1

Director Of Devsecops Application Security Jobs

NJ ยท On-site

$80 - $100/hr

Experience & Qualifications * 8-15 years of experience in Application Security, DevSecOps, or Security Architecture. * Experience securing large-scale enterprise applications across cloud and hybrid ...

Support software supply chain security initiatives, including SBOM/SCA validation. * 8-15 years of experience in Application Security, DevSecOps, or Security Architecture. * Experience securing large ...

Cyber Manager - Cloud DevSecOps

Houston, TX ยท On-site

$106K - $143K/yr

Guide integration of Application Security capabilities including SAST, DAST, SCA, secrets scanning, IaC scanning, container security, API security, threat modeling, penetration testing, and ...

Cyber Manager - Cloud DevSecOps

Atlanta, GA ยท On-site

$106K - $144K/yr

Lead the strategy and adoption of AI-enabled DevSecOps and Application Security, Integrating AI ... If you require a reasonable accommodation to participate in the recruiting process, please direct ...

Cyber Manager - Cloud DevSecOps

Dallas, TX ยท On-site

$109K - $148K/yr

Guide integration of Application Security capabilities including SAST, DAST, SCA, secrets scanning, IaC scanning, container security, API security, threat modeling, penetration testing, and ...

Cyber Manager - Cloud DevSecOps

Chicago, IL ยท On-site

$114K - $154K/yr

Guide integration of Application Security capabilities including SAST, DAST, SCA, secrets scanning, IaC scanning, container security, API security, threat modeling, penetration testing, and ...

Cyber Manager - Cloud DevSecOps

Mclean, VA ยท On-site

$112K - $151K/yr

Guide integration of Application Security capabilities including SAST, DAST, SCA, secrets scanning, IaC scanning, container security, API security, threat modeling, penetration testing, and ...

Cyber Manager - Cloud DevSecOps

Tempe, AZ ยท On-site

$106K - $143K/yr

Guide integration of Application Security capabilities including SAST, DAST, SCA, secrets scanning, IaC scanning, container security, API security, threat modeling, penetration testing, and ...

Head of Application Security

Wilmington, MA ยท On-site

$64.25 - $85.75/hr

Application Security (DevSecOps) : Establish and mature secure software development lifecycle ... Serve as a trusted strategic advisor to the CISO, executive leadership, and the Board of Directors ...

Head of Application Security

Wilmington, MA

$64.25 - $85.75/hr

Application Security (DevSecOps) : Establish and mature secure software development lifecycle ... Serve as a trusted strategic advisor to the CISO, executive leadership, and the Board of Directors ...

Cyber Manager - Cloud DevSecOps

Miami, FL ยท On-site

$106K - $143K/yr

Guide integration of Application Security capabilities including SAST, DAST, SCA, secrets scanning, IaC scanning, container security, API security, threat modeling, penetration testing, and ...

Cyber Manager - Cloud DevSecOps

Los Angeles, CA ยท On-site

$119K - $161K/yr

Guide integration of Application Security capabilities including SAST, DAST, SCA, secrets scanning, IaC scanning, container security, API security, threat modeling, penetration testing, and ...

Cyber Manager - Cloud DevSecOps

New York, NY ยท On-site

$121K - $164K/yr

Guide integration of Application Security capabilities including SAST, DAST, SCA, secrets scanning, IaC scanning, container security, API security, threat modeling, penetration testing, and ...

Cyber Manager - Cloud DevSecOps

Philadelphia, PA ยท On-site

$112K - $151K/yr

Guide integration of Application Security capabilities including SAST, DAST, SCA, secrets scanning, IaC scanning, container security, API security, threat modeling, penetration testing, and ...

Cyber Manager - Cloud DevSecOps

Boston, MA ยท On-site

$120K - $163K/yr

Guide integration of Application Security capabilities including SAST, DAST, SCA, secrets scanning, IaC scanning, container security, API security, threat modeling, penetration testing, and ...

Showing results 41-60

Director Of Devsecops Application Security information

See salary details

$37K

$104.5K

$167K

How much do director of devsecops application security jobs pay per year?

As of Sep 9, 2026, the average yearly pay for director of devsecops application security in the United States is $104,452.00, according to ZipRecruiter salary data. Most workers in this role earn between $85,000.00 and $117,500.00 per year, depending on experience, location, and employer.

What is the difference between Director Of Devsecops Application Security vs Security Architect?

AspectDirector Of Devsecops Application SecuritySecurity Architect
CertificationsCertified DevSecOps Professional, CISSP, CISACISSP, CISA, GIAC Security Certifications
Work EnvironmentLeads DevSecOps teams, integrates security into CI/CD pipelinesDesigns security architecture, assesses system vulnerabilities
Employer & Industry UsageTech companies, large enterprises focusing on secure software deliveryOrganizations designing secure systems and infrastructure

The Director Of Devsecops Application Security focuses on leading security integration within development and operations teams, emphasizing automation and continuous security. In contrast, a Security Architect designs and implements security frameworks and infrastructure. Both roles require security certifications and work in tech-driven environments, but their core responsibilities differ in scope and focus.

