Manager - Application and Product Security ( Work Location - Bangalore / Mumbai)

Whitefield, Karnataka, India

Liminal

Create non-custodial multisig wallets for your crypto tokens. Our self-custody wallet platform makes it extremely easy and secure for individuals and businesses to manage their digital assets.

View company page

Position Overview:

We are seeking an experienced Application and Product Security Manager to oversee and manage the security of our cryptocurrency custody platform, associated applications, and product offerings. The Application and Product Security Manager will be responsible for developing and implementing security best practices, conducting security assessments and audits, driving initiatives to enhance the security posture, leading the Red Team program, and managing a team of security professionals. This role will play a critical role in protecting our customers' digital assets and maintaining trust in our platform and products.

Responsibilities:

  • Develop, implement, and maintain application and product security policies, standards, and procedures in alignment with industry best practices and regulatory requirements.
  • Lead and manage projects, team members, and client stakeholders for successful delivery
  • Lead the design and implementation of secure software development lifecycle (SDLC) processes and controls to ensure that security is integrated into all phases of the software development process for both applications and products.
  • Conduct security reviews and assessments of applications and products, identifying vulnerabilities and security weaknesses, and recommending remediation actions to mitigate risks.
  • Collaborate with software development teams to provide security guidance, review code for security flaws, and promote secure coding practices to prioritize the fixing process.
  • Conduct threat modeling of product applications to understand the attack vector and design test cases accordingly. 
  • Oversee the deployment and operation of application security tools and technologies, such as static and dynamic code analysis, web application firewalls (WAF), and runtime application self-protection (RASP) solutions.
  • Monitor and respond to security incidents and breaches affecting applications and products, leading incident response efforts to contain and mitigate the impact of security incidents.
  • Stay updated with emerging threats and vulnerabilities in application and product security, conducting research and analysis to understand evolving risks and developing strategies to address them.
  • Lead the Red Team program, coordinating simulated attacks and penetration tests to identify weaknesses in our security defenses, and collaborating with relevant teams to implement remediation measures.
  • Manage a team of security professionals, providing leadership, mentorship, and guidance to support their professional development and ensure the effectiveness of security operations.
  • Provide security awareness training and guidance to development teams and other stakeholders to promote a security awareness and responsibility culture.

Requirements

  • Bachelor's degree in Computer Science, Information Security, or related field, or equivalent work experience.
  • Certified Offensive Security Certified Professional (OSCP), Certified Secure Software Lifecycle Professional (CSSLP), GIAC Penetration Tester Certification (GPEN), or other relevant certifications preferred.
  • Minimum of 9 years of experience in application and product security, with a focus on red teaming, penetration testing, secure software development, vulnerability management, and threat detection and response.
  • Strong understanding of web application security concepts and technologies, including OWASP Top 10 vulnerabilities, secure coding practices, and web application firewalls (WAF).
  • Experience with security testing tools and techniques, such as static and dynamic code analysis tools, penetration testing, and application security scanning, and different red teaming techniques.
  • Proficiency in programming languages commonly used in web application development, such as Java, Python, or JavaScript.
  • Excellent analytical, problem-solving, and communication skills, with the ability to effectively communicate technical concepts to non-technical stakeholders.
  • Strong leadership and project management skills, with the ability to effectively lead and coordinate cross-functional teams and initiatives.

Benefits

Best in Class Salary

At Liminal, we appreciate the good talent, and ensure that our employees are compensated with the salary brackets that are best in the industry.

15-Day Salary

No need to wait till the end of the month anymore! Get your salary credited every 15 days.

Flexi-hours

We don’t like to micromanage. We believe it's impolite to ask employees to punch in & out or follow similar activities to track the number of working hours. We trust our employees to get the job done and achieve the identified goals.

‍ESOP

A liberal ESOP policy, ensures that every employee remains motivated toward the success of the organisation and does not take this as any other job task. By adopting an excellent ESOP policy, we want to ensure that our employees benefit immensely from the growth of the organisation.

Liminal Book Club

Liminalites believe in the power of reading. Whether fiction or non-fiction, reading habits can fetch maximum ROI on time and money invested. You can raise a request for a book, and it will be delivered to your doorstep. No need to return or share, it’s yours to keep forever.

