{"id":1136093,"url":"https://alion.io/job/inmar-manager-application-engineer-cyber-security","title":"Manager, Application Engineer, Cyber Security","company":{"id":6967,"name":"Inmar Intelligence","domain":"inmar.com","url":"https://alion.io/company/inmar","size_band":"1001-5000","is_staffing_agency":false,"is_intermediary":false,"ats_vendor":"Workday","truth_index":null},"role":"Security","role_family":"Security","seniority":"staff","employment_type":"full_time","work_mode":"on_site","remote_scope":null,"hiring_geo_confidence":"explicit","locations":["Salem, United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":120000,"max_usd":251000,"period":"year","method":"role_seniority_country_remote_cell","sample_n":240},"experience_years_min":10,"visa_sponsorship":true,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Agile","optional":false},{"name":"AWS","optional":false},{"name":"Azure","optional":false},{"name":"Burp Suite","optional":false},{"name":"CI/CD","optional":false},{"name":"DNS","optional":false},{"name":"Docker","optional":false},{"name":"GCP","optional":false},{"name":"GDPR","optional":false},{"name":"Git","optional":false},{"name":"HIPAA","optional":false},{"name":"ISO 27001","optional":false},{"name":"JavaScript","optional":false},{"name":"Jira","optional":false},{"name":"Kubernetes","optional":false},{"name":"LDAP","optional":false},{"name":"Metasploit","optional":false},{"name":"OWASP","optional":false},{"name":"OWASP ASVS","optional":false},{"name":"OWASP Top 10","optional":false},{"name":"PCI DSS","optional":false},{"name":"Python","optional":false},{"name":"Threat Modeling","optional":false}],"status":"live","first_seen_at":"2026-09-22T00:00:00Z","employer_posted_date":"2026-09-22","last_verified_at":"2026-09-24T02:13:03Z","board_verified":true,"closed_at":null,"days_open":2,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":2},"description":"The Manager, Application Engineering, Cyber Security is responsible for leading the Application Security team, which is responsible for developing automation and tooling to identify, manage and monitor security risks at scale, integrating security requirements into products and processes, proactively performing security assessments to detect and prevent security vulnerabilities, conducting trainings to raise developer awareness of security best practices, performing security testing before release, and partnering closely with our development teams to produce innovative and secure solutions.The Manager, Application Engineering, Cyber Security has broad and deep technical experience in a wide variety of enterprise technologies and is the subject matter expert (SME) for concepts behind security controls and how they apply to the application engineering, configuration and deployment lifecycles. This individual provides hands-on technical leadership, e.g. design, code review, quality assurance, both to the security engineering team and collaboratively to cross-organization engineering teams. Accountable for identifying key security risks, as well as targeted and prioritized planning and implementation of respective mitigations.\nThe incumbent must have a service-oriented mentality, a high sense of ownership of the problems and requests assigned, a focus on managing and resolving issues in alignment with the SLAs, policies and standards, establishing and maintaining communication with technology customers to keep them updated with status of their requests, initiating and performing changes on production systems and proactively escalating any issues that cannot be resolved within the established timeframes.\nAdditional insights, experience or background in any of the following are also of great value: CIS, NIST, ISO27001, Data Protection, Software Engineering, Static Code Analysis, Dynamic Code Analysis, Penetration Testing, Containers, MicroServices, CI/CD Pipelines, Agile, Project Planning, Team Leadership and Management, Git, Jira, Docker, Kubernetes, Cloud Security (AWS, Azure, GCP) and design, process maturity, and other related focuses.\nPrimary Accountabilities\nTechnical (40%)\nProvide hands-on technical leadership on multiple fronts, e.g. architecture, design, code review, quality assurance, directly to the security engineering team and indirectly to other engineering and/or product teams\n\nEstablish and drive adoption of design, standards, documentation and coding best practices within the security engineering team\n\nDefine, evangelize and drive security engineering best practices and improvements across organizational boundaries\n\nCollaborate on engineering-wide initiatives as a member of the broader engineering leadership team\n\nDrive compliance through evangelizing, partnership, and education, as well as a robust program of third-party/vendor, application, and data security reviews, threat modeling, proactive auditing and penetration testing\n\nDevelop policy, standards and other relevant documentation to guide the practical implementation of application security best practices\n\nEvaluate client needs, coordinate design for a solution, and clearly communicate the value proposition of complex and highly technical subjects.