ND · On-site
$87K - $170K/yr
... Manager to lead and scale our Application Security program. Reporting to the Global Head of ... Deep familiarity with the OWASP Top 10 for web applications and APIs, and how to apply them in ...
ND · On-site
$87K - $170K/yr
... Manager to lead and scale our Application Security program. Reporting to the Global Head of ... Deep familiarity with the OWASP Top 10 for web applications and APIs, and how to apply them in ...
ND · On-site
$87K - $170K/yr
... Manager to lead and scale our Application Security program. Reporting to the Global Head of ... Deep familiarity with the OWASP Top 10 for web applications and APIs, and how to apply them in ...
Charlotte, NC · On-site
$46.75 - $62.50/hr
Web Application Firewall Engineer * Location: Charlotte, NC -- Hybrid preferred; local candidates ... security architecture, configurations, operations, and management. * Support additional network ...
Charlotte, NC · On-site
$46.75 - $62.50/hr
Web Application Firewall Engineer * Location: Charlotte, NC -- Hybrid preferred; local candidates ... security architecture, configurations, operations, and management. * Support additional network ...
Identify, analyze, and remediate web application vulnerabilities, insecure dependencies, misconfigurations, and security weaknesses. * Support vulnerability management activities throughout the ...
Identify, analyze, and remediate web application vulnerabilities, insecure dependencies, misconfigurations, and security weaknesses. * Support vulnerability management activities throughout the ...
New York, NY · On-site
$64.25 - $86/hr
Need a strong candidate who can do security reviews, sometimes they do a security assessment on different products that go out, web application gateways, etc.... they have a well-defined processes ...
Quick apply
New York, NY · On-site
$64.25 - $86/hr
Need a strong candidate who can do security reviews, sometimes they do a security assessment on different products that go out, web application gateways, etc.... they have a well-defined processes ...
Bethesda, MD · On-site
$63 - $84/hr
... web application security issues, such as those outlined in OWASP Top 10 Strong knowledge of ... management systems such as Oracle Experience using Tenable Security Center and validating ...
Bethesda, MD · On-site
$63 - $84/hr
... web application security issues, such as those outlined in OWASP Top 10 Strong knowledge of ... management systems such as Oracle Experience using Tenable Security Center and validating ...
Plano, TX · On-site
$80K - $134K/yr
Manage and optimize Web Application Firewall (WAF) and CDN security capabilities, including DDoS protection, bot mitigation, and traffic management. * Evaluate emerging security technologies and ...
Plano, TX · On-site
$80K - $134K/yr
Manage and optimize Web Application Firewall (WAF) and CDN security capabilities, including DDoS protection, bot mitigation, and traffic management. * Evaluate emerging security technologies and ...
Plano, TX · On-site
$80K - $134K/yr
Manage and optimize Web Application Firewall (WAF) and CDN security capabilities, including DDoS protection, bot mitigation, and traffic management. * Evaluate emerging security technologies and ...
Plano, TX · On-site
$80K - $134K/yr
Manage and optimize Web Application Firewall (WAF) and CDN security capabilities, including DDoS protection, bot mitigation, and traffic management. * Evaluate emerging security technologies and ...
Manhattan, NY · On-site
$64.50 - $86/hr
... application security. ? Develop, socialize, and implement security strategies to address ... in web applications, microservices, APIs, and mobile applications. ? Track and manage progress ...
Manhattan, NY · On-site
$64.50 - $86/hr
... application security. ? Develop, socialize, and implement security strategies to address ... in web applications, microservices, APIs, and mobile applications. ? Track and manage progress ...
Plano, TX · On-site
$80K - $134K/yr
Manage and optimize Web Application Firewall (WAF) and CDN security capabilities, including DDoS protection, bot mitigation, and traffic management. * Evaluate emerging security technologies and ...
Plano, TX · On-site
$80K - $134K/yr
Manage and optimize Web Application Firewall (WAF) and CDN security capabilities, including DDoS protection, bot mitigation, and traffic management. * Evaluate emerging security technologies and ...
Manhattan, NY · On-site
$64.50 - $86/hr
... application security. ? Develop, socialize, and implement security strategies to address ... in web applications, microservices, APIs, and mobile applications. ? Track and manage progress ...
Quick apply
Manhattan, NY · On-site
$64.50 - $86/hr
... application security. ? Develop, socialize, and implement security strategies to address ... in web applications, microservices, APIs, and mobile applications. ? Track and manage progress ...
Plano, TX · On-site
$100 - $125/hr
Manage and optimize Web Application Firewall (WAF) and CDN security capabilities, including DDoS protection, bot mitigation, and traffic management. * Evaluate emerging security technologies and ...
Plano, TX · On-site
$100 - $125/hr
Manage and optimize Web Application Firewall (WAF) and CDN security capabilities, including DDoS protection, bot mitigation, and traffic management. * Evaluate emerging security technologies and ...
