Back to board
Early applicant
InMobi·Media·7 hours ago

Manager- Application Security

Bengaluru, IndiaFull-timeSenior · 10-14 years

About this role

InMobi Advertising is a global technology leader helping marketers win the moments that matter. Our advertising platform reaches over 2 billion people across 150+ countries and turns real-time context into business outcomes, delivering results grounded in privacy-first principles. Trusted by 30,000+ brands and leading publishers, InMobi is where intelligence, creativity, and accountability converge. By combining lock screens, apps, TVs, and the open web with AI and machine learning, we deliver receptive attention, precise personalization, and measurable impact.

Through Glance AI, we are shaping AI Commerce, reimagining the future of e-commerce with inspiration-led discovery and shopping. Designed to seamlessly integrate into everyday consumer technology, Glance AI transforms every screen into a gateway for instant, personal, and joyful discovery.  Spanning diverse categories such as fashion, beauty, travel, accessories, home décor, pets, and beyond, Glance AI delivers deeply personalized shopping experiences. With rich first-party data and unparalleled consumer access, it harnesses InMobi’s global scale, insights, and targeting capabilities to create high impact, performance driven shopping journeys for brands worldwide.

Recognized as a Great Place to Work, and by MIT Technology Review, Fast Company’s Top 10 Innovators, and more, InMobi is a workplace where bold ideas create global impact. Backed by investors including SoftBank, Kleiner Perkins, and Sherpalo Ventures, InMobi has offices across San Mateo, New York, London, Singapore, Tokyo, Seoul, Jakarta, Bengaluru and beyond.

At InMobi Advertising, you’ll have the opportunity to shape how billions of users connect with content, commerce, and brands worldwide. To learn more, visit www.inmobi.com

About the job  

Who are we and What do we do?  

InMobi Group’s mission is to power intelligent, mobile-first experiences for enterprises and consumers. Its businesses across advertising, marketing, data and content platforms are shaping consumer experience in a world of connected devices. InMobi Group has been recognized on both the 2018 and 2019 CNBC Disruptor 50 list and as one of Fast 

What does the team do?  

Opportunity is part of the evolving cyber security group which is laser focussed on setting up industry benchmarks in managing & guarding against digital risks in a “Cloud Native- DevOps Only” environment. It is a lean-mean-special action group where every cyber sentinel gets an opportunity to work across domain, has an independence to challenge status quo & evolve cyber practises to next level of maturity. Our core competencies revolve around “Product & Platform security”, “Cloud Native Risk Management” and “Detection & Response”.  

What will you be doing? 

This role combines technical leadership and hands-on execution: you will spend ~60% of your time performing application security testing, vulnerability assessments and penetration testing, code reviews, AI/ML security testing, and automation, and ~40% of your time managing the AppSec domain, leading the team, defining strategy, and coordinating with stakeholders.

  • Lead the Application Security program across products, platforms, and engineering teams, defining strategy, roadmap, and measurable KPIs for AppSec and AI security maturity.
  • Manage and mentor a team of AppSec engineers, ensuring effective prioritization, workload management, and continuous skill development.
  • Perform hands-on SAST, DAST, manual code review, penetration testing, and vulnerability validation across web, mobile (Android and iOS), API, and cloud platforms.
  • Perform security assessments of AI/ML and GenAI systems, including LLM applications, model endpoints, RAG pipelines, and agentic workflows.
  • Partner with Engineering, Product, Cloud, DevOps, and Data Science teams to embed security controls early in the SDLC and ML/AI development lifecycle through automation, guardrails, and secure-by-design principles.
  • Drive remediation governance: triage, track, and report on vulnerabilities with accountability across stakeholders; ensure closure within defined SLAs.
  • Conduct security architecture and design reviews for new applications, APIs, integrations, and AI/ML systems to ensure alignment with enterprise security standards.
  • Define and enforce secure coding guidelines, threat modeling practices (including AI/LLM threat models), and application and model hardening standards.
  • Collaborate with the GRC and Incident Response teams to ensure audit readiness, compliance evidence and support during incidents.
  • Research and adopt emerging AppSec and AI security technologies, frameworks, and practices to continuously strengthen defenses and developer experience.
  • Drive metrics and reporting to senior leadership on AppSec performance, risk posture, and progress against roadmap goals.

What is expected of you?

  • 10 to 14 years of experience.
  • Proven leadership experience in Application Security, DevSecOps, or Software Security Engineering, with the ability to lead a high-performing team while staying technically hands-on.
  • Deep hands-on understanding of SAST, DAST, and secure SDLC integration; prior experience implementing and scaling security testing automation.
  • Working knowledge of AI/ML and LLM security, threat modeling and testing against frameworks such as the OWASP Top 10 for LLM Applications, OWASP ML Security Top 10, and MITRE ATLAS; familiarity with securing GenAI/agentic applications and AI pipelines.
  • Strong stakeholder management skills to influence and collaborate with product, engineering, cloud, and data science teams for timely triage and remediation.
  • Experience managing AppSec tooling stack like Checkmarx, Burp Suite Enterprise, OWASP ZAP, MobSF, and open-source frameworks; exposure to AI security testing tooling (e.g., Garak, PyRIT, or equivalent) is a plus.
  • Solid grasp of secure coding, vulnerability exploitation, and mitigation techniques across web, mobile, API, and AI/ML layers.
  • Familiarity with CI/CD automation, scripting (Python, Bash, PowerShell), and container security (Docker/Kubernetes).
  • Strong understanding of OWASP Top 10, SANS Top 25, OWASP LLM Top 10, and industry best practices.
  • Excellent communication, reporting, and presentation skills for technical and executive audiences.
  • Certifications such as OSCP, GWAPT, GPEN, or equivalent are preferred; AI security certifications (e.g., CAISP) are a plus.
  • Prior experience in building or scaling AppSec or AI security programs and driving measurable security improvements is a strong plus.

The InMobi Culture

At InMobi, culture isn’t a buzzword; it's an ethos woven by every InMobian, reflecting our diverse backgrounds and experiences.

We thrive on challenges and seize every opportunity for growth. Our core values — thinking big, being passionate, showing accountability, and taking ownership with freedom — guide us in every decision we make.

We believe in nurturing and investing in your development through continuous learning and career progression with our InMobi Live Your Potential program.

InMobi is proud to be an Equal Employment Opportunity employer and is committed to providing reasonable accommodations to qualified individuals with disabilities throughout the hiring process and in the workplace.

Visit https://www.inmobi.com/company/careers to better understand our benefits, values, and more!