Director of Application Security
Hewlett Packard EnterpriseAbout the role
This role has been designed as ‘Hybrid’ with an expectation that you will work on average 2 days per week from an HPE office.
Who We Are:
Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to cloud, so they can turn insights into outcomes at the speed required to thrive in today’s complex world. Our culture thrives on finding new and better ways to accelerate what’s next. We know varied backgrounds are valued and succeed here. We have the flexibility to manage our work and personal needs. We make bold moves, together, and are a force for good. If you are looking to stretch and grow your career our culture will embrace you. Open up opportunities with HPE.
Job Description:
Key Responsibilities
Leadership & Strategy
- Define and execute the enterprise application security strategy aligned with business objectives and regulatory requirements.
- Build, mentor, and grow a high-performing Application Security team, fostering a culture of collaboration, innovation, and continuous improvement.
- Act as a trusted security advisor to engineering and product executives, driving security-by-design principles across the organization.
Program Ownership
- Develop and mature programs for secure software development, including:
- Secure SDLC and DevSecOps integration.
- Code security reviews and static/dynamic analysis.
- Software composition analysis (SCA) and open-source risk management.
- Secure coding standards and developer training.
- Establish policies, standards, and patterns that enable development teams to deliver secure products at scale.
Collaboration & Enablement
- Partner with engineering, DevOps, and cloud teams to embed security tooling into CI/CD pipelines and workflows.
- Lead developer outreach efforts, including building security champions programs and creating practical guidance for developers.
- Engage with product management to incorporate security requirements and risk assessments into roadmaps.
Governance & Risk Management
- Drive the integration of an application security risk register, providing visibility to senior leadership and the board.
- Measure and report on the maturity and effectiveness of the AppSec program using key performance indicators (KPIs) and key risk indicators (KRIs).
- Stay current on the evolving threat landscape, regulatory requirements, and industry best practices to proactively manage application risk.
Qualifications
- 10+ years of experience in cybersecurity, with at least 5+ years leading an application security function.
- Demonstrated experience working at an enterprise-level organization with large-scale systems, processes, or operations.
- Proven success in building and scaling application security programs in large, complex technology environments.
- Deep understanding of:
- Secure software development practices, DevSecOps, and CI/CD tooling.
- Threat modeling, code analysis, and vulnerability management.
- OWASP Top 10, SANS Top 25, and modern application security risks.
- Strong executive presence and communication skills, able to influence across engineering and business leadership.
- Experience with risk management frameworks (NIST CSF, ISO 27001, etc.) and regulatory requirements (SOX, GDPR, HIPAA, etc.).
- Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or related field (or equivalent experience).
- CISSP, CSSLP, or other relevant security certifications preferred.
Additional Skills:
Accountability, Accountability, Action Planning, Active Learning, Active Listening, Agile Methodology, Bias, Business, Coaching, Creativity, Critical Thinking, Cybersecurity, Data Analysis Management, Data Collection Management (Inactive), Data Controls, Design Thinking, Development Methodologies, Empathy, Follow-Through, Growth Mindset, Implementation Methodologies, Infrastructure Design, Intellectual Curiosity (Inactive), Long Term Planning, Managing Ambiguity {+ 4 more}What We Can Offer You:
Health & Wellbeing
We strive to provide our team members and their loved ones with a comprehensive suite of benefits that supports their physical, financial and emotional wellbeing.
Personal & Professional Development
We also invest in your career because the better you are, the better we all are. We have specific programs catered to helping you reach
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s
Similar roles
Director of Tax Sale Deferral and Community Engagement (NCS) - Department of Housing and Community Development
City of Baltimore
$127,043/yr
Associate Director, Academic Advisor, Global Co-curricular Programs, Wharton MBA Program
University of Pennsylvania
$97,000/yr
Director, Supply Chain
Gilead Sciences
$247,500/yr