Application Security Director
Georgia, United States
Mohawk Industries
Are you looking for more?
At Mohawk Industries, we’re committed to more – more customer solutions, more process improvements, more sustainable manufacturing and more opportunities for our team.
As a Fortune 500, global flooring leader with some of the best-known brands in the industry, Mohawk is a great place to start or develop your career with an emphasis on more of what’s important to you. Whether you want to lead more, innovate more, learn more or create more, you can find your more with Mohawk.
What we need:
Mohawk is looking for an Application Security Director who can do more for Mohawk Global Information Security.
Reporting to the Chief Information Security Officer (CISO), the Application Security Director will lead Mohawk’s application security team. The candidate will be responsible for providing strategic direction and leadership for the enterprise application security program, partnering with development teams across the global organization to embed security throughout the software development lifecycle.
The Security Operations Director is expected to interface with peers from areas such as Networks, Core Operations, Programming, and Facilities as well as with the leaders of business units to both share the corporate security vision with those individuals and to solicit their involvement in achieving higher levels of enterprise security through information sharing and cooperation.
What you’ll do:
· Accountability and ownership of the Application Security program including both strategy, execution, and ongoing operations.
· Build and maintain relationships with business and business-focused IT partners to gain support for and drive success to application security programs and processes.
· Build, develop, and execute on scalable and secure practices for the application security program
· Influence roadmaps and decisions of partner teams to promote application security
· Develop an application security framework, encompassing all aspects of application security, including vulnerability management, threat modeling, data protection, security logging/monitoring, secrets management, software supply chain security, secure code training, security review & testing, and compliance.
· Lead and develop the application security team focusing on:
§ Development standards & SDLC integration
§ Application Security
§ Product security
§ Software supply chain and secrets management
§ API & container security
· Build and scale developer-focused security programs including:
§ Developer training programs
§ Secure code bootcamps
§ Self-service security tooling
· Design and implement custom security tooling to ensure development teams have the best possible customer experience when interacting with Information Security.
What you have:
· Bachelor's degree in the field of computer security, information technology, computer science and/or 10 years equivalent work experience.
· 10+ years of information security experience, including:
§ Minimum 5 years hands-on software development
§ Minimum 5 years leading application security or security architecture programs
§ Experience maintaining and implementing SDLC at the enterprise level
§ Experience developing enterprise level security policies and standards with focus on application security
§ Experience partnering with the business supporting IT teams to design and implement security applications
§ Direct experience building developer security training programs
§ Bonus: Direct experience working in a large global manufacturing company.
What you’re good at:
· Knowledge of the principles, techniques and methodology of project management, quality management, and change management
· Proficient using PC, Internet and the Microsoft Office Suite.
· Strong team management skills, leading and motivating a team that is geographically dispersed and includes contractors and off-shore resources
· Ability to quickly identify and analyze risks & impacts and define alternatives & prioritizations to remove roadblocks. Ability to manage multiple deliverables independently.
· Strong written and verbal communication, presentation, and interpersonal skills to effectively exercise tact, discretion, judgment and diplomacy when interacting and/or negotiating with internal and external customers and senior management.
· Highly motivated self-starter. Ability to act as an advisor on professional and technical issues with a view towards reaching decisions.
· Ability to work effectively in a diverse and global work group and to achieve results through global team efforts. Ability to perform in a high pressure environment and/or crisis situation and render good decisions to resolve the problems, maintain safety and ensure adherence to Corporate Code of Conduct.
· Consistently proven ability to implement projects and contribute to concept development
What else?
· Normal office environment
· While we’re a primarily in-office team, we thrive on flexibility and ensuring our people can balance personal and professional time
· We’re located in a pretty great spot – check out this video to see what we mean
Mohawk Industries is a leading global flooring manufacturer that creates products to enhance residential and commercial spaces around the world. Mohawk’s vertically integrated manufacturing and distribution processes provide competitive advantages in the production of carpet, rugs, ceramic tile, laminate, wood, stone and vinyl flooring. Our industry-leading innovation has yielded products and technologies that differentiate our brands in the marketplace and satisfy all remodeling and new construction requirements. Our brands are among the most recognized in the industry and include American Olean, Daltile, Durkan, IVC, Karastan, Marazzi, Mohawk, Mohawk Home, Pergo, and Quick-Step. During the past decade, Mohawk has transformed its business from an American carpet manufacturer into the world’s largest flooring company with operations in Australia, Brazil, Canada, Europe, India, Malaysia, Mexico, New Zealand, Russia and the United States.
Mohawk Industries, Inc. is an Equal Opportunity Employer including disability/veteran committed to an inclusive workplace and a proud Drugs Don’t Work participant.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: APIs Application security CISO Compliance Computer Science Monitoring Product security SDLC Strategy Vulnerability management
Perks/benefits: Career development
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.