Columbus, OH · On-site
$70 - $79/hr
Senior Security Engineer - Web Application & Network Protection (Contract to Hire) Location ... Bot Defense / Bot Management * DDoS Mitigation * Geolocation Policies * Rate Limiting * CAPTCHA ...
Columbus, OH · On-site
$70 - $79/hr
Senior Security Engineer - Web Application & Network Protection (Contract to Hire) Location ... Bot Defense / Bot Management * DDoS Mitigation * Geolocation Policies * Rate Limiting * CAPTCHA ...
Washington, DC · On-site
$115K - $190K/yr
Web Developer Security Engineer Clearance Requirement: Public Trust (Tier 2) Location: Remote ... The selected candidate will be responsible for secure application design, vulnerability management ...
Washington, DC · On-site
$115K - $190K/yr
Web Developer Security Engineer Clearance Requirement: Public Trust (Tier 2) Location: Remote ... The selected candidate will be responsible for secure application design, vulnerability management ...
Responsibilities : • 5+ years of experience as Automation Architect and doing web application ... management • Efficient in effort estimation, planning and prioritization • Ability to ...
Responsibilities : • 5+ years of experience as Automation Architect and doing web application ... management • Efficient in effort estimation, planning and prioritization • Ability to ...
Web Developer Security Engineer Clearance Requirement: Public Trust (Tier 2) Location: Remote ... The selected candidate will be responsible for secure application design, vulnerability management ...
Quick apply
Web Developer Security Engineer Clearance Requirement: Public Trust (Tier 2) Location: Remote ... The selected candidate will be responsible for secure application design, vulnerability management ...
Richmond, VA · On-site
$125K - $135K/yr
This position will focus on Web Application Firewall (WAF) technologies, including F5 BIG-IP Application Security Manager (ASM), supporting the protection, availability, and security of DLA web ...
Richmond, VA · On-site
$125K - $135K/yr
This position will focus on Web Application Firewall (WAF) technologies, including F5 BIG-IP Application Security Manager (ASM), supporting the protection, availability, and security of DLA web ...
Columbus, OH · Hybrid
$70 - $79/hr
Senior Security Engineer - Web Application & Network Protection (Contract to Hire) Location ... Bot Defense / Bot Management * DDoS Mitigation * Geolocation Policies * Rate Limiting * CAPTCHA ...
Quick apply
Columbus, OH · Hybrid
$70 - $79/hr
Senior Security Engineer - Web Application & Network Protection (Contract to Hire) Location ... Bot Defense / Bot Management * DDoS Mitigation * Geolocation Policies * Rate Limiting * CAPTCHA ...
Columbus, OH · Hybrid
$70 - $79/hr
Senior Security Engineer - Web Application & Network Protection (Contract to Hire) Location ... Bot Defense / Bot Management * DDoS Mitigation * Geolocation Policies * Rate Limiting * CAPTCHA ...
Columbus, OH · Hybrid
$70 - $79/hr
Senior Security Engineer - Web Application & Network Protection (Contract to Hire) Location ... Bot Defense / Bot Management * DDoS Mitigation * Geolocation Policies * Rate Limiting * CAPTCHA ...
Washington, DC · On-site
$125 - $150/hr
... program management solutions supporting critical Federal and DoD missions. We specialize in ... This role combines application security engineering, secure software development, vulnerability ...
Washington, DC · On-site
$125 - $150/hr
... program management solutions supporting critical Federal and DoD missions. We specialize in ... This role combines application security engineering, secure software development, vulnerability ...
Burbank, CA · On-site
$130K - $155K/yr
Experience with application security, including secure SDLC, threat modeling, secure code reviews, SAST, DAST, SCA, secret scanning, vulnerability management, remediation, and web application ...
Burbank, CA · On-site
$130K - $155K/yr
Experience with application security, including secure SDLC, threat modeling, secure code reviews, SAST, DAST, SCA, secret scanning, vulnerability management, remediation, and web application ...
$39K - $48.5K
13% of jobs
$55.4K is the 25th percentile. Wages below this are outliers.
$48.5K - $58.1K
17% of jobs
$58.1K - $67.6K
10% of jobs
The median wage is $74K / yr.
$67.6K - $77.2K
16% of jobs
$77.2K - $86.7K
17% of jobs
$89.4K is the 75th percentile. Wages above this are outliers.