Health Insurance

We care for our beloved Liminalites. Our health insurance provides comprehensive coverage to our employees and their spouses and dependent children.

Lifetime free access

Liminal employees receive lifetime free access to the Liminal Vaults platform even after they decide to move on. Employees will additionally get Trezors / Ledgers at zero cost as a part of their onboarding. You can enjoy the benefits of the software as well as the hardware for free.

Best in Class Devices and Subscriptions

Get the best devices and tools you need to deliver your work. We provide the best subscriptions to ensure the highest levels of work efficiency.

HealthyMe Program

The challenge consists of completing exercise of any sort (physical/ mental/ walk /run /cycle / any sport/ game) consecutively for 30 days for 30 minutes, 4 times within the 6 months and receive a monetary reward of $30 for each 30-day streak.

1Password Account

1Password is a password manager and digital vault that helps users store, manage and secure their passwords, credit cards, personal information and other sensitive data. The platform will help our employees generate strong and unique passwords, and then store and autofill them across their devices and apps with a single click.

Employee Referral

Under the Referral Bonus Program our employees can earn incentives to introduce new talent to the organisation. The referral bonus will be credited to the employee account once the candidate completes 3 months with Liminal.

Growth Gateway Program

We believe in personal and professional growth, and we want our employees to have the tools they need to succeed. We offer a wallet of USD 400 that can be used to enrol in any learning program or certification that you desire.

Bouquet of Apps

Not just Netflix, let’s enjoy more wonderful applications. We all need a little extra help sometimes, which is why we offer a bouquet of apps covering health, knowledge, entertainment, and finance. Use any of these apps and receive a reimbursement of USD 15 per month.

Culture:

We Are Liminal

At Liminal, we’re building the best home for digital assets. Making them secure and efficient every day!
As a team, we thrive to inspire and push you to live your dream and build a technology that challenges the status quo.

We Enable

Liminal is where crypto-native citizens live. We wish to make digital assets accessible, simple, transparent, and secure.

Ambitious

We are an ambitious team of individuals who are chasing the Big Hairy Audacious Goals (BHAG) and we work with full authority. There are no right or wrong decisions, but only timely or late decisions.
Thus, we execute with great speed. We think, we create, we deliver, and we drive innovation.

Emotionally Intelligent

Successful companies are built on strong and positive emotions, and we aim to drive this internally. Emotional intelligence leads to impactful results.
There may be tough days or even months, but we make sure we pull each other through a great and successful quarter. As a team, we celebrate even the small wins together.

Goal-Oriented

We focus on the goal, and we ensure that the journey is fruitful too. We learn from each other’s experiences, whether success or failure, each chapter adds to a takeaway which is a useful lesson.
We share, express, and aim to achieve the planned outcome together as a team.

Appreciative

As a team, we are thankful to have each other's back. We are kind when we give feedback, and we take feedback positively. Liminal’s motivating culture to showcase one’s work, and share appreciation, sets us apart from others.


Process Driven

Seamless workflow between the team is the secret ingredient. We take ownership of our work, and ensure its delegated with due diligence and automated in time.

“It’s not about 500 people, but 500X people that makes the difference. And, this is what we follow at Liminal.”


We Grow Together

This is the best time to join Liminal. We’re building a team that is shaping the future of secured digital transactions. This learning experience will not just enhance your professional profile, but also add value to your personal growth.


Collaborative Work Environment

We spend most of our time at work, finding answers to problems or building solutions, and hence it becomes imperative to ensure that we enjoy our time at work. We take pride in the lively culture that we have built at Liminal.

Apply now Apply later
  • Share this job via
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Application security Audits Code analysis Computer Science Crypto Finance Firewalls GIAC GPEN Incident response Java JavaScript Offensive security OSCP OWASP Pentesting Product security Python Red team SDLC Security assessment Threat detection Vulnerabilities Vulnerability management

Perks/benefits: Career development Flex vacation Health care Salary bonus Team events

Regions: Asia/Pacific Europe
Country: India
Job stats:  6  1  0
Category: Leadership Jobs

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.