Application Security Manager jobs in United States
cer-icon
Apply on Employer Site
company-logo

Corebridge Financial · 2 months ago

Application Security Manager

Corebridge Financial is a company that partners with financial professionals to enhance people's financial lives. They are seeking an Application Security Manager to lead their DevSecOps function, overseeing a team to embed security in the software development lifecycle and integrate AI-driven tools for secure development practices.

Financial ServicesInsuranceLife Insurance
check
H1B Sponsor Likelynote

Responsibilities

Lead the application security program with a focus on securing CI/CD pipelines, cloud-native apps, and microservices
Manage a team of DevSecOps engineers and security champions across development squads
Develop and implement scalable security tooling, static and dynamic code analysis software composition, and Software Bill of Material
Integrate AI and machine learning tools for threat modeling, code analysis, and anomaly detection
Collaborate with development, infrastructure, and product teams to ensure secure architecture and coding practices
Establish AppSec policies, threat modeling frameworks, and secure coding guidelines
Build metrics and reporting to track the effectiveness of AppSec initiatives and risk posture
Evaluate and implement AI-based AppSec tools and integrations within the DevSecOps toolchain
Lead incident response and secure code review processes for critical applications
Act as the primary point of contact for application security audits and compliance initiatives

Qualification

Application SecurityDevSecOps AutomationCloud-native ArchitecturesAI-driven Security ToolsSecure Coding PracticesCI/CD PlatformsInfrastructure-as-CodeThreat ModelingIncident ResponseCompliance InitiativesTeam ManagementSoft Skills

Required

7+ years of experience in application security, including 2+ years managing security teams
Strong knowledge of secure coding practices in modern languages (e.g., Python, Java, JavaScript, Go)
Experience deploying and managing AppSec tools such as SAST, DAST, SCA, IaC scanners, Application Security Posture Management (ASPM) and secrets detection tools
Hands-on experience in CI/CD platforms (e.g., GitHub Actions, GitLab CI, Jenkins, Azure DevOps)
Solid understanding of cloud-native architectures (AWS/GCP/Azure), containers (Docker), and orchestration (Kubernetes)
Experience with Infrastructure-as-Code (e.g., Terraform, CloudFormation) and securing DevOps pipelines
Familiarity with AI-driven AppSec tools for vulnerability management, threat detection, and LLM-assisted secure code review
Experience with LLMs (e.g., OpenAI GPT, Gemini) for code analysis, threat modeling, secure coding guidance or vibe coding
Understanding of prompt engineering, model fine-tuning, or integrating AI APIs into security workflows
Bachelor's degree in a relevant field or proven record of experience in Information Technology and Cyber Security roles
Certifications: OSCP – Offensive Security Certified Professional (Required or strong preference)

Preferred

OSWE – Offensive Security Web Expert (Preferred)
CISSP – Certified Information Systems Security Professional (Preferred)
GPEN – GIAC Penetration Tester (Preferred)
AI/ML Certifications – e.g., Microsoft AI-102, Google Cloud ML Engineer, or similar (Bonus)
Bonus: Experience in AI security (e.g., adversarial ML, model poisoning, AI system threat modeling)
Bonus: Experience in SAP Security, code review, vulnerability management, and threat monitoring

Benefits

Health and Wellness: We offer a range of medical, dental and vision insurance plans, as well as mental health support and wellness initiatives to promote overall well-being.
Retirement Savings: We offer retirement benefits options, which vary by location. In the U.S., our competitive 401(k) Plan offers a generous dollar-for-dollar Company matching contribution of up to 6% of eligible pay and a Company contribution equal to 3% of eligible pay (subject to annual IRS limits and Plan terms). These Company contributions vest immediately.
Employee Assistance Program: Confidential counseling services and resources are available to all employees.
Matching charitable donations: Corebridge matches donations to tax-exempt organizations 1:1, up to $5,000.
Volunteer Time Off: Employees may use up to 16 volunteer hours annually to support activities that enhance and serve communities where employees live and work.
Paid Time Off: Eligible employees start off with at least 24 Paid Time Off (PTO) days so they can take time off for themselves and their families when they need it.

Company

Corebridge Financial

twittertwittertwitter
company-logo
Corebridge Financial is a providers of retirement solutions and insurance products. It is a sub-organization of AIG.

H1B Sponsorship

Corebridge Financial has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (1)
2024 (1)

Funding

Current Stage
Public Company
Total Funding
$10.25B
Key Investors
Nippon Life Insurance Company of Japan
2025-11-04Post Ipo Secondary· $1B
2025-08-06Post Ipo Secondary· $1B
2024-11-07Post Ipo Secondary· $936M

Leadership Team

leader-logo
Alan Colberg
Lead Independent Director and Chair Nominating and Corporate Governance Committee
linkedin
leader-logo
Ryan Vickerman
Digital Creative Director
linkedin
Company data provided by crunchbase