, Years’ Experience, Certificates):
- 10+ years of IT experience with at least 5+ years as a Security Manager/officer.
- Bachelor's degree in Information Technology or computer science or related field or equivalent experience.
- Preferred: AWS security and compliance. Security certifications, e.g., CISSP, CISA, CISM, CCSP.
#LI-Hybrid
Frequently asked questions
Who is hiring for the Application Security Manager role?
Talent Groups is hiring for the Application Security Manager position, a Shazamme client. Apply directly on the employer's career site.
Where is the Application Security Manager job located?
The Application Security Manager role with Talent Groups is based in Quincy, MA, US. The role is remote-friendly.
Is the Application Security Manager role remote?
Yes — the Application Security Manager position at Talent Groups is remote. Candidates based in US are preferred.
What does the Application Security Manager role pay?
Talent Groups lists the Application Security Manager role at USD 54–64 per hour.
Is the Application Security Manager role full-time or contract?
This is a full time position at Talent Groups.
What experience level is the Application Security Manager role?
The Application Security Manager position is aimed at mid-level candidates.
How do I apply for the Application Security Manager role at Talent Groups?
Apply directly on Talent Groups's career page via the Apply button on this listing. ZammeJobs links straight through to the employer's ATS — no third-party form, no resume database.