Manager- Applications Security job at DFCU Bank
New
2 Days Ago
Linkedid Twitter Share on facebook
Manager- Applications Security
2025-11-25T04:50:18+00:00
DFCU Bank
https://cdn.greatugandajobs.com/jsjobsdata/data/employer/comp_7435/logo/dfcu%20Bank.jpeg
FULL_TIME
 
Kampala
Kampala
00256
Uganda
Banking
Management, Computer & IT
UGX
 
MONTH
2025-12-03T17:00:00+00:00
 
Uganda
8

Background

Reporting to the Senior Manager- Cyber Security Assurance, the Manager- Applications Security is responsible for providing governance and oversight for application security across the enterprise by establishing standards, embedding standards within the development process, prioritizing assessments, reviewing results, and ensuring timely remediation and reporting of security risks to senior management.

KEY ACCOUNTABILITIES

  • Implement and enforce application security baseline standards across all systems.
  • Define and maintain application security assessment priorities based on business criticality, risk exposure, and compliance needs.
  • Integrate security into the software development lifecycle and product design.
  • Establish secure coding practices and ensure continuous security testing within CI/CD pipelines.
  • Oversee execution of application security assessments, including static (SAST), dynamic (DAST), interactive (IAST), and manual reviews.
  • Review assessment outputs, validate findings, and ensure risk-based remediation recommendations are tracked to closure.
  • Oversee vulnerability assessments, penetration testing, and red team simulations.
  • Ensure timely remediation of identified risks and communicate critical findings to stakeholders.
  • Support internal and external audits by providing evidence of control effectiveness related to application security.
  • Ensure compliance with applicable standards and frameworks (e.g., OWASP ASVS, ISO 27001, PCI DSS, NIST).
  • Serve as the primary liaison between security, development, and business units to ensure security is embedded into development processes.
  • Facilitate risk discussions with application owners, architects, and product managers to balance security and delivery objectives.
  • Provide security advisory support during project design, development, and change management stages.
  • Lead vulnerability identification, prioritization, and recommendation on resolution.
  • Report on key metrics and ensure compliance with risk appetite thresholds.
  • Ensure no overdue findings , no failed validations and no repeat findings.
  • Lead and mentor a high-performing cybersecurity team.
  • Foster a culture of accountability, continuous improvement, and innovation.

KNOWLEDGE, SKILLS, AND EXPERIENCE REQUIRED

  • Bachelor’s Degree in Information Technology, Computer Science, or related field (Master’s preferred).
  • Professional certifications such as CISSP, CISM, CEH, CASE,
  • 5+ years of experience in cybersecurity, with at least 2 years in a leadership role.
  • Strong knowledge of ISO27001 ISMS, PCI DSS, and regulatory compliance requirements.
  • Experience in DevSecOps, vulnerability management, and penetration testing.
  • Strong leadership and people management skills.
  • Excellent understanding of cybersecurity frameworks and risk management.
  • Exceptional communication and executive reporting skills.
  • Ability to balance strategic planning with hands-on technical oversight.
  • Implement and enforce application security baseline standards across all systems.
  • Define and maintain application security assessment priorities based on business criticality, risk exposure, and compliance needs.
  • Integrate security into the software development lifecycle and product design.
  • Establish secure coding practices and ensure continuous security testing within CI/CD pipelines.
  • Oversee execution of application security assessments, including static (SAST), dynamic (DAST), interactive (IAST), and manual reviews.
  • Review assessment outputs, validate findings, and ensure risk-based remediation recommendations are tracked to closure.
  • Oversee vulnerability assessments, penetration testing, and red team simulations.
  • Ensure timely remediation of identified risks and communicate critical findings to stakeholders.
  • Support internal and external audits by providing evidence of control effectiveness related to application security.
  • Ensure compliance with applicable standards and frameworks (e.g., OWASP ASVS, ISO 27001, PCI DSS, NIST).
  • Serve as the primary liaison between security, development, and business units to ensure security is embedded into development processes.
  • Facilitate risk discussions with application owners, architects, and product managers to balance security and delivery objectives.
  • Provide security advisory support during project design, development, and change management stages.
  • Lead vulnerability identification, prioritization, and recommendation on resolution.
  • Report on key metrics and ensure compliance with risk appetite thresholds.
  • Ensure no overdue findings , no failed validations and no repeat findings.
  • Lead and mentor a high-performing cybersecurity team.
  • Foster a culture of accountability, continuous improvement, and innovation.
  • Strong knowledge of ISO27001 ISMS, PCI DSS, and regulatory compliance requirements.
  • Experience in DevSecOps, vulnerability management, and penetration testing.
  • Strong leadership and people management skills.
  • Excellent understanding of cybersecurity frameworks and risk management.
  • Exceptional communication and executive reporting skills.
  • Ability to balance strategic planning with hands-on technical oversight.
  • Bachelor’s Degree in Information Technology, Computer Science, or related field (Master’s preferred).
  • Professional certifications such as CISSP, CISM, CEH, CASE
bachelor degree
60
JOB-6925358a70671

