Manager - AI & Application Security
Bupa Arabia
Date: 7 hours ago
City: Remote
Contract type: Full time
Remote
Job Description
To manage application and AI security across enterprise systems and AI-enabled solutions.
1 - Application & AI Security Governance:
4 - Application Security Testing & Vulnerability Management:
Education
Bachelor’s degree in computer science, Software Engineering, Cybersecurity, or related field.
To manage application and AI security across enterprise systems and AI-enabled solutions.
1 - Application & AI Security Governance:
- Establish and maintain the Application Security and AI Security program.
- Define security standards, control requirements, and governance processes for applications and AI-enabled solutions.
- Align application and AI security practices with cybersecurity, privacy, data protection, enterprise architecture, and risk management requirements.
- Maintain secure development guidelines for traditional applications, APIs, cloud-native applications, and AI solutions.
- Conduct threat modelling for business applications, APIs, cloud applications, AI use cases, and AI-enabled workflows.
- Review application and AI solution architectures to identify security design weaknesses.
- Identify risks such as prompt injection, insecure AI integrations, model misuse, excessive agency, data leakage, and unauthorized access to sensitive information.
- Embed application and AI security requirements across design, development, testing, release, and production deployment stages.
- Advise development teams on secure software engineering, secure coding, API security, secrets management, dependency management, and DevSecOps practices.
- Define security gates before production deployment for applications and AI solutions.
4 - Application Security Testing & Vulnerability Management:
- Manage and review findings from SAST, DAST, API security testing, software composition analysis, container scanning, and manual security reviews.
- Prioritize vulnerabilities based on severity, exploitability, exposure, business criticality, and data sensitivity.
- Coordinate remediation with development, infrastructure, application owners, and cybersecurity teams.
- Track closure of security findings and validate remediation before release or production go-live.
- Assess AI use cases for cybersecurity, privacy, legal, regulatory, and data protection risks.
- Evaluate third-party AI services, internal AI platforms, APIs, plugins, and AI integrations with enterprise systems from cybersecurity perspective
- Define controls for prompt injection, data leakage, model misuse, insecure outputs, unauthorized data access, and AI-assisted software vulnerabilities.
- Monitor emerging application security and AI security threats, vulnerabilities, attack techniques, and industry best practices.
- Provide expert advisory to development, infrastructure, cybersecurity, privacy, and business teams.
- Support secure adoption of AI technologies across the organization while enabling innovation safely.
- Report application and AI security posture, risks, remediation progress, and key metrics to management.
- Continuously improve tools, processes, standards, and security review practices.
- Communication skills
- Risk based approach.
- Experience with Secure SDLC.
- Experience performing threat modelling.
- Experience securing APIs.
- Experience reviewing source code.
- Exposure to AI/LLM technologies, either through implementation, governance, or security assessments.
- Experience supporting DevSecOps environments.
- Experience assessing application security risks in regulated environments is preferred
- Certified Secure Software Lifecycle Professional (CSSLP) preferred
- GIAC Web Application Penetration Tester (GWAPT) preferred
- CISSP preferred
- Vendor AI security or AI governance certifications (Microsoft, AWS, google, or equivalent)
Education
Bachelor’s degree in computer science, Software Engineering, Cybersecurity, or related field.
How to apply
To apply for this job you need to authorize on our website. If you don't have an account yet, please register.
Post a resumeSimilar jobs
Cabin Crew - Recruitment Event | Amman, Jordan
Riyadh Air | طيران الرياض,
Remote
5 hours ago
Riyadh Air (RX), headquartered in the Saudi Capital, is the new national airline that’s shaping the future of flying. It seeks to lead the aviation industry by transforming Saudi Arabia into a global aviation and trade hub – a digitally native airline that will connect the kingdom to more than 100 destinations. What does it mean to be Cabin Crew...
Field Service Professional - Decatur, AL
Vivint,
Remote
2 days ago
Welcome to the intersection of energy and home services. At NRG, we’re driven by our passion to create a smarter, cleaner and more connected future.Vivint Smart Home, an NRG owned company, is a leading smart home company in the United States, dedicated to redefining the home experience with intelligent products and services. We find purpose in proactively protecting and keeping...
PSAB BOSS: Lodging Lead
KBR, Inc.,
Remote
4 days ago
TitlePSAB BOSS: Lodging LeadBelong, Connect, Grow with KBR! The KBR PSAB Program provides comprehensive BASE OPERATING SUPPORT-INSTALLATION (BOS-I) services at Prince Sultan Air Base (PSAB) in the Kingdom of Saudi Arabia (KSA). These services are delivered to support the 378 Air Expeditionary Wing (AEW), mission partners, and tenant units, encompassing a diverse range of personnel including transient, temporary duty (TDY),...