$86.7K - $96.3K
10% of jobs
$96.3K - $105.8K
5% of jobs
$105.8K - $115.4K
3% of jobs
$115.4K - $124.9K
1% of jobs
$124.9K - $134.5K
3% of jobs
$134.5K - $144K
5% of jobs
$39K
$80.9K
$144K
| Aspect | Web Application Security Manager | Web Security Analyst |
|---|---|---|
| Certifications | Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH) | CISSP, CompTIA Security+, CEH |
| Work Environment | Leads security teams, manages security strategies, oversees security protocols for web apps | Monitors security alerts, analyzes vulnerabilities, implements security measures |
| Employer & Industry | Tech companies, financial institutions, large enterprises | IT departments, cybersecurity firms, corporate security teams |
While both roles focus on web security, the Web Application Security Manager oversees security strategies and team management, whereas the Web Security Analyst primarily monitors and analyzes security threats. The manager role involves higher-level planning and leadership, often requiring advanced certifications and experience.
For Web Application Security Manager jobs, the most frequently searched job titles are:

ND • On-site
$87K - $170K/yr
Full-time
Re-posted 7 days ago
Lead secure design reviews and threat modeling to identify risks early in the development process.
Deploy and operationalize security tools such as SAST, DAST, SCA, and secrets scanning across repositories and pipelines.
Lead the Security Champions Program and serve as a trusted advisor to development teams to promote a security-first culture.
ABOUT US:
As a world leading provider of integrated solutions for the alternative investment industry, Alter Domus (meaning "The Other House" in Latin) is proud to be home to 90% of the top 30 asset managers in the private markets, and more than 6,000 professionals across 24 jurisdictions.
With a deep understanding of what it takes to succeed in alternatives, we believe in being different in what we do, how we work, and most importantly in how we enable and develop our people. Invest yourself in the alternative, and join an organization where you progress on merit, where you can speak openly with whoever you are speaking to, and where you will be supported along whichever path you choose to take.
Find out more about life at Alter Domus at careers.alterdomus.com
JOB DESCRIPTION:
We are looking for an Application Security Manager to lead and scale our Application Security program. Reporting to the Global Head of Security, you will be the connective tissue between Engineering and Security - embedding security into how we build, not bolting it on after the fact.
You have deep empathy for developers and understand their tools and workflows. You lead with automation and actionable guidance, not friction. You are equally comfortable conducting threat models and code reviews as you are building CI/CD integrations and running a Security Champions program.
Your responsibilities
Shift Left & SDLC Security
Lead secure design reviews and threat modeling to surface risks early in the development lifecycle.
Deploy and operationalize SAST, DAST, SCA, and secrets scanning across repositories and pipelines.
Partner with the Platform DevOps team to build and maintain security automation that embeds inline checks into CI/CD pipelines.
Help architect secure-by-default frameworks, workflows, and reusable patterns for engineering teams.
Conduct application security code reviews and provide clear, developer-friendly remediation guidance aligned with secure coding practices.
Vulnerability & Risk Management
Define and enforce SLA governance for security findings - from identification and prioritization through to remediation tracking.
Maintain an accurate and up-to-date application asset inventory.
Create and maintain Developer Security Standards with deep familiarity across Azure DevOps, GitHub Enterprise, and GitHub Advanced Security.
Evaluate and implement security tooling and automation to continuously improve application security posture and operational efficiency.
Developer Enablement & Culture
Lead the Security Champions Program to build a security-first culture across engineering and IT operations.
Serve as a trusted advisor to development and cross-functional teams, translating security risks into concrete, prioritized actions.
Deliver training on secure coding practices that empowers developers to proactively own security outcomes.
Your profile
4+ years of hands-on application security experience, including cloud-based and containerized environments.
Proven experience with secure code reviews and ability to interpret SAST, SCA, and DAST findings and translate them into developer-friendly guidance.
Strong working knowledge of modern CI/CD workflows, including Azure Pipelines and GitHub Actions.
Deep familiarity with the OWASP Top 10 for web applications and APIs, and how to apply them in practice.
Hands-on experience with security tooling such as Snyk, Cycode, Apiiro, Burp Suite, or equivalents.
Familiarity with cloud platforms (AWS, Azure) and containerization technologies (Docker, Kubernetes).
Ability to communicate complex security concepts clearly and drive buy-in across engineering levels with minimal supervision.
Strong collaboration skills and a developer-first mindset - you make security easier, not harder.
Nice to Have
Proficiency in Python, Java, or C#.
Exposure to AI-SBOM and familiarity with AI-SDLC security considerations.
Experience building or scaling a Security Champions program.
Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent professional experience).
WHAT WE OFFER:
We are committed to supporting your development, advancing your career, and providing benefits that matter to you.
Our industry-leading Alter Domus Academy offers six learning zones for every stage of your career, with resources tailored to your ambitions and resources from LinkedIn Learning.
Salary range: We offer a salary of $87,500 to $170,000+ depending on skills and experience.
Our global benefits also include:
Pay Range: The salary for this role is $87,500 to $145,000+ depending on skills and experience.
Alter Domus is an Equal Opportunity Employer: Equity Statement
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, or protected veteran status.
(Alter Domus Privacy notice can be reviewed via Alter Domus webpage: https://alterdomus.com/privacy-notice/)
#LI-HYBRID #LI-DH1