TC - CS - CTM - AppSec - Senior Manager

EY

12+ yrs Bengaluru Full Time Hybrid (office + remote)
EY logo
Posted : today
Actively hiring

Job description

Join EY and build a remarkable career while contributing to a better working world. As a CTM Senior Manager in our Cyber Security team, you'll be instrumental in securing applications and platforms, ensuring seamless development, build, and deployment processes. Your role involves designing secure software by proactively identifying security use cases, especially for emerging risks in AI/ML applications. You will collaborate closely with DevOps, architects, developers, and QA teams to deliver highly reliable and secure products, while also fostering a strong security culture and advising on best practices for AI adoption.

Responsibilities

Lead high-impact application security engagements for enterprise clients, driving delivery and mentoring teams. Shape practice offerings across Secure SDLC, DevSecOps, Cloud Security, Threat Modeling, and AI/ML security. Guide organizations in the secure adoption of GenAI and AI-driven solutions, managing risks effectively. Responsibilities include leading application security assessments, designing Secure SDLC frameworks, advising CISOs/CTOs, managing complex engagements, and guiding clients on AI/ML security.

Contribute to practice development by creating proprietary methodologies and accelerators in AppSec. Engage in thought leadership through whitepapers, webinars, and conference talks. Support proposal development and build AI security offerings, including GenAI security frameworks and AI risk governance models.

Provide people and team leadership by mentoring and performance-managing consultants. Build high-performing, diverse teams focused on technical excellence and client empathy. Drive utilization, training, and career development within the team.

Qualifications

We are seeking a seasoned professional with experience in building enterprise-scale AppSec and DevSecOps programs. A strong understanding of AI/ML and GenAI technologies, including their security risks like model poisoning and prompt injection, is essential. Familiarity with secure AI adoption practices, governance, and responsible AI principles is required.

Candidates should possess executive presence, with the ability to influence senior leadership and translate complex technical risks into business outcomes. Experience contributing to thought leadership or open-source initiatives in application security is a plus. Familiarity with regulatory frameworks such as PCI DSS, HIPAA, GDPR, and NIST SSDF is also beneficial.

To qualify, you must hold a BE, B.Tech, or MCA degree. A minimum of 12 years of experience in application security, secure SDLC, DevSecOps, or security architecture is necessary. Excellent communication and stakeholder management skills are crucial, along with prior experience in a Big 4 or similar consulting environment as a Manager or Senior Manager.

Essential Skills

Application SecuritySecure SDLCDevSecOpsSecurity ArchitectureSASTDASTSCAPenetration TestingThreat ModelingAI/ML SecurityGenAI SecurityRisk ManagementStakeholder ManagementConsulting

Good to Have

Cloud SecurityThought LeadershipRegulatory Frameworks (PCI DSSHIPAAGDPRNIST SSDF)Open-source Initiatives

Highlights

  • Actively hiring

More Details

RoleTC - CS - CTM - AppSec - Senior Manager
IndustryManagement Consulting, Information Technology & Services
DepartmentInformation Security, Application Security, DevSecOps
Employment TypeFull Time, Hybrid (office + remote)

About the Company

EY Global Delivery Services ( EY GDS) logo

EY Global Delivery Services ( EY GDS)

Management Consulting

TC - CS - CTM - AppSec - Senior Manager at EY | SkillMX | SkillMX