Manager - AI & Application Security
Bupa Arabia
Date: 2 weeks ago
City: Remote
Contract type: Full time
Remote
Job Description
To manage application and AI security across enterprise systems and AI-enabled solutions.
1 - Application & AI Security Governance:
4 - Application Security Testing & Vulnerability Management:
Education
Bachelor’s degree in computer science, Software Engineering, Cybersecurity, or related field.
To manage application and AI security across enterprise systems and AI-enabled solutions.
1 - Application & AI Security Governance:
- Establish and maintain the Application Security and AI Security program.
- Define security standards, control requirements, and governance processes for applications and AI-enabled solutions.
- Align application and AI security practices with cybersecurity, privacy, data protection, enterprise architecture, and risk management requirements.
- Maintain secure development guidelines for traditional applications, APIs, cloud-native applications, and AI solutions.
- Conduct threat modelling for business applications, APIs, cloud applications, AI use cases, and AI-enabled workflows.
- Review application and AI solution architectures to identify security design weaknesses.
- Identify risks such as prompt injection, insecure AI integrations, model misuse, excessive agency, data leakage, and unauthorized access to sensitive information.
- Embed application and AI security requirements across design, development, testing, release, and production deployment stages.
- Advise development teams on secure software engineering, secure coding, API security, secrets management, dependency management, and DevSecOps practices.
- Define security gates before production deployment for applications and AI solutions.
4 - Application Security Testing & Vulnerability Management:
- Manage and review findings from SAST, DAST, API security testing, software composition analysis, container scanning, and manual security reviews.
- Prioritize vulnerabilities based on severity, exploitability, exposure, business criticality, and data sensitivity.
- Coordinate remediation with development, infrastructure, application owners, and cybersecurity teams.
- Track closure of security findings and validate remediation before release or production go-live.
- Assess AI use cases for cybersecurity, privacy, legal, regulatory, and data protection risks.
- Evaluate third-party AI services, internal AI platforms, APIs, plugins, and AI integrations with enterprise systems from cybersecurity perspective
- Define controls for prompt injection, data leakage, model misuse, insecure outputs, unauthorized data access, and AI-assisted software vulnerabilities.
- Monitor emerging application security and AI security threats, vulnerabilities, attack techniques, and industry best practices.
- Provide expert advisory to development, infrastructure, cybersecurity, privacy, and business teams.
- Support secure adoption of AI technologies across the organization while enabling innovation safely.
- Report application and AI security posture, risks, remediation progress, and key metrics to management.
- Continuously improve tools, processes, standards, and security review practices.
- Communication skills
- Risk based approach.
- Experience with Secure SDLC.
- Experience performing threat modelling.
- Experience securing APIs.
- Experience reviewing source code.
- Exposure to AI/LLM technologies, either through implementation, governance, or security assessments.
- Experience supporting DevSecOps environments.
- Experience assessing application security risks in regulated environments is preferred
- Certified Secure Software Lifecycle Professional (CSSLP) preferred
- GIAC Web Application Penetration Tester (GWAPT) preferred
- CISSP preferred
- Vendor AI security or AI governance certifications (Microsoft, AWS, google, or equivalent)
Education
Bachelor’s degree in computer science, Software Engineering, Cybersecurity, or related field.
How to apply
To apply for this job you need to authorize on our website. If you don't have an account yet, please register.
Post a resumeSimilar jobs
Public Area Attendant - Raffles The Red Sea
Raffles Hotels & Resorts,
Remote
19 hours ago
Company DescriptionRaffles & Fairmont the Red Sea, positioned in the kingdom's groundbreaking Red Sea Project, will provide visitors access to two nature-focused resorts. With 361 rooms, 11 distinct dining concepts, including overwater restaurant with views of the Red Sea and the mangroves, and a Spa.Raffles The Red Sea will be a sanctuary of refined elegance and timeless luxury, nestled within...
MONITOR CCTV (SPECIAL NEEDS)
Sheraton Hotels & Resorts,
Remote
1 week ago
Additional InformationJob Number 26105202Job Category Loss Prevention & SecurityLocation Junction of King Fahad and King Abdullah Road, Riyadh, Saudi Arabia, Saudi Arabia, 11623VIEW ON MAPSchedule Full TimeLocated Remotely? NPosition Type Non-ManagementPosition SummaryPatrol all areas of the property; assist guests with room access. Monitor Closed Circuit Televisions, perimeter alarm system, duress alarms, and fire life safety system. Lock property entrances when...
Bellman
Morgans Originals,
Remote
1 week ago
Company DescriptionPortaluna, a Morgans Originals HotelMorgans Originals are original hotels with original stories. We stand for vibrancy, intrigue and iconic details, celebrating the feeling of an infinite Friday night, when anything can happen, no matter what day of the week it is. By balancing a refined outlook with the best lifestyle programming, we capture the excitement of being in-the-know --...