Jobs and Careers
AC

Application Security Manager

Acrisure
Grand Rapids, United Statesfull_timeVerifiedPosted 5 Sept 2025

About the role

About Acrisure  

A global fintech leader, Acrisure empowers millions of ambitious businesses and individuals with the right solutions to grow boldly forward. Bringing cutting-edge technology and top-tier human support together, we connect clients with customized solutions across a range of insurance, reinsurance, payroll, benefits, cybersecurity, mortgage services – and more 

In the last eleven years, Acrisure has grown in revenue from $38 million to almost $5 billion and employs over 19,000 colleagues in more than 20 countries. Our culture is defined by our entrepreneurial spirit and all that comes with it: innovation, client centricity and an indomitable will to win. 

Job Summary:  

As the Manager of Application Security Operations, you will lead and expand the organization’s Application Security (AppSec) program within a large, highly regulated financial services environment. This is an opportunity to build and shape the program from the ground up while leading a team of AppSec specialists and influencing enterprise-wide security practices. You’ll drive strategy, partner with multiple development teams, integrate security into the SDLC, and work alongside Security Operations leadership to strengthen incident response. This role offers high visibility, significant leadership impact, and the chance to establish a mature, scalable AppSec program that protects mission-critical financial systems. 

 

Responsibilities: 

  • Application Security Program Leadership 

  • Own the vision, strategy, and roadmap for the Application Security program enterprise-wide. 

  • Build, mentor, and lead a team of AppSec engineers and specialists. 

  • Define program objectives, performance metrics, and KPIs to measure and report success. 

  • Advocate for application security at all levels of the organization, from developers to executives. 

 

  • Partnership with Development Teams 

  • Collaborate with software engineering teams to integrate security controls, best practices, and policies throughout the SDLC. 

  • Promote a "security by design" culture by coaching and mentoring developers on secure coding practices. 

  • Support threat modeling, secure code reviews, and security architecture discussions. 

  • Security Tooling and Integration 

  • Implement, configure, and maintain application security tooling (SAST, DAST, SCA, IaC scanning, API security, container security). 

  • Integrate security checks into CI/CD pipelines using GitHub and other platforms. 

  • Evaluate emerging technologies and recommend tools that enhance automation and scalability. 

  • Monitoring, Incident Response, and Metrics 

  • Partner with SOC analysts to investigate application-layer alerts, incidents, and vulnerabilities. 

  • Track and report key security metrics, including vulnerability remediation timelines, pipeline coverage, and compliance with policies. 

  • Provide executive reporting and actionable insights on AppSec maturity and risk reduction progress. 

 

Requirements 

  • Proven ability to design, lead, and scale an enterprise application security program. 

  • Strong understanding of secure software development, OWASP Top 10, threat modeling, and vulnerability management.

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Acrisure

View company profile →