About the Job:
The Manager of AI & Application Security will oversee the management of application and AI security across enterprise systems and AI-enabled solutions.
Ready to apply for roles like this?
Unlock the company name and direct application link. Subscribers get instant access to fresh jobs across Dubai, Abu Dhabi and Riyadh, many with visa support.
Unlock employer & apply directly
Key Responsibilities:
-
Application & AI Security Governance:
- Establish and maintain the Application Security and AI Security program.
- Define security standards, control requirements, and governance processes for applications and AI-enabled solutions.
- Align practices with cybersecurity, privacy, data protection, enterprise architecture, and risk management.
- Maintain secure development guidelines for traditional applications, APIs, cloud-native applications, and AI solutions.
-
Secure Design, Architecture Review & Threat Modeling:
- Conduct threat modeling for business applications, APIs, cloud applications, AI use cases, and workflows.
- Review application and AI solution architectures for security weaknesses.
- Assess authentication, authorization, session management, data flows, integration patterns, and trust boundaries.
- Identify risks such as prompt injection, insecure AI integrations, data leakage, and unauthorized access.
-
Secure SDLC & DevSecOps Enablement:
- Embed application and AI security requirements across all development stages.
- Advise development teams on secure software engineering and secure coding practices.
- Define security gates for production deployment of applications and AI solutions.
-
Application Security Testing & Vulnerability Management:
- Manage security findings from various testing methods and prioritize vulnerabilities for remediation.
- Coordinate with development and cybersecurity teams on remediation efforts.
- Track the closure of security findings and validate remediation before release.
-
AI Security, Privacy & Data Protection Risk Assessment:
- Evaluate AI use cases for cybersecurity, privacy, and data protection risks.
- Review data flows, access controls, logging, retention, and exposure risks from AI processes.
- Define controls for prompt injection, data leakage, and unauthorized data access.
-
Advisory, Monitoring & Continuous Improvement:
- Monitor emerging threats and vulnerabilities in application security and AI security.
- Provide expert advice to teams and report on security posture and risks.
- Promote the secure adoption of AI technologies across the organization.
Skills Required:
- Excellent communication skills.
- Experience with Secure SDLC and performing threat modeling.
- Knowledge of securing APIs and reviewing source code.
- Familiarity with AI technologies and DevSecOps environments.
- Certifications such as Certified Secure Software Lifecycle Professional (CSSLP), GIAC Web Application Penetration Tester (GWAPT), CISSP, or vendor AI security certifications are preferred.
Experience & Education:
- 4+ years of relevant experience.
- Bachelor's degree in computer science, Software Engineering, Cybersecurity, or related field.
Location and Work Conditions:
On-site, Full-time in Jiddah, Makkah, Saudi Arabia.