Own end-to-end remediation of vulnerabilities identified through Web, API, Bug Bounty submissions, and external penetration tests.
Write and ship code-level fixes for application vulnerabilities (e.g., OWASP Top 10, OWASP API Security Top 10, authentication flaws, injection, SSRF, insecure deserialization) directly in relevant codebases (GitHub/GitLab/Bitbucket).
Triage findings from Security tools (SAST/SCA/Secrets/DAST) to validate true positives and prioritize based on exploitability and business risk.
...
Role Overview: As a Regional Assistant Manager Security Engineering, you will play a key role in leading and strengthening the organization's security engineering and infrastructure security capabilities. Youwill be responsible for designing, implementing, and overseeing security controls across identity, cloud, infrastructure, and enterprise technology environments. The role requires strong technical expertise, security architecture knowledge, and the ability to collaborate effectively with infrastructure, application, cloud, and business teams to reduce cyber risk, enhance security resilience, and support the organization's overall cybersecurity objectives.
Assist in reviewing and implementing policies, plans, and procedures to support and improve the School’s safety and security programs.
Assist in evaluating the effectiveness of the safety and security measures. Recommend and implement new initiatives and improvements to the safety and security management program, particularly in areas such as emergency preparedness, accident prevention, general safety, and risk management.
Conduct regular walkthrough inspections and work closely with the Security Coordinator and Facilities Manager to ensure adherence to safety and security standards.
...