Lead the Application Security team at OpenGov, driving secure development practices and mentoring a high-performing group.
Posted by employer 2 days ago
First seen on Joblaze 14 hours ago
Last verified on the company career page 14 hours ago
What you'll build
Must have
Nice to have
AI in the day-to-day
null
Requirements
Not disclosed in this posting: compensation, work arrangement, visa sponsorship.
Benefits
Joblaze summary
The Manager of Application Security at OpenGov is responsible for leading the AppSec team and implementing security initiatives that integrate industry standards into the development lifecycle. This role requires a strong background in application security, including familiarity with OWASP guidelines and modern security tools. Ideal candidates will have significant experience in security leadership and a collaborative approach to working with cross-functional teams. OpenGov emphasizes a culture of innovation and accountability, making this position suitable for those looking to make a meaningful impact in the public sector.
Joblaze insights
Quick facts
From the original posting
OpenGov is seeking an experienced Manager of Application Security to lead our growing AppSec team. This role blends technical expertise with people leadership, driving a secure-by-design culture across our engineering organization while mentoring and empowering a high-performing team.
You will oversee the strategy and execution of application security initiatives, embedding industry-leading standards such as OWASP into our development lifecycle. The ideal candidate is collaborative, approachable, and an excellent communicator, capable of building trust with engineers, product leaders, and executives alike.
Lead and mentor the Application Security team to drive engagement, growth, and technical excellence.
Build and execute the organization’s application security roadmap to strengthen the security posture of all product suites and APIs.
Champion secure development practices by embedding OWASP ASVS and OWASP Top 10 guidance into coding standards, architecture reviews, and threat modeling.
Oversee the selection, deployment, and integration of AppSec tools (e.g., SAST, DAST, SCA, ASPM) into CI/CD pipelines.
Partner with Engineering, DevOps, and Product to ensure secure coding, design reviews, and vulnerability management processes are followed.
Report on risk metrics, remediation progress, and program effectiveness to senior leadership and stakeholders.
Foster a collaborative, inclusive, and fun team culture that inspires innovation and continuous improvement.
Serve as the AppSec subject-matter expert for internal audits, customer reviews, and compliance (SOC 2, GovRAMP, FedRAMP, etc.).
7+ years of combined experience in Application Security, Software Engineering, or related fields; 3+ years leading or managing security teams.
Deep understanding of OWASP ASVS, OWASP Top 10, and secure software development practices.
Hands-on experience with modern AppSec tools and frameworks (SAST, DAST, SCA, API security, ASPM).
Proven ability to build and motivate high-performing teams, with strong mentoring and coaching skills.
Excellent communication, relationship-building, and stakeholder management abilities.
Strong problem-solving mindset with the ability to influence across technical and non-technical teams.
MA/MS in a technology related discipline
Experience in a SaaS or cloud-native software company.
Familiarity with CI/CD pipelines and security automation.
Knowledge of compliance and regulatory frameworks relevant to software companies (SOC 2, GovRAMP, FedRAMP, etc.).
Certifications such as CSSLP, CISSP, OSWE, or similar AppSec credentials.
Comprehensive healthcare options for individuals and families
Flexible vacation policy and paid company holidays
401(k) with company match
Professional development and growth opportunities
Standard company text repeated across OpenGov's postings is omitted here.
Explore more