Job Closed
This listing is no longer active.
Every payment. Every time.
Senior Manager, Application Security
Location
California
Posted
94 days ago
Salary
$200K - $230K / year
Seniority
Senior
Job Description
Senior Manager, Application Security
PayNearMe
• Lead the Application Security team, including hiring, mentoring, and performance management. • Define and execute the Application Security roadmap aligned with business priorities and regulatory obligations (e.g., PCI, SOC 2). • Partner closely with Engineering, Product, QA, Infrastructure, and DevOps leadership to embed security early in the SDLC. • Oversee security design reviews and code security reviews across: Go-based microservices Ruby-based monolith applications. • Provide technical guidance on secure architecture decisions in a cloud-first (AWS) environment. • Own and continuously improve the organization’s threat modeling framework and ensure it’s embedded in new feature development and architectural changes. • Ensure SAST and SCA tooling is integrated into CI/CD and appropriately tuned to reduce false positives. • Drive meaningful reporting dashboards for Development and Engineering leadership. • Establish and operationalize a risk-based vulnerability prioritization framework and scoring rubric aligned with OWASP guidance and applicable industry standards. • Act as a trusted advisor to Engineering leadership and influence architectural decisions that reduce systemic risk.
Job Requirements
- 8+ years of experience in Application Security or Secure Software Engineering
- 3+ years leading or managing technical security teams
- Strong hands-on experience with Ruby (Rails) application security
- Strong hands-on experience with Go (Golang) application security
- Deep knowledge of Secure SDLC practices
- Deep knowledge of Threat modeling methodologies (e.g., STRIDE, attack trees)
- Familiarity with SAST and SCA tools and rule tuning
- Understanding of OWASP Top 10 and API Security Top 10
- Experience integrating security tools into CI/CD pipelines
- Familiarity with cloud-native application security in AWS environments
- Strong understanding of microservices security patterns (service-to-service auth, token handling, API gateways, etc.)
- Strong communicator capable of influencing senior engineering leaders.
Benefits
- Competitive salary and benefits with growth-company options grant
- Fast- paced and professional work culture
- Stock options with standard startup vesting - 1 year cliff; 4 years total
- $50 monthly communication expense stipend to go towards your phone/internet bill
- $250 stipend to enhance your WFH setup
- Reimbursement for peripheral equipment: monitor (up to $400), keyboard and mouse (up to $200)
- Premium medical benefits including vision and dental (100% coverage for employees)
- Company-sponsored life and disability insurance
- Paid parental bonding leave
- Paid sick leave, jury duty, bereavement
- 401k plan
- Flexible Time Off (our team members typically take off ~3-4 weeks per year)
- Volunteer Time Off
- 13 scheduled holidays
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Agir comme point de contact principal pour toutes les thématiques sécurité. • Superviser les activités RUN et projets liées à la cybersécurité. • Coordonner les équipes techniques, projets et métiers impliquées. • Organiser et animer les comités de suivi, comités de pilotage et réunions clients. • Assurer un reporting régulier et structuré : KPI, risques, incidents, plans d’actions. • Suivre et améliorer en continu les indicateurs de performance (SLA, KPI).