Vacancy title:
Manager- Applications Security

[Type: FULL_TIME, Industry: Banking, Category: Management, Computer & IT]

Jobs at:
DFCU Bank

Deadline of this Job:
Wednesday, December 3 2025

Duty Station:
Kampala | Kampala | Uganda

Summary
Date Posted: Tuesday, November 25 2025, Base Salary: Not Disclosed

Similar Jobs in Uganda
Learn more about DFCU Bank
DFCU Bank jobs in Uganda

JOB DETAILS:

Background

Reporting to the Senior Manager- Cyber Security Assurance, the Manager- Applications Security is responsible for providing governance and oversight for application security across the enterprise by establishing standards, embedding standards within the development process, prioritizing assessments, reviewing results, and ensuring timely remediation and reporting of security risks to senior management.

KEY ACCOUNTABILITIES

  • Implement and enforce application security baseline standards across all systems.
  • Define and maintain application security assessment priorities based on business criticality, risk exposure, and compliance needs.
  • Integrate security into the software development lifecycle and product design.
  • Establish secure coding practices and ensure continuous security testing within CI/CD pipelines.
  • Oversee execution of application security assessments, including static (SAST), dynamic (DAST), interactive (IAST), and manual reviews.
  • Review assessment outputs, validate findings, and ensure risk-based remediation recommendations are tracked to closure.
  • Oversee vulnerability assessments, penetration testing, and red team simulations.
  • Ensure timely remediation of identified risks and communicate critical findings to stakeholders.
  • Support internal and external audits by providing evidence of control effectiveness related to application security.
  • Ensure compliance with applicable standards and frameworks (e.g., OWASP ASVS, ISO 27001, PCI DSS, NIST).
  • Serve as the primary liaison between security, development, and business units to ensure security is embedded into development processes.
  • Facilitate risk discussions with application owners, architects, and product managers to balance security and delivery objectives.
  • Provide security advisory support during project design, development, and change management stages.
  • Lead vulnerability identification, prioritization, and recommendation on resolution.
  • Report on key metrics and ensure compliance with risk appetite thresholds.
  • Ensure no overdue findings , no failed validations and no repeat findings.
  • Lead and mentor a high-performing cybersecurity team.
  • Foster a culture of accountability, continuous improvement, and innovation.

KNOWLEDGE, SKILLS, AND EXPERIENCE REQUIRED

  • Bachelor’s Degree in Information Technology, Computer Science, or related field (Master’s preferred).
  • Professional certifications such as CISSP, CISM, CEH, CASE,
  • 5+ years of experience in cybersecurity, with at least 2 years in a leadership role.
  • Strong knowledge of ISO27001 ISMS, PCI DSS, and regulatory compliance requirements.
  • Experience in DevSecOps, vulnerability management, and penetration testing.
  • Strong leadership and people management skills.
  • Excellent understanding of cybersecurity frameworks and risk management.
  • Exceptional communication and executive reporting skills.
  • Ability to balance strategic planning with hands-on technical oversight.

 

Work Hours: 8

Experience in Months: 60

Level of Education: bachelor degree

Job application procedure

Click Here to Apply Now

 

All Jobs | QUICK ALERT SUBSCRIPTION

Job Info
Job Category: Computer/ IT jobs in Uganda
Job Type: Full-time
Deadline of this Job: Wednesday, December 3 2025
Duty Station: Kampala | Kampala | Uganda
Posted: 25-11-2025
No of Jobs: 1
Start Publishing: 24-11-2025
Stop Publishing (Put date of 2030): 10-10-2076
Apply Now
Notification Board

Join a Focused Community on job search to uncover both advertised and non-advertised jobs that you may not be aware of. A jobs WhatsApp Group Community can ensure that you know the opportunities happening around you and a jobs Facebook Group Community provides an opportunity to discuss with employers who need to fill urgent position. Click the links to join. You can view previously sent Email Alerts here incase you missed them and Subscribe so that you never miss out.

Caution: Never Pay Money in a Recruitment Process.

Some smart scams can trick you into paying for Psychometric Tests.