Application Security Manager
2919 Allen Parkway, Houston, TX, United States
Full Time Senior-level / Expert USD 125K - 145K
Corebridge Financial
Take action today to build a bridge for tomorrow—from planning to outcomes, from meeting today’s financial needs to attaining your aspirations.Who We Are
At Corebridge Financial, we believe action is everything. That’s why every day we partner with financial professionals and institutions to make it possible for more people to take action in their financial lives, for today and tomorrow.
We align to a set of Values that are the core pillars that define our culture and help bring our brand purpose to life:
• We are stronger as one: We collaborate across the enterprise, scale what works and act decisively for our customers and partners
• We deliver on commitments: We are accountable, empower each other and go above and beyond for our stakeholders
• We learn, improve and innovate: We get better each day by challenging the status quo and equipping ourselves for the future
• We are inclusive: We embrace different perspectives, enabling our colleagues to make an impact and bring their whole selves to work
About the role
Application Security Manager to lead and evolve our DevSecOps function. You will oversee a cross-functional team responsible for embedding security throughout the software development lifecycle (SDLC), integrating AI-driven tools and practices, and enabling secure-by-design development. This role is both strategic and technical, requiring deep expertise in AppSec, DevSecOps automation, and a forward-thinking approach to AI adoption in security.
We want to hear from you today if you can:
- Lead the application security program with a focus on securing CI/CD pipelines, cloud-native apps, and microservices.
- Manage a team of DevSecOps engineers and security champions across development squads.
- Develop and implement scalable security tooling, static and dynamic code analysis software composition, and Software Bill of Material.
- Integrate AI and machine learning tools for threat modeling, code analysis, and anomaly detection.
- Collaborate with development, infrastructure, and product teams to ensure secure architecture and coding practices.
- Establish AppSec policies, threat modeling frameworks, and secure coding guidelines.
- Build metrics and reporting to track the effectiveness of AppSec initiatives and risk posture.
- Evaluate and implement AI-based AppSec tools and integrations within the DevSecOps toolchain.
- Lead incident response and secure code review processes for critical applications.
- Act as the primary point of contact for application security audits and compliance initiatives.
Please note: The job can only be performed in the State location listed: Jersey City, NJ, Houston, TX, and Durham, NC
What we are looking for
- 7+ years of experience in application security, including 2+ years managing security teams.
- Strong knowledge of secure coding practices in modern languages (e.g., Python, Java, JavaScript, Go).
- Experience deploying and managing AppSec tools such as SAST, DAST, SCA, IaC scanners, Application Security Posture Management (ASPM) and secrets detection tools.
- Hands-on experience in CI/CD platforms (e.g., GitHub Actions, GitLab CI, Jenkins, Azure DevOps).
- Solid understanding of cloud-native architectures (AWS/GCP/Azure), containers (Docker), and orchestration (Kubernetes).
- Experience with Infrastructure-as-Code (e.g., Terraform, CloudFormation) and securing DevOps pipelines.
- Familiarity with AI-driven AppSec tools for vulnerability management, threat detection, and LLM-assisted secure code review.
- Experience with LLMs (e.g., OpenAI GPT, Gemini) for code analysis, threat modeling, secure coding guidance or vibe coding.
- Understanding of prompt engineering, model fine-tuning, or integrating AI APIs into security workflows.
- Bonus: Experience in AI security (e.g., adversarial ML, model poisoning, AI system threat modeling).
- Bonus: Experience in SAP Security, code review, vulnerability management, and threat monitoring.
- Bachelor’s degree in a relevant field or proven record of experience in Information Technology and Cyber Security roles.
Certifications:
- OSCP – Offensive Security Certified Professional (Required or strong preference)
- GWAPT - GIAC Web Application Penetration Tester
- OSWE – Offensive Security Web Expert (Preferred)
- CISSP – Certified Information Systems Security Professional (Preferred)
- GPEN – GIAC Penetration Tester (Preferred)
- AI/ML Certifications – e.g., Microsoft AI-102, Google Cloud ML Engineer, or similar (Bonus)
For positions based in Jersey City, NJ the base salary range is $125,000 to $145,000 and the position is eligible for a bonus in accordance with the terms of the applicable incentive plan. In addition, we're proud to offer a range of competitive benefits.
