Coupa Software

Sr. Manager, Application Security Engineering

Remote Pune, India
JavaScript Python C++ Microservices Ruby Go Java TypeScript
Description
Coupa makes margins multiply through its community-generated AI and industry-leading total spend management platform for businesses large and small. Coupa AI is informed by trillions of dollars of direct and indirect spend data across a global network of 10M+ buyers and suppliers. We empower you with the ability to predict, prescribe, and automate smarter, more profitable business decisions to improve operating margins.

Why join Coupa?

🔹 Pioneering Technology: At Coupa, we're at the forefront of innovation, leveraging the latest technology to empower our customers with greater efficiency and visibility in their spend.
🔹 Collaborative Culture: We value collaboration and teamwork, and our culture is driven by transparency, openness, and a shared commitment to excellence.
🔹 Global Impact: Join a company where your work has a global, measurable impact on our clients, the business, and each other. 

Learn more on Life at Coupa blog and hear from our employees about their experiences working at Coupa. 

About the Role:

We are looking for an extremely talented Sr. Manager to join our Application Security Team. You will be managing a dynamic team of Application Security Professionals based in the United States and India who are responsible for maintaining and extending all aspects of Application Security at Coupa.

Core Responsibilities:

  • Manage and grow our dynamic team of Application Security professionals
  • Continuously improve and expand the application security landscape at Coupa
  • Maintain, support and extend our application security tooling, standards, and processes, including but not limited to SAST, DAST, SCA
  • Participate in development and operational design reviews with a focus on application security
  • Escalation point for incident response from SecOps and managing cross-team actions
  • Represent Engineering within the company on security-focus discussions
  • Evaluate new security technologies and make recommendations to strengthen the overall security posture across Coupa’s suite of applications
  • Maintain, improve, and be a champion of Coupa’s Secure Software Development Lifecycle (SSDLC) methodologies, processes and standards
  • Drive threat modeling practices into our product design life cycle
  • Work closely with the Operations Security team to review and define best practices
  • Support compliance audits through evidence gathering and interviews
  • Work closely with the Product Management team and different stakeholders to define and influence the Application Security roadmap
  • Produce metrics reporting the state of application security programs and performance of development teams against requirements
  • Track vulnerability issues to ensure remediation based on our defined SLA

Requirements:

  • Must have leadership experience managing at least 3 direct reports
  • Should have 10+ years of experience and 3+ years in managing a team
  • Must have a strong background in Application Security
  • Must have a great understanding of OWASP Top10, CWE/SANS 25
  • Knowledge of identity management tools, SAML, OIDC, and SSO
  • Knowledge of OAuth 2, client-server authentication, server-server authentication
  • Good understanding of one or more of the following programming languages: Ruby, Go, Java, TypeScript/JavaScript, Python, or C/C++
  • Knowledge of SSL/TLS and how it helps secure transmission of data
  • Past experience developing secure web applications or microservices
  • Being able to influence others through collaboration and thought leadership
  • Experience designing, estimating, and leading the implementation of complex systems
  • Proven ability to work independently and take projects from design to delivery
  • Self-motivated, passion for learning, strong communication skills
  • Bachelor's or Master's degree in Computer Science (or equivalent), or equivalent experience

Extra Consideration:

  • Knowledge of compliance requirements: HIPAA, PCI, SOX, FedRAMP, SOC, etc
  • Knowledge of current cryptography algorithms, such as AES, BCrypt, Argon2
  • Presented security-related topics at conferences or meet-ups
  • Demonstrated knowledge of security/access control, scalability, high availability
  • Open source project contributions
At Coupa, we celebrate diversity and recognize its value to our customers and employees. Coupa is proud to be an equal-opportunity workplace and affirmative-action employer. All qualified applicants will receive consideration for employment regardless of age, race, color, religion, sex, sexual orientation, gender identity, national origin, genetic information, disability, veteran status, or any other applicable status protected by state or local law. 

Please be advised that inquiries or resumes from recruiters will not be accepted.

By submitting your application, you acknowledge that you have read Coupa’s Privacy Policy and understand that Coupa receives/collects your application, including your personal data, for the purposes of managing Coupa's ongoing recruitment and placement activities, including for employment purposes in the event of a successful application and for notification of future job opportunities if you did not succeed the first time. You will find more details about how your application is processed, the purposes of processing, and how long we retain your application in our Privacy Policy.
Coupa Software
Coupa Software
Cloud Infrastructure FinTech Procurement Software

0 applies

2 views

Other Jobs from Coupa Software

Lead Software Engineer

Foster City, CA US

Software Engineer in Test

Colombia Remote Hybrid

Sr. Software Engineer in Test

Remote Hybrid Colombia

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 401 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
  • We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
  • We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
  • Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
  • Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
  • Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅

What Fellow Engineers Say