Physical Security Project Manager
Allied UniversalAllied Universal, founded in 2016 with the merger of AlliedBarton Security Services and Universal Services of America, is now a widely-recognized industry leader and North America�
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description Allied Universal is looking to hire a Physical Security Project Manager. This position is responsible for working with our clients corporate leaders to evaluate the company’s threat and risk conditions. This role will work closely with functional stakeholders and corporate leadership to enhance systems detection and deterrence capabilities with an eye to the reduction of corporate risk and exposure. They will effectively communicate the company’s asset protection status, relevant performance data and recommendations including detailed budgeting and facility/project management implications. - Works with functional team members to evaluate the effectiveness of physical security systems and programs around the enterprise. - Performs physical security site surveys at various enterprise locations, determines project scope and develops tailored security solutions. - Leads analysis of security vulnerabilities and system failures, and determines cost-effective countermeasures. - Facilitates multidisciplinary working groups to determine security solutions and mitigate risks. - Conducts field testing and evaluates new and specialized security equipment for the company’s facilities and prepares scope development for competitive purchasing. - Designs integrated physical security controls for a diverse portfolio of real estate assets including medical/clinical, office, call-center, production and retail operations. - Develops training materials and provides on-the-job and classroom instruction to Loss Prevention and other employees. Qualifications - Strong knowledge and understanding of business, financial terms and budgeting practices to support capital projects and operating cost reduction strategies. - Minimum 5 years of experience in project management, design and/or maintaining physical security systems. Lenel On-Guard familiarity a plus. - In-depth knowledge of CCTV systems, intrusion detection systems, and access control systems. - Knowledge of IT network infrastructure including basic hardware and network functionality. - Thorough understanding of the specialized physical security needs of clinical and health care facilities and their associated business offices. - Strong track record of leadership with strong written and oral communication skills. - Ability to prioritize and handle multiple tasks, pay close attention to detail, be well organized, and work successfully in a fast-paced environment. - Proficient computer skills (Word, Excel, PowerPoint). - CAD certification or experience required. - Education: Bachelor degree in Business, finance or project management with a MBA preferred. - Certification: PSP, and/or PMP (mandatory). - Demonstrated ability to take initiative, successfully handle and prioritize multiple competing assignments and effectively manage deadlines. - Must be highly proficient and fully functional in all Microsoft Office applications and able to effectively utilize all available office management technology. - Professional, articulate and able to use good independent judgment and discretion. - Outstanding verbal and written communication skills required with the ability to successfully interact at all levels of the organization while functioning as a team player. Requirements - Must possess a valid Driver’s License with at least one year of driving experience, a clean driving record (no major violations within last 36 months, no more than 1 accident in last 24 months, no more than one minor moving violation in last 24 months), a minimum level of insurance as required by Company policy, and the ability to safely operate a vehicle required. Physical/Mental Requirements and Working Environment - Regularly required to use both hands, frequently required to stand, sit, stoop, talk and hear. - Must be able to read computer screens, correspondence and reports in English. - Must constantly walk, stand, reach with both hands and arms, and must be able to drive a vehicle. - May occasionally lift and/or move up to 25 pounds. - Job is generally performed in an office setting; however, during site visits, may be subject to adverse conditions such as rain, cold or heat for short periods of time. - Ambient noise level is usually quiet, but may occasionally be above-normal for portions of the shift. - Must be able to concentrate on details, work under deadline pressures, apply sound logic and judgment, and prioritize tasks and responsibilities. - Must be able to focus and multi-task in a busy environment, effectively manage multiple employees with diverse personalities. - Must be able to clearly speak, read and write English. Pay Pay between $125,000 - $129,500 / yr Closing Allied Universal® is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race/ethnicity, age, color, religion, sex, sexual orientation, gender identity, national origin, genetic information, disability, protected veteran status or relationship/association with a protected veteran, or any other basis or characteristic protected by law. If you have difficulty using the online system and require an alternate method to apply or require an accommodation, please contact our local Human Resources department. To find an office near you, please visit: www.aus.com/offices. Requisition ID 2026-1543612
Manager – Quantum Safe Cybersecurity Program (Remote)
Zions BancorporationA financial services company headquartered in Salt Lake City, Utah, Zions Bancorporation specializes in Small Business Administration (SBA) lending, agricultura
