Talent.com
Head of Application Security-GSRM-US

Head of Application Security-GSRM-US

SHEINLos Angeles, CA, US
job_description.job_card.variable_hours_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Job Function

Global Security and Risk Management

Job Title

Head of Application Security

Job Location

Singapore or Los Angeles, US

About SHEIN

SHEIN is a global online fashion and lifestyle retailer, offering SHEIN branded apparel and products from a global network of vendors, all at affordable prices. Headquartered in Singapore, with more than 16,000 employees operating from offices around the world, SHEIN is committed to making the beauty of fashion accessible to all, promoting its industry-leading, on-demand production methodology, for a smarter, future-ready industry.

To learn more about SHEIN follow us at sheingroup.com.

Position Summary :

SHEIN Global Security and Risk Management (GSRM) is a global security organization that oversees security infrastructure, risk management, data privacy, business fraud, governance, and regulatory compliance across SHEIN's global footprint. It is composed of a team of security professionals, innovators and thought leaders that have had decades of global security experience, led large scale transformations, and served in Fortune 500 executive roles.

Here, innovation isn't simply about protecting and empowering our company. We develop solutions that are practical today and scalable tomorrow; and we create collaborative teams dedicated to innovation across each of our businesses to share our common values and vision.

The Head of Application Security, a senior executive residing within GSRM, is responsible for leading the overall strategy, execution and roadmaps of application security and the entire secure software development lifecycle. This position will lead the team of engineering and SDL experts and work with technology and business partners and units to mitigate application risks.

This leader should have a deep technical understanding of the full SDL lifecycle and extensive experiences in code audit and application security testing. He or she must be familiar with industry standards and best practices, and must be able to effectively work with development, engineering, and business counterparts, across a broad deeply technical environment in the development world. This role will coordinate with application and system developers and owners on all aspects of SDL lifecycle through planning, feasibility analysis, design, development, testing to implementation and operations. This leader will also assist their leadership with ensuring all solutions and technologies are properly

supported, implemented, and sufficiently met the needs for which they are deployed to protect SHEIN application footprint and its integrity.

Core Responsibilities :

  • Oversee the application security team, consisting of direct and indirect reports (including full time employees, contractors, MSS staff and external service providers personnel). This includes hiring, training, career development, and performance management.
  • Lead all aspects of SDL and application testing disciplines, including but not limited to threat modeling, application risk assessment, vulnerability management, SAST and DAST tooling, attack surface monitoring, and application penetration testing.
  • Create and update new strategies, project plans and policy documents based on compliance and operational requests that map to SHEIN's business requirements
  • Develop and manage security budget forecast, expense, and technology, service and vendor roadmaps.
  • Liaise with external agencies, such as law enforcement, standards and technology organization, advisory bodies and industry and peer working groups as necessary, to ensure that the organization maintains a strong application security posture and technical congruency.
  • Work directly with development teams to facilitate code audit, solution requirements and technology roadmaps to ensure compliance with industry and regulatory standards.
  • Establish credibility throughout the organization by earning the reputation for being a proactive senior leader and change agent.
  • Sustain high-availability service levels and ensure fulfillment of business-wide service levels and operational support objectives.

Skills and Qualifications :

  • A minimum of 10 years of experience in global scale cyber security and development environment with strong focus in a DevSecOps eco-system and building security into the CI / CD pipeline, with at least 5 years of direct people management experience.
  • Possess a Bachelor's degree or higher in the field of Engineering, Computer Science, Business Analytics, or equivalent advance technology field of study
  • Must be skilled at mentoring and motivating staff, communicating goals and other corporate initiatives and driving to results
  • Strong knowledge of programming languages, software development lifecycle, and security testing skills with ability to work through complex application footprint and derive characteristics of risk scenarios
  • Experience building application security metrics, attack surface monitoring, and incident response strategies and playbooks in the technology industry.
  • Experience with change management lifecycle, development and regular preparation of management status and key metrics reports
  • Should have strong experience working with technical teams on developing advanced risk engines, algorithms and models for threat detection
  • Ability to translate complex application security threats from a technical perspective to business-line understanding and execution
  • Ability to manage extremely technical staff and work in a matrix organization
  • High level of personal integrity, with the ability to professionally handle confidential matters and exudes the appropriate level of judgment and maturity
  • Must have strong business and financial acumen to make sound business and budgeting decisions.
  • Must be a strong communicator with exceptional verbal and written communication skills to translate the vision and strategy into clear priorities and direction, both internally and externally.
  • Proficiency in Mandarin is an advantage
  • Education Level