Who is responsible for security in Director Of Devsecops Application Security?

In the role of Director of DevSecOps Application Security, the individual is responsible for overseeing security strategies, policies, and practices across development and operations teams. They coordinate with security engineers, developers, and management to ensure application security standards are met and vulnerabilities are addressed throughout the software development lifecycle.

What are popular job titles related to Director Of Devsecops Application Security jobs?

For Director Of Devsecops Application Security jobs, the most frequently searched job titles are:

Infographic showing various Director Of Devsecops Application Security job openings in the United States as of September 2026, with employment types broken down into 77% Full Time, 19% Part Time, and 4% Contract. Highlights an 88% Physical, 2% Hybrid, and 10% Remote job distribution, with an average salary of $104,452 per year, or $50.2 per hour.

Application Security Engineer

NJ โ€ข On-site

IPolarity
Recruiting and Staffing Servicesย โ€ขย 1 - 10 employees

$80 - $100/hr

Other

Posted 21 days ago


Key responsibilities

  • Design and implement enterprise-wide application security programs for web, mobile, and API-based applications.

  • Integrate security controls and testing activities into Agile, DevOps, and CI/CD pipelines, including establishing automated security gates.

  • Conduct manual penetration testing, business logic testing, and threat modeling to identify vulnerabilities and validate remediation efforts.


Job description

Application Security (AppSec) Engineer

$60/hr W2

Onsite - Maryland Heights, MO

Cog Kit

BGV must be cleared to start

What are the top 3 skills required for this role?
  • Application Security (AppSec)
  • Secure SDLC / DevSecOps
  • SAST, DAST, IAST, SCA
  • Web, Mobile & API Security Testing
  • Manual Penetration Testing & Business Logic Testing
  • Threat Modelling
  • Vulnerability Management
  • Secure Code Review
  • CI/CD Security Integration
Job Description / Responsibilities

The role focuses on embedding security testing, vulnerability management, and business logic validation directly into CI/CD pipelines and post-deployment processes, ensuring comprehensive security coverage without impacting engineering velocity. The ideal candidate will combine expertise in secure SDLC, automated security testing, DevSecOps, cloud-native applications, APIs, and manual penetration testing to improve application security posture across web, mobile, and microservices architectures. This aligns with Secure SDLC requirements, including SAST, DAST, SCA, and manual validation activities integrated throughout the development lifecycle.

Key Responsibilities Application Security Engineering
  • Design and implement enterprise-wide Application Security programs for web, mobile, and API-based applications.
  • Integrate security controls and testing activities into Agile, DevOps, and CI/CD pipelines.
  • Establish automated security gates using SAST, DAST, SCA, IAST, secret scanning, and container security tools.
  • Enable continuous post-deployment security validation and risk monitoring.
Security Testing & Validation
  • Conduct manual penetration testing and business logic testing to identify vulnerabilities beyond automated scanning capabilities.
  • Perform authenticated and unauthenticated security assessments of applications and APIs.
  • Execute threat modeling, attack-path analysis, and architecture reviews for new applications and platform services.
  • Validate remediation effectiveness and secure deployment practices.
DevSecOps Integration
  • Embed security testing into GitHub Actions, Azure DevOps, Jenkins, GitLab, or similar CI/CD platforms.
  • Automate vulnerability triage, prioritization, and remediation workflows.
  • Develop security-as-code controls and policy enforcement mechanisms.
  • Collaborate with engineering teams to implement secure coding practices and shift-left security initiatives.
Vulnerability Management
  • Analyze findings from multiple security tools and eliminate false positives.
  • Prioritize vulnerabilities based on business risk, exploitability, and application criticality.
  • Track remediation efforts through SDLC and release cycles.
  • Develop security metrics, dashboards, and executive reporting.
Developer Enablement
  • Conduct secure coding reviews and developer education sessions.
  • Establish security champions programs across engineering teams.
  • Provide remediation guidance and hands-on support during application releases.
  • Drive adoption of secure development standards and best practices.
Cloud & API Security
  • Assess cloud-native applications deployed across AWS, Azure, GCP, Kubernetes, and container platforms.
  • Secure REST, GraphQL, and microservice-based APIs.
  • Evaluate infrastructure-as-code (Terraform, ARM, CloudFormation) and container security controls.
  • Support software supply chain security initiatives, including SBOM/SCA validation.
Experience & Qualifications
  • 8-15 years of experience in Application Security, DevSecOps, or Security Architecture.
  • Experience securing large-scale enterprise applications across cloud and hybrid environments.
  • Relevant certifications preferred:
  • CISSP
  • CSSLP
  • GWAPT
  • OSCP
  • CEH
  • Azure/AWS Security Certifications
#J-18808-Ljbffr