Barclays · 3 hours ago
Head of Application Security
Barclays is a leading financial services company, and they are seeking a Head of Application Security to oversee and manage security controls to protect the bank from cyber-attacks. The role involves monitoring security systems, identifying emerging threats, and managing cyber security incidents while providing strategic input to function-wide initiatives.
BankingConsumerFinancial ServicesWholesale
Responsibilities
Management of security monitoring systems, including intrusive prevention and detection systems, to alert, detect and block potential cyber security incidents, and provide a prompt response to restore normal operations with minimised system damage
Identification of emerging cyber security threats, attack techniques and technologies to detect/prevent incidents, and collaborate with networks and conferences to gain industry knowledge and expertise
Management and analysis of security information and event management systems to collect, correlate and analyse security logs, events and alerts/potential threats
Triage of data loss prevention alerts to identify and prevent sensitive data for being exfiltrated from the banks network
Management of cyber security incidents including remediation & driving to closure
To manage a business function, providing significant input to function wide strategic initiatives. Contribute to and influence policy and procedures for the function and plan, manage and consult on multiple complex and critical strategic projects, which may be business wide
They manage the direction of a large team or sub-function, leading other people managers and embedding a performance culture aligned to the values of the business. Or for an individual contributor, they lead organisation wide projects and act as deep technical expert and thought leader, identifying new ways of working and collaborating cross functionally. They will train, guide and coach less experienced specialists and provide information affecting long term profits, organisational risks and strategic decisions
Provide expert advice to senior functional management and committees to influence decisions made outside of own function, offering significant input to function wide strategic initiatives
Manage, coordinate and enable resourcing, budgeting and policy creation for a significant sub-function
Escalates breaches of policies / procedure appropriately
Foster and guide compliance, ensure regulations are observed that relevant processes in place to facilitate adherence
Focus on the external environment, regulators, or advocacy groups to both monitor and influence on behalf of Barclays, when appropriate
Demonstrate extensive knowledge of how the function integrates with the business division / Group to achieve the overall business objectives
Maintain broad and comprehensive knowledge of industry theories and practices within own discipline alongside up-to-date relevant sector / functional knowledge, and insight into external market developments / initiatives
Use interpretative thinking and advanced analytical skills to solve problems and design solutions in often complex/ sensitive situations
Exercise management authority to make significant decisions and certain strategic decisions or recommendations within own area
Negotiate with and influence stakeholders at a senior level both internally and externally
Act as principal contact point for key clients and counterparts in other functions/ businesses divisions
Mandated as a spokesperson for the function and business division
Qualification
Required
10+ years of experience in software security, DevSecOps, or secure SDLC program implementation
Deep understanding of modern SDLC processes, DevOps toolchains, and CI/CD automation (GitLab, GitHub, Jenkins, Azure DevOps, etc.)
Strong knowledge of SSDF, BSIMM, OWASP SAMM, and secure-by-design principles
Demonstrated ability to define governance, metrics, and KRIs for large-scale secure development programs
Proven experience leading global teams and influencing development organizations
Excellent stakeholder-management and communication skills bridging engineering and risk audiences
Preferred
Experience in large, distributed financial-services or fintech environments
Expertise in cloud-native development security, container orchestration (Kubernetes), and infrastructure-as-code (Terraform, Helm)
Familiarity with policy-as-code frameworks and secure change-management integration
Advanced knowledge of SAST/DAST/SCA, open-source risk management, and code-signing pipelines
Certifications such as CISSP, CSSLP, or AWS/Azure DevSecOps specialty
Demonstrated thought leadership
Company
Barclays
Barclays is a transatlantic consumer and wholesale bank with global reach, offering products, and services.
H1B Sponsorship
Barclays has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (621)
2024 (610)
2023 (639)
2022 (720)
2021 (571)
2020 (448)
Funding
Current Stage
Public CompanyTotal Funding
unknown1986-09-09IPO
Leadership Team
Recent News
2026-02-08
2026-02-07
Company data provided by crunchbase