Iru
Technology
ApplicationSecurityLead/Manager
Neural analysis suggests this role is
optimal for Lead candidates.
“Application Security Lead / Manager at Iru. Skills: Application Security, SSDLC, Threat modeling, Vulnerability management. Own Application Security program. Manage SSDLC”
Industry & Context.
What They're Looking For.
Must Have
7+ years experience, Secure software development practices, Modern application architectures, Threat modeling experience, Security assessments experience, Code review experience, Vulnerability management experience, Remediation programs experience, Manage penetration testing engagements, Modern AppSec tooling familiarity, CI/CD security integration familiarity, Communication skills
Nice to Have
Leading AppSec programs, Building AppSec programs, Cloud-native environments experience, AWS security best practices, Azure security best practices, GCP security best practices, DevSecOps methodologies experience, Automation experience
What You'll Do.
Own Application Security program
Establish security standards
Integrate security requirements
Conduct security reviews
Perform security assessments
Identify architectural risks
Mitigate security risks
Drive vulnerability management
Establish remediation priorities
Track remediation performance
Manage penetration testing
Coordinate findings validation
Translate testing results
Oversee security tooling
Integrate security controls
Improve security gates
Partner with Engineering
Drive security awareness
Promote secure coding
Build scalable processes
Promote security ownership
How You'll Work.
Team & Collaboration
Engineering leadership partnership; Product leadership partnership; Security leadership partnership; Cross-functional teams
Communication Scope
Influence engineering stakeholders; Influence product stakeholders
Process & Methodology
Roadmap integration, Development processes
Full Job Description
## Description About Iru Iru is the AI-powered security & IT platform used by the world’s fastest-growing companies to secure their users, apps, and devices. Built for the AI era, Iru unifies identity & access, endpoint security & management, and compliance automation—collapsing the stack and giving IT & security time and control back. Iru is backed by some of the smartest investors in tech—General Catalyst, Tiger Global, Felicis, Greycroft, and First Round Capital. In July 2024, Iru raised $100 million from General Catalyst, valuing the company at $850 million. Customers include Notion, Cursor, Lovable, Replit, and Mercor, and Iru partners with industry leaders such as ServiceNow and AWS. Iru was named to Forbes’ America’s Best Startup Employers 2025 list for employee engagement and satisfaction. The Opportunity Iru is seeking an experienced and hands-on Application Security Lead / Manager to own and mature our Application Security program. This role will serve as the operational leader for AppSec, partnering closely with Engineering, Product, and Security leadership to ensure security is embedded throughout the software development lifecycle. The ideal candidate combines strong technical application security expertise with the ability to influence engineering teams, drive remediation accountability, and scale security processes in a fast-moving environment. This position is critical to strengthening our security posture, reducing risk, and enabling engineering teams to deliver secure products at speed. ## Responsibilities Application Security Program Ownership Own and manage the Application Security program and secure software development lifecycle (SSDLC). Establish, maintain, and continuously improve application security standards, policies, and procedures. Ensure security requirements are integrated into engineering roadmaps and development processes. Security Assessments & Threat Modeling Conduct technical security reviews and application security assessments
Applying for this Application Security Lead / Manager role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Lever
- Lever uses a streamlined one-page form — apply in under 5 minutes.
- LinkedIn import works well; review parsed data before submitting.
- The cover letter field is optional but visible to reviewers — use it to differentiate.
- Referral codes from employees can significantly boost visibility of your application.
ANONYMOUS · UNFILTERED
What do employees actually say about Iru?
Real rants from real employees. Read before you apply.