Acrisure · 1 day ago
Lead Application Security Engineer
Acrisure is a global fintech leader that connects clients with customized solutions across various sectors. The Lead Application Security Engineer will own and grow the application security program within a regulated financial services environment, collaborating with development teams to integrate security into the software development lifecycle and champion secure coding practices.
Financial ServicesInsuranceInsurTech
Responsibilities
Lead the organization’s Application Security (AppSec) program with a focus on continuous improvement and measurable outcomes
Define and enforce AppSec strategy, roadmap, and KPIs in alignment with enterprise security goals
Collaborate with software engineering teams to integrate security controls, best practices, and policies throughout the SDLC
Promote a "security by design" culture by coaching and mentoring developers on secure coding practices
Support threat modeling, secure code reviews, and security architecture discussions
Implement, configure, and maintain application security tooling (SAST, DAST, SCA, IaC scanning, container security)
Integrate security checks into CI/CD pipelines using GitHub and other platforms
Evaluate emerging technologies and recommend tools that enhance automation and scalability
Partner with SOC analysts to investigate application-layer alerts, incidents, and vulnerabilities
Track and report key security metrics, including vulnerability remediation timelines, pipeline coverage, and compliance with policies
Provide executive reporting and actionable insights on AppSec maturity and risk reduction progress
Qualification
Required
Strong knowledge of application security concepts, secure coding practices, and common vulnerabilities (e.g., OWASP Top 10)
Hands-on experience with security testing tools such as SAST, DAST, SCA, fuzzing, and API testing platforms
Proficiency with GitHub or similar development platforms and integration of security into CI/CD pipelines
Ability to evaluate and implement automation strategies for AppSec processes
Comfortable working directly with developers, architects, product owners, and other stakeholders
Experience presenting complex security findings to both technical and non-technical audiences
Strong leadership and mentoring abilities to encourage adoption of secure development practices
Familiarity with SOC operations, incident response workflows, and integrating AppSec into broader enterprise security practices
Understanding of vulnerability management and risk prioritization processes in large organizations
5+ years of professional experience in information security with a focus on application security
Proven experience leading security initiatives at scale in enterprise environments, ideally within financial services or other highly regulated industries
Preferred
Previous experience as a developer or working closely with software development teams is strongly preferred
Certifications such as GWAPT, GWEB, CSSLP, OSWE, or other relevant industry credentials are a plus
Benefits
Comprehensive medical insurance
Dental insurance
Vision insurance
Life and disability insurance
Fertility benefits
Wellness resources
Paid sick time
Generous paid time off and holidays
Employee Assistance Program (EAP)
Complimentary Calm app subscription
Immediate vesting in a 401(k) plan
Health Savings Account (HSA)
Flexible Spending Account (FSA) options
Commuter benefits
Employee discount programs
Paid maternity leave
Paid paternity leave (including for adoptive parents)
Legal plan options
Pet insurance coverage
Company
Acrisure
Acrisure offers financial services solutions for insurance, reinsurance, real estate, cyber services, and asset and wealth management.
H1B Sponsorship
Acrisure has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (1)
2022 (2)
Funding
Current Stage
Late StageTotal Funding
$11.37BKey Investors
Bain Capital Special SituationsAbu Dhabi Investment AuthorityBDT & MSD Partners
2025-06-06Debt Financing· $550M
2025-05-20Private Equity· $2.1B
2024-06-05Debt Financing· $1.6B
Recent News
Company data provided by crunchbase