Zions Bancorporation’s Enterprise Technology and Operations (ETO) team is transforming what it means to work for a financial institution. With a commitment to technology and innovation, we have been providing our community, clients and colleagues with the best experience possible for over 150 years. Help us transform our workforce of the future, today. We are seeking a seasoned cybersecurity leader to build and run our enterprise Quantum‑Safe Program. This role will own the strategy, roadmap, and delivery of post‑quantum cryptography (PQC) and quantum‑safe networking initiatives, partnering closely with Network Engineering, AppSec, Cloud Platform, and Enterprise Architecture. You will drive cryptographic modernization, govern algorithm agility, secure R&D environments, and ensure our controls, standards, and services are future‑ready for quantum threats—balancing business enablement with risk management. Key Responsibilities - Enhance and lead the implementation of a multi‑year quantum‑safe strategy covering PQC migration, algorithm agility, key management modernization, and quantum‑safe networking. - Oversee the partnership between cybersecurity and technology teams to maintain the crypto inventory (protocols, libraries, certificates, keys, HSMs, KMS, embedded/IoT) and a risk‑based prioritization for remediation. - Partner with platform and product teams to upgrade TLS/SSH/IPsec stacks, enable algorithm agility, and adopt vetted PQC libraries and configurations. - Align outcomes with industry best practices and internal cyber/tech controls, lead policy updates for crypto agility, key lifecycles, and certificate governance. - Support documentation and evidence for risk management, control validation, and accreditation efforts in partnership with GRC. - Engage with vendors and partners (HSM/KMS, PKI, networking, cloud) to evaluate quantum‑safe capabilities; run RFPs/POCs and manage deliverables. - Define and oversee a strategy for third-party PQC assurance (vendors and customers) including proof of capability, PQC readiness, and ongoing assessment and validation. - Collaborate with the Cyber Threat Intelligence team to provide regular risk assessment and analysis to management based on the evolving state of quantum computing, threats, capabilities, and risks. - Define and track program KPIs: crypto inventory coverage, PQC adoption rate, TLS posture remediation, key lifecycle compliance, lab audit pass rates, and incident reduction. Required Qualifications, Capabilities, & Skills - 8+ years in cybersecurity, network security, or secure systems engineering; 3+ years in technical leadership or program management. - Proven delivery of technical software/network projects from design through deployment, maintenance, and support. - Technical proficiency with networking protocols and architectures (TLS/SSH/IPsec, routing/segmentation, service mesh/mTLS) and one or more programming languages (Go, Rust, Java, Python). - Solid understanding of cryptography and PKI (certificates, CAs, HSMs/KMS, key lifecycles) and modern cloud security practices. - Experience collaborating with interdisciplinary R&D teams and operating across cross‑functional stakeholders. - Bachelor’s degree in Computer Science, Cybersecurity, Computer/Network Engineering, IT, or related field. Plus - Hands‑on experience implementing PQC (e.g., migration planning, algorithm agility, library selection) and/or quantum key distribution (QKD) solutions or evaluations. - Experience with cryptography‑centric libraries/applications (e.g., OpenSSL/BoringSSL, liboqs), HSM/KMS, and certificate management at enterprise scale. - Background adopting emerging tech (AI, blockchain, quantum) in regulated industries (finance, telecom, high‑tech). - Experience with cloud architecture (AWS/Azure/GCP), key management strategies, and secure deployment pipelines (Kubernetes, service mesh). - Familiarity with secure software development, digital forensics, or penetration testing and associated control frameworks. - Graduate degree in CS/CE/IT or related discipline; certifications such as CISSP, CISM, CCSP, CEH, OSCP (or equivalent) are a plus. Core Competencies - Strategic program leadership; outcome‑oriented delivery. - Deep technical fluency in crypto, PKI, and network security; ability to make pragmatic build/buy decisions. - Strong stakeholder influence and vendor management. - Excellent communication—able to convey complex concepts to varied audiences. - Bias for action in fast‑paced, shifting priorities; thoughtful risk‑taking. - Commitment to inclusive collaboration and talent development. Pay Range: $160,000 - $210,000 $ (Based upon relatable skills/experience) Work Location: This position can be located 100%25 remote within the United States or fully in office (5 days a week) if you are within 50 miles of the new Zions Technology Center in Midvale, UT. Benefits: - Medical, Dental and Vision Insurance - START DAY ONE! - Life and Disability Insurance, Paid Parental Leave and Adoption Assistance - Health Savings (HSA), Flexible Spending (FSA), and dependent care accounts - Paid Training, Paid Time Off (PTO) and 11 Paid Federal Holidays - 401(k) plan with company match, Profit Sharing, competitive compensation in line with work experience - Mental health benefits including coaching and therapy sessions - Tuition Reimbursement for qualifying employees - Employee Ambassador preferred banking products - Employees may, at the company’s discretion, be eligible to receive a cash bonus award
Senior Manager, Information Security Officer
PaytientPaytient enables people to live better lives by improving their ability to access and afford care. The company’s technology gives Americans the money they need to pay for healthc