#LI-SAFG #LI-CW1 #LI-Hybrid
This role is deemed a “covered associate” under SEC Rule 206(4)-5, 17 CFR § 275.206(4)-5, Political contributions by certain investment advisers, and other federal and state pay-to-play rules. Candidates for the role must not have made any political contributions that, under 17 CFR § 275.206(4)-5 or other federal or state pay-to-play regulations, would disqualify the candidate or Corebridge Financial from conducting Corebridge Financial’s business, or that would otherwise create a conflict of interest for Corebridge Financial. Applicants who are selected to move forward with the application process will be required to disclose all U.S. political contributions they and their household family members have made over the past two years.
Applications will be accepted for this position until a satisfactory candidate pool has been identified.
Why Corebridge?
At Corebridge Financial, we prioritize the health, well-being, and work-life balance of our employees. Our comprehensive benefits and wellness program is designed to support employees both personally and professionally, ensuring that they have the resources and flexibility needed to thrive.
Benefit Offerings Include:
• Health and Wellness: We offer a range of medical, dental and vision insurance plans, as well as mental health support and wellness initiatives to promote overall well-being
• Retirement Savings: We offer retirement benefits options, which vary by location. In the U.S., our competitive 401(k) Plan offers a generous dollar-for-dollar Company matching contribution of up to 6% of eligible pay and a Company contribution equal to 3% of eligible pay (subject to annual IRS limits and Plan terms). These Company contributions vest immediately.
• Employee Assistance Program: Confidential counseling services and resources are available to all employees
• Matching charitable donations: Corebridge matches donations to tax-exempt organizations 1:1, up to $5,000
• Volunteer Time Off: Employees may use up to 16 volunteer hours annually to support activities that enhance and serve communities where employees live and work
• Paid Time Off: Eligible employees start off with at least 24 Paid Time Off (PTO) days so they can take time off for themselves and their families when they need it.
Eligibility for and participation in employer-sponsored benefit plans and Company programs will be subject to applicable law, governing Plan document(s) and Company policy.
We are an Equal Opportunity Employer
Corebridge Financial, is committed to being an equal opportunity employer and we comply with all applicable federal, state, and local fair employment laws. All applicants will be considered for employment based on job-related qualifications and without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, disability, neurodivergence, age, veteran status, or any other protected characteristic. The Company is also committed to compliance with all fair employment practices regarding citizenship and immigration status. At Corebridge Financial, we believe that diversity and inclusion are critical to building a creative workplace that leads to innovation, growth, and profitability. Through a wide variety of programs and initiatives, we invest in each employee, seeking to ensure that our colleagues are respected as individuals and valued for their unique perspectives.
Corebridge Financial is committed to working with and providing reasonable accommodations to job applicants and employees, including any accommodations needed on the basis of physical or mental disabilities or sincerely held religious beliefs. If you believe you need a reasonable accommodation in order to search for a job opening or to complete any part of the application or hiring process, please send an email to TalentandInclusion@corebridgefinancial.com. Reasonable accommodations will be determined on a case-by-case basis, in accordance with applicable federal, state, and local law.
We will consider for employment qualified applicants with criminal histories, consistent with applicable law.
To learn more please visit: www.corebridgefinancial.com
Corebridge Financial is committed to working with and providing reasonable accommodations to job applicants and employees with physical or mental disabilities. If you believe you need a reasonable accommodation in order to search for a job opening or to complete any part of the application or hiring process, please send an email to TalentandInclusion@corebridgefinancial.com. Reasonable accommodations will be determined on a case-by-case basis.
Applications will be accepted for this position until a satisfactory candidate pool has been identified
Functional Area:
IT - Information TechnologyEstimated Travel Percentage (%): No TravelRelocation Provided: NoAmerican General Life Insurance CompanyTags: APIs Application security Audits Automation AWS Azure CI/CD CISSP Cloud Code analysis Compliance DAST DevOps DevSecOps Docker GCP GIAC GitHub GitLab GPEN GWAPT Incident response Java JavaScript Jenkins Kubernetes LLMs Machine Learning Microservices Monitoring Offensive security OpenAI OSCP OSWE Python SAP SAST SDLC Terraform Threat detection Vulnerability management
Perks/benefits: Career development Competitive pay Flex vacation Health care Insurance Salary bonus Team events Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.