    Bachelor's Degree

    Field of Study

    Computer Engineering or Science, Information Sciences Technology, Business Analytics, Cyber Security or related fields

    Certifications : Relevant cyber security certifications, such as CISSP, CISM, CISA and / or PMP are highly desired

    Years of Experience

    Generally requires 10+ years related experience. Five or more years in an e- commerce and technology field and management capacity preferred

    Benefits and Perks

    $220,000 / year-$360,000 / year + benefits

    Individual compensation is determined by skills, experiences and qualifications.

  • Healthcare (medical, dental, vision, prescription drugs)
  • Health Savings Account with Employer Funding
  • Flexible Spending Accounts (Healthcare and Dependent care)
  • Company-Paid Basic Life / AD&D insurance
  • Company-Paid Short-Term and Long-Term Disability
  • Voluntary Benefit Offerings (Voluntary Life / AD&D, Hospital Indemnity, Critical Illness, and Accident)
  • Employee Assistance Program
  • Business Travel Accident Insurance
  • 401(k) savings plan with discretionary company match and access to a financial advisor to meet retirement planning goals.
  • Vacation-Paid time off
  • 9 Paid Holidays / 6 Sick Days
  • Employee Discounts
  • Perks (HQ Location)
  • Free weekly catered lunch at HQ
  • Dog-Friendly office
  • Free Gym Access at HQ
  • Free Swag Giveaways
  • Annual Holiday Party
  • Invitations to pop-ups and other company events
  • Complimentary daily office snacks and beverages
  • Free Shuttle Service from HQ to LA Union Station
  • SHEIN is an equal opportunity employer committed to a diverse workplace environment.

    serp_jobs.job_alerts.create_a_job

    Head Of Application • Los Angeles, CA, US

    Job_description.internal_linking.related_jobs
    • serp_jobs.job_card.promoted
    Enterprise Identity Architect

    Enterprise Identity Architect

    ClientWestlake Village, CA, US
    serp_jobs.job_card.temporary
    Duration : 5 months contract (potential to go PERM eventually).The Vice President Architect is responsible for providing strategic guidance, designs, and solution patterns to team members, and is th...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Customs and Border Protection Officer

    Customs and Border Protection Officer

    U.S. Customs and Border ProtectionAltadena, CA, US
    serp_jobs.job_card.full_time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Manager, Safe@ GSOC

    Manager, Safe@ GSOC

    NetflixLos Angeles, CA, US
    serp_jobs.job_card.full_time
    Los Angeles, California, United States of America.Netflix is one of the world's leading entertainment services, with over 300 million paid memberships in over 190 countries enjoying TV series, film...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Marine Interdiction Agent

    Marine Interdiction Agent

    U.S. Customs and Border ProtectionAltadena, CA, United States
    serp_jobs.job_card.full_time
    Air and Marine Operations (AMO), a component of U.Customs and Border Protection (CBP) offers those with Merchant Mariner Credentials the exceptional opportunity of a career in law enforcement worki...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_less
    • serp_jobs.job_card.promoted
    Senior Technology Cloud Security Architect

    Senior Technology Cloud Security Architect

    Cooley LLPLos Angeles, CA, United States
    serp_jobs.job_card.full_time
    Senior Technology Cloud Security Architect.Cooley is seeking a Technology Cloud Security Architect to join the Security team. Cooley Technology embraces a culture of customer service excellence, and...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Head of Application Security-GSRM-US (Los Angeles)

    Head of Application Security-GSRM-US (Los Angeles)

    SHEINLos Angeles, CA, US
    serp_jobs.job_card.full_time +1
    Global Security and Risk Management.SHEIN is a global online fashion and lifestyle retailer, offering SHEIN branded apparel and products from a global network of vendors, all at affordable prices.H...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Information Security Architect-Hybrid

    Information Security Architect-Hybrid

    Logix Federal Credit UnionValencia, CA, United States
    serp_jobs.job_card.full_time
    Information Security Architect-Hybrid.Information Security Architect.LFCU enterprise information security architecture.Enforce information security technology standards, roadmaps, and governance.Co...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Global Head of Physical Security and SafetyNewUS - Culver City, United States