\n\nDesign systems characterized by managed levels of risk, manageable business and technical complexity and meaningful impact; works with well-understood technology and identifies appropriate patterns.\n\nStrategic (20%)\nIntegrate and collaborate with business and engineering organizations to facilitate early identification and implementation of security standards and compliance.\n\nProactive identification of security engineering goals and objectives, development of implementation plans to address targeted and prioritized threat mitigations.\n\nDrive engineering innovation by producing quality code and artifacts for inter-team collaboration\n\nOperational (20%)\nWork with application development teams to ensure secure software development lifecycle (S-SDLC) implementation and validation.\n\nEducate and train product and engineering teams.\n\nEvaluate client needs, coordinate design for a solution, and clearly communicate the value proposition of complex and highly technical cyber security subjects.\n\nSchedule and manage prioritized pipeline of engineering objectives and tasks and ensure timely delivery, while managing technical project risks\n\nTrain new team members on documented guidelines\n\nLeadership (20%)\nManage and grow a team of world-class application security engineers to deliver high impact projects on schedule with high-quality\n\nAccountable for staffing projections, year-end performance reviews, salary planning and administration, employee development and mentoring, and promoting a culture of open and honest communication, partnership, continuous improvement and opportunities.\n\nResponsible for measuring and improving technical competence of team members.\n\nRequired Qualifications:\nBachelor of Science Degree in Computer Science, related field or relevant experience\n\n10+ years of related work experience in security engineering, systems engineering and/or DevOps with a focus on information securityor any equivalent combination of experience and training/certification that provides the required knowledge, skills, and abilities needed to complete the major responsibilities/essential functions of the position\n\nProven ability to lead engineering teams, particular within an Agile environment\n\nExperience with regulatory and compliance frameworks, such as HIPAA, PCI-DSS, CCPA, GDPR\n\nCertifications preferred. CISSP, Security +, CISM, GSLC\n\nExperience in web, application, server and endpoint security\n\nStrong experience in distributed platform development security and design\n\nIn-depth knowledge of application, platform and system security standards and best practices (OWASP, CIS, etc.)\n\nFoundational experience in core information security principles and concepts (HTTPS, TLS, OAuth, etc.)\n\nExperience with industry tools and technologies such as Burp, Metasploit, etc.\n\nStrong knowledge of common languages such as Python, GO, JavaScript, Java, etc.\n\nSolid understanding of public cloud security deployment and implementation issues (AWS, Azure, GCP)\n\nStrong knowledge of web application firewall deployment, configuration, tuning and associated infrastructure components\n\nUnderstanding of audits and standards requirements such ISO 27001, PCI DSS, SOC 1 & 2, etc.\n\nProven expertise in enterprise-grade and web scale security solutions\n\nExceptional oral and written communication skills\n\nSpecific Technical Skills Needed:\nSecurity and Risk Assessment\nAware of Security governance principles and able to apply them to the enterprise\n\nUnderstands the legal and regulatory Issues relevant to the enterprise and does not place the enterprise at risk.\n\nSecurity Engineering\nWorking knowledge of secure design principles\n\nWorking knowledge of database security\n\nWorking knowledge of cloud computing\n\nWorking knowledge of Cryptography\n\nIdentity and Access Management\nPhysical and logical access\n\nLDAP\n\nMulti-factor authentication\n\nSession management\n\nCredential management\n\nSoftware Development Security\nPractical understanding of software development lifecycles\n\nFamiliarity with software development methodologies used in the enterprise and can explain what it means\n\nPractical experience with DevOps concepts\n\nWorking knowledge of security vulnerabilities, e.g. OWASP Top 10, and understands how the following work: Bounds checking, Input/output validation, Buffer overflow, Privilege escalation\n\nPractical understanding of secure coding practices\n\nSolid working knowledge of application security testing, e.g. OWASP WSTG and/or ASVS\n\nSolid working knowledge of web application firewall deployment, configuration, tuning and maintenance, including associated infrastructure resources and architecture, e.g. DNS, HTTP server, TLS\n\nSolid working knowledge of code repositories\n\nIndividual Competencies:\nIntegrity: Gains the trust of others by taking responsibility for your own actions and telling the truth.