Job Description
Senior /Principal SecOps & AppSec Engineer
Own application security posture and remediation strategy end-to-end, from code through production. Lead security scanning, validate and fix real vulnerabilities, drive dependency and configuration remediation, embed security into CI/CD, and mentor a lean SecOps/AppSec function.
Department: Engineering
Reports To: Director Engineering
Team Size: 1โ2 Direct Reports
Scope: Application Security + SecOps + DevSecOps
Role Overview
The Senior SecOps & AppSec Lead will own both the organizationโs application security posture and its remediation strategy across the software delivery lifecycle. This role is hands-on and execution-focused: the expectation is not only to identify vulnerabilities through tooling and assessment, but to validate exploitability, prioritize risk in business context, and actively drive or implement remediation in code, pipelines, depende...