Project Manager Application Security & VAPT
We are looking for a technically strong, process-driven Project Manager with proven expertise in Application Security, Mobile AppSec, API Security, VAPT, and Penetration Testing. This role is pivotal in managing end-to-end security assessment projects, ensuring timely, high-quality deliverables, and driving continuous improvement in our security practices.
Key Responsibilities:
- Lead and manage multiple AppSec, Mobile, API, and VAPT projects from initiation to closure.
- Collaborate with AppSec analysts, penetration testers, and client stakeholders to define scope, schedule, and deliverables.
- Maintain clear client communication for status updates, risk discussions, and handover plans.
- Translate technical findings into executive-level reports and coordinate remediation with dev/infra teams.
- Ensure quality control and timely delivery of penetration test reports and risk assessments.
- Conduct resource planning, allocation, and effort estimation.
- Drive process improvements, define KPIs, and contribute to capability maturity.
- Coordinate post-assessment support including revalidation, clarifications, and retesting.
- Align assessments with OWASP, NIST, ISO 27001, and other standards.
- Escalate blockers, manage risks, and provide data for dashboards and audits.
Required Skills and Qualifications:
- Bachelor's degree in Computer Science, Cybersecurity, or related field.
- 5+ years of experience in Application Security, API Security, Mobile AppSec, and VAPT.
- Strong knowledge of secure SDLC, OWASP Top 10, SANS Top 25, CVSS scoring.
- Hands-on penetration testing experience (Web/Mobile/API) is essential.
- Proficiency with tools: Burp Suite, OWASP ZAP, Postman, MobSF, Nessus, Nmap.
- Demonstrated project management capability planning, execution, reporting, closure.
- Excellent communication skills (verbal & written).
- Familiarity with JIRA, ServiceNow, MS Project is a plus.
- Preferred certifications: CEH, eJPT, eWPTX, eMAPT, OSCP, LPT, CISM.
Nice to have:
- Exposure to DevSecOps pipelines and CI/CD integration.
- Experience with cloud security assessments (AWS, Azure, GCP).
- Ability to manage third-party security assessment vendors.
- Contribution to internal knowledge bases, SOPs, and team mentorship.
Apply Now: Project Manager - Application Security or send your resumes on [Confidential Information].