    Global Head of Physical Security and SafetyNewUS - Culver City, United States

    ScopelyCulver City, CA, US
    serp_jobs.job_card.full_time
    Global Head Of Physical Security And Safety.We are seeking a strategic, experienced, and highly collaborative leader to serve as the Global Head Of Physical Security And Safety.This individual will...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Sr. Director, Global Safety and Security

    Sr. Director, Global Safety and Security

    HerbalifeLos Angeles, CA, US
    serp_jobs.job_card.full_time
    Senior Director Of Global Safety And Security.The Senior Director of Global Safety and Security will lead Herbalife's global security and employee safety programs. This leader will set strategic dir...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Global Head of Physical Security and SafetyUS - Culver City, United States

    Global Head of Physical Security and SafetyUS - Culver City, United States

    ScopelyCulver City, CA, US
    serp_jobs.job_card.full_time
    Global Head Of Physical Security And Safety.We are seeking a strategic, experienced, and highly collaborative leader to serve as the Global Head Of Physical Security And Safety.This individual will...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Manager Cybersecurity Engineering-Hybrid

    Manager Cybersecurity Engineering-Hybrid

    Logix Federal Credit UnionValencia, CA, United States
    serp_jobs.job_card.full_time
    Manager Cybersecurity Engineering-Hybrid.Manager Cybersecurity Engineering.Leads and provides direction to cybersecurity engineers in the complex day-to-day operational support of hardware, softwar...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Security Systems Project Manager

    Security Systems Project Manager

    Bogaard Group InternationalLos Angeles, CA, US
    serp_jobs.job_card.full_time
    Security Systems Project Manager.We are looking for an experienced Security Systems Project Manager to drive accurate and cost effective standardization and decision making that supports consistenc...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Director, Global Security Systems

    Director, Global Security Systems

    Sony Pictures EntertainmentCulver City, CA, US
    serp_jobs.job_card.full_time
    Director, Global Security Systems.Reporting to the Vice President, Security Operations and Security Technology, the Director, Global Security Systems will oversee the strategy, implementation, and ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Risk, Issue and Opportunity Management Lead

    Risk, Issue and Opportunity Management Lead

    KBREl Segundo, CA, US
    serp_jobs.job_card.full_time
    Risk, Issue and Opportunity Management Lead.KBR's National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the intelligence and national ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Product Manager, Security Applications

    Product Manager, Security Applications

    The J. Paul Getty TrustLos Angeles, CA, United States
    serp_jobs.job_card.full_time +1
    Product Manager, Security Applications.Commensurate with experience and internal equity.Getty Digital - 1286-Business Applications. Getty is committed to creating a welcoming workplace that reflects...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Staff Product Manager, Infrastructure and System Security

    Staff Product Manager, Infrastructure and System Security

    The Trade DeskLos Angeles, CA, United States
    serp_jobs.job_card.full_time
    The Trade Desk is changing the way global brands and their agencies advertise to audiences around the world.How? With a media buying platform that helps brands deliver a more insightful and relevan...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Corporate M&A Associate Attorney

    Corporate M&A Associate Attorney

    Kaizen StackupAltadena, CA, US
    serp_jobs.job_card.full_time
    Corporate M&A Associate Attorney – Top-Tier Tech & Life Sciences Deals.Are you a strategic dealmaker with a passion for high-stakes M&A work? Ready to take your legal career to th...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Director of Technology Platforms & Applications

    Director of Technology Platforms & Applications

    Cooley LLPLos Angeles, CA, United States
    serp_jobs.job_card.full_time
    Director of Technology Platforms & Applications.Cooley is seeking a Director of Technology Platforms & Applications to join the. Technology Platforms and Applications.The Director of Technology Plat...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Head of Application Security-GSRM-US

    Head of Application Security-GSRM-US

    SHEINLos Angeles, CA, US
    serp_jobs.job_card.full_time
    Global Security and Risk Management.SHEIN is a global online fashion and lifestyle retailer, offering SHEIN branded apparel and products from a global network of vendors, all at affordable prices.H...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Customs and Border Protection Officer - Experienced (GS9)

    Customs and Border Protection Officer - Experienced (GS9)

    U.S. Customs and Border ProtectionAltadena, CA, US
    serp_jobs.job_card.full_time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours