Application Security Engineering Manager
CurrentAfter successfully building the Application Security program from the ground up as the first AppSec hire, I was promoted to Manager of the Application Security team. In this leadership role, I oversee the strategic direction of application security initiatives and manage a team of skilled security engineers dedicated to protecting the organization's assets and minimizing business risk.- Team Leadership and Development: Lead, mentor, and grow a team of application security engineers, fostering a culture of continuous learning and professional development.- Program Expansion: Continue to evolve the Application Security program by integrating advanced security methodologies and technologies, ensuring it scales with the company's growth.- Policy Oversight: Oversee the development and implementation of security policies, standards, and procedures to maintain compliance with industry regulations and enhance the organization's security posture.- Internal Tooling: Guide the design and development of sophisticated internal security tools that automate vulnerability detection, code analysis, and security monitoring, improving efficiency across security operations.- Risk Management: Lead comprehensive threat modeling and risk assessment initiatives to proactively identify potential security threats and develop effective mitigation strategies.- Bug Bounty Program Management: Oversee the company's bug bounty program, coordinating with external researchers to identify and remediate vulnerabilities promptly.Key Achievements:- Expanded the Application Security team by recruiting top talent, resulting in a dramatic improvement in vulnerability remediation times.- Implemented strategic security initiatives that reduced critical vulnerabilities, significantly minimizing business risk.- Achieved compliance with major industry standards and successfully passed all external security audits under my leadership.