





Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Tier-1 brand, Bengaluru metro location, and mid-level requirement balanced by specialized AppSec skills.
Role requires specialized AppSec and DevSecOps expertise, making background fit highly sensitive.
Explicit 2–4 years and mandatory AppSec frameworks, SBOM, and DevSecOps experience make shortlisting medium.
Own development and execution of application security (AppSec) program roadmaps, maturity assessments, and framework-aligned reports.
Create visuals, documentation, and executive summaries supporting capability maturity models and strategic planning for leadership.
Provide strategic AppSec recommendations incorporating software supply chain and DevSecOps program insights.
2 to 4 years of experience in application security, software assurance, or product security consulting.
Strong knowledge of AppSec frameworks such as BSIMM, NIST SSDF, or OWASP SAMM.
Experience with open-source software security including vulnerability identification and remediation in third-party components.
Familiarity with Software Bill of Materials (SBOM) standards/tools like SPDX or CycloneDX and secure SDLC/CI/CD pipeline practices.
Experience developing maturity models, capability assessments, or multi-year AppSec/DevSecOps roadmaps indicating strategic and operational expertise.
Proven capability presenting and facilitating technical content in client-facing, executive communications and producing actionable strategic plans.
Background in consulting (especially Big Four or boutique AppSec firms), software security governance, supply chain risk management, or software development with security focus.