\n\nTeamwork: Builds relationships and works collaboratively with others, inside and outside the organization, to accomplish objectives to build and maintain mutually-beneficial partnerships, leverage information and achieve results.\n\nAdaptable: Responds to change with a willingness to learn new ways to accomplish work objectives with a positive attitude.\n\nInnovative: Ability to develop, sponsor, or support the introduction of new and improved methods, products, procedures or technologies.\n\nCurious: A desire to inquire and learn, to seek new knowledge and wisdom, and to listen to the contributions of others with a genuine interest to better self, the team, and the organization.\n\nAnalytical and Critical Thinking: Ability to tackle a problem by using a logical, systematic, sequential approach.\n\nProblem Solving: Gathers and analyzes information to generate and evaluate potential solutions to problems, issues and challenges while weighing the accuracy and relevance of the facts, data and information.\n\nThe physical demands described here are representative of those that must be met by an associate to successfully perform the major job responsibilities (essential functions) of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the major job responsibilities. This job description is not intended to be an exhaustive list of all duties, responsibilities, or qualifications associated with the job.\nWhile performing the duties of this job, the associate is:\nRegularly required to use hands to finger, handle or feel objects, tools or controls, and reach with hands or arms.\n\nRegularly required to talk or hear and read instructions on a computer monitor and/or printed on paper.\n\nOccasionally required to stand, kneel or stoop, and lift and/or move up to ## pounds.\n\nRegularly required to view items at an extremely close range and must be able to adjust and readjust focus.\n\nSafety:\nSupport a safe work environment by following safety rules and regulations and reporting all safety hazards.\n\nAs an Inmar Associate, you:\nPut clients first and consistently display a positive attitude and behaviors that demonstrate an awareness and willingness to listen and respond to clients in order to meet their short-term and long-term needs, requirements and exceed their expectations.\n\nTreat clients and teammates with courtesy, consideration and tact; you also have the ability to perceive the needs of internal and external clients and communicate effectively with the objective of delighting and retaining the client.\n\nBuild collaborative relationships and work cooperatively with others, inside and outside the organization, to accomplish objectives, develop and maintain mutually-beneficial partnerships, leverage information to achieve results.\n\nSet and attain achievable, yet aggressive, goals with a sense of urgency and accountability.\n\nUnderstand that results are important and focus on turning mission into action to achieve results following the principles of Flawless Execution while consistently complying with quality, service and productivity standards to meet deadlines and exceed expectations by giving our clients the best possible outcome.\n\nAt Inmar, we put people first and that means empowering our associates to thrive at every stage of life and career. Our comprehensive and competitive benefits package is thoughtfully designed to support a wide range of lifestyles and life stages.\nEligible associates have access to:\nMedical, Dental, and Vision insurance\n\nBasic and Supplemental Life Insurance options\n\n401(k) retirement plans with company match\n\nHealth Spending Accounts (HSA/FSA)\n\nWe also offer:\nFlexible time off and 11 paid holidays\n\nFamily-building benefits, including Maternity, Adoption, and Parental Leave\n\nTuition Reimbursement and certification support, reflecting our commitment to lifelong learning\n\nWellnes...","description_format":"text","description_chars":13035,"description_truncated":true,"requirements":{"experience_years_min":10,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[]},"benefits":["Flexible time off","Life insurance","Parental leave","Retirement plans","Vision insurance"],"hiring_locations":[{"name":"United States","iso":"US","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Cybersecurity","Artificial Intelligence","Corporate Events","Application Security"],"lifecycle":[{"event":"open","at":"2026-09-23T08:13:30Z"}],"liveness":{"score":86,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.86,"p_room":1,"age_days":2,"expected_fill_days":40,"reasons":["conf:1","win:early"],"computed_at":"2026-09-24T03:15:42Z"},"pay":null,"html_url":"https://alion.io/job/inmar-manager-application-engineer-cyber-security","json_url":"https://alion.io/job/inmar-manager-application-engineer-cyber-security.json","meta":{"generated_at":"2026-09-24T03:15:42Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers"}}