TG IT Application Security Manager
Listed on 2026-09-25
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Requisition : 35487
At Terumo Blood and Cell Technologies, our 8,000+ global associates proud to come to work each day, knowing that what we do impacts the lives of patients around the world.
For Terumo, for Everyone, Everywhere.
We make medical devices and related products that are used to collect, separate, manufacture and process various components of blood and cells. With our innovative technologies and service offerings, we touch a patient's life every second of every day and are committed to continuing to increase the number of patients we serve.
Advancing healthcare with heart.
With some of the best and brightest minds in the industry, an unmatched global footprint, comprehensive benefits and a distinct culture, Terumo Blood and Cell Technologies is a great place to work, grow and be part of a team that is focused on making a difference.
Join us and help shape wherever we go next. You create your future and ours.
Enterprise Application Portfolio - The Application Security Manager is responsible for leading the organization's Application Security program, ensuring that security is integrated throughout the Application Cycle (SDLC). This role partners closely with the software teams, cloud, architecture, infrastructure, and potentially product teams to identify, assess, and mitigate application security risks while enabling secure software delivery.
The successful candidate will lead a team of application security analysts, establish secure development standards, oversee security testing programs, and drive adoption of security best practices aligned with industry standards such as NIST SP 800-218 (Secure Software Development Framework), NIST Cybersecurity Framework (CSF) 2.0, OWASP, and CIS Controls.
Employment Type: Full-time
Department: Global Cybersecurity
Role
Reports to:
Security Operations Leader
Location: Americas
Work Arrangement: Hybrid
Scope: Regional
ESSENTIAL DUTIES (or key responsibilities) Application Security Leadership- Collaborate with other global and regional leaders within to develop the enterprise Application Security strategy.
- Lead, mentor, and develop Application Security Analysts.
- Define App Sec metrics, KPIs, and maturity goals in collaboration with regional and global security leaders.
- Integrate security into all phases of the enterprise application portfolio.
- Ensure security requirements are incorporated during design and architecture reviews.
- Promote security-by-design principles across application teams.
Manage and oversee:
- Static Application Security Testing (SAST)
- Dynamic Application Security Testing (DAST)
- Software Composition Analysis (SCA)
- Interactive Application Security Testing (IAST)
- API Security Testing
- Container Security
- Infrastructure as Code (IaC) Security
- Mobile Application Security Testing
- Secrets Detection
- Review findings, prioritize remediation, and validate fixes.
- Assist in Supply Chain Security
- Facilitate threat modeling sessions with development teams.
- Identify abuse cases and attack paths.
- Recommend architectural improvements.
- Ensure high-risk applications undergo formal security architecture reviews.
- Establish application vulnerability management processes
- Prioritize remediation using risk-based methodologies
- Track remediation SLAs
- Report vulnerability metrics to executive leadership
- Coordinate penetration testing remediation activities
- Threat Intelligence
Support secure development within cloud platforms including:
- AWS
- Microsoft Azure
- Google Cloud Platform
- Conduct manual secure code reviews
- Review high-risk applications
- Provide secure coding guidance
- Coach development teams on remediation
- Establish…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).