About Paytient: We’re on a mission to help people better access and afford care. Every day, millions of people, and their loved ones, need to see a doctor. For most of us, that moment is an uncertain one - we’re unsure of what’s wrong, who to go to, how long it’ll take to be seen, when we’ll feel better, and what it’ll cost. Paytient partners with thoughtful employers and health plans who understand the impact of that moment and want to ensure that every one of their plan members are easily able to access and afford care. Our clients understand that an improved ability to self-pay for care changes patient behavior and creates value for the health plan. This founding belief is becoming an emerging standard of care in health plan design and is now, in fact, a mandatory capability in some governmental health plans. Founded in 2018, Paytient is now part of nearly 6,000 employer health plans and providing certainty that people are better able to access and afford care. We’re looking for passionate, collaborative builders to join our team and help us create a future where everyone can more easily access and afford care. About the Role This is a hands-on role for a highly motivated and experienced Information Security Officer. In this quickly developing organization, you will be expected to be a strong team player who can also independently drive key security initiatives as the information security department matures. This role requires a blend of technical expertise and managerial experience. You will not only have a deep understanding of information security but also be comfortable working cross-functionally with various internal teams and external vendors. You'll be instrumental in developing and maintaining our security posture, aligning technical capabilities with business needs, and ensuring compliance with a range of industry standards. We operate on a "remote with roots" model, which means you can work where you thrive, with the ability to gather as needed at our home office in Columbia, Missouri. This position is open to candidates located anywhere in the continental U.S., with the exception of Montana. What You'll Do - Develop and implement security policies, standards, and procedures in collaboration with relevant teams to protect organizational data and systems. - Document data architecture, integrations, and security controls, ensuring ongoing maintenance and adherence to security best practices. - Manage and lead an Information Security team, partnering with key stakeholders in IT, Technologies and other parts of the business as needed. - Continuously analyze and anticipate enterprise-wide security needs, including threat detection, incident response, and capacity planning. - Manage organizational security tools, including zero-trust access tools, to support secure authentication (e.g., SSO, O-Auth) and access control across all applications. - Oversee the management of MDM suites across Windows, Mac, and mobile devices, including inventory management, software deployment, and endpoint security policies. - Conduct continuous analysis of security processes, technologies, and vendors to identify and implement improvements that enhance our security posture. - Monitor vendors to ensure they meet security requirements and provide the best possible service and value via Third Party Risk Reviews and other needed processes. - Develop and conduct security training for employees to promote a security-aware culture. - Document support models for endpoints, cloud assets, mobile devices, and SaaS applications (e.g., Okta, Google Workspace), focusing on secure configuration and maintenance. - Prepare cost-benefit analyses for security upgrades and new technologies. - Ensure that our security measures and technical capabilities align with audit standards, such as SOC2 and NIST. - Follow standards set for Information Security Officer as set forth in NIST 800-53 - Efficiently manage our security software and hardware inventory, including licensing and cost management. What You'll Bring - At least three years of experience in a role focused on information security, with a strong emphasis on endpoint management in a zero-trust environment. - A proven track record of troubleshooting, documentation, and managing information security policies and best practices. - Strong practical knowledge of scripting, programming, encryption, and digital security. - In-depth understanding of network architecture and security principles, including cloud-based security (e.g., cloud access security brokers, firewalls, and security monitoring). - Expertise in SaaS application operations, integrations, and secure onboarding, particularly with platforms like Google Workspace. - Experience with and deep knowledge of security frameworks and compliance standards, such as ITIL, SOC2, NIST SP 800-171, PCI, and HIPAA. - Excellent communication, interpersonal, and leadership skills, with the ability to manage conflict and provide effective guidance. - Superior problem-solving, critical thinking, and decision-making abilities. - Great project management skills, including organization, planning, time management, and prioritization. - Excellent attention to detail and a customer service mindset. Why You’ll Love Working at Paytient We believe health care access should never be a source of stress or hardship—and we’re building tools to make that belief a reality. Join a mission-driven team with competitive benefits, flexible work, and a culture rooted in trust, autonomy, and impact. Benefits We Offer for Full-Time Roles: - Medical, dental and vision insurance - $4,400 annual HSA contribution - Paytient Health Payment Account (HPA) - Monthly lifestyle spending stipend - Five weeks of annual PTO - Week-long fully paid 'summer break' for all employees! - Ten weeks of bonding leave for new parents - Two weeks of caregiver leave - Employer paid short-term and long-term disability - 401k plan access with a 4% employer match - Stock options in Paytient - ...and more! Paytient is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. ⚠️ Important Notice ⚠️ Please note that all official Paytient recruiting emails come from @paytient.com. If you receive emails from any domain other than @paytient.com, do not respond and report it to us immediately.



