Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Zillow

Director, Application Security

Zillow

. Lead and develop a multi-manager organization across Application Security and Security Architecture .

Posted 9/23/2026full-timeRemote • United StatesLead💰 $220,200 - $351,800 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates extensive experience in leading Application Security initiatives, integrating security into product design, and managing multi-cloud security environments. Proficient in developing strategic roadmaps, workforce planning, and building security capabilities within CI/CD pipelines.

Highest-signal resume keywords
Application Security Program DevelopmentMulti-Cloud Security ExpertiseZero Trust Architecture ExperienceDetection Engineering and AutomationLeadership in Security Team Management

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Security EngineeringSoftware DevelopmentPlatform EngineeringIaC Security with TerraformKubernetes SecurityContainer SecurityDAST/SAST IntegrationVulnerability ManagementRisk QuantificationSecure Coding Practices
Soft Skills
Executive CommunicationTalent DevelopmentStrategic PlanningCross-Functional CollaborationLeadership
Tools & Technologies
AWSSIEMSOARDLPEDREPMCSPM/CWPPSASTDASTInfrastructure-as-Code
Industry Keywords
Consumer TechnologyFintechApplication SecuritySecurity ArchitectureCI/CD PipelinesExecutive LeadershipThreat ModelingCloud-Native InfrastructureSecurity Enablement ProgramsTechnical Risk Management

Tech Stack

Tools & technologies
AWSCloudKubernetesPythonSDLCTerraformGo

About the role

Key responsibilities & impact
  • Lead and develop a multi-manager organization across Application Security and Security Architecture
  • Establish and execute a 2–3-year strategic roadmap aligned with product and platform engineering priorities
  • Own workforce planning, organizational design, talent acquisition, and development of future security leaders
  • Manage budget, tooling portfolio, and vendor relationships
  • Represent Application Security at executive and leadership levels and translate technical risk into business impact
  • Lead an AppSec organization partnering with product engineering
  • Build security capabilities into CI/CD pipelines, frameworks, and developer tooling
  • Create security enablement programs, secure coding training, and internal tooling
  • Ensure application portfolio coverage including secure design review, DAST/SAST integration, dependency management, and API security
  • Own product security strategy and embed security in product design
  • Build and maintain a vulnerability management program with SLAs, risk-based prioritization, and executive reporting
  • Establish enterprise security patterns, reference architectures, and guardrails for cloud-native AWS-centric infrastructure
  • Drive Zero Trust principles and identity-driven access
  • Embed security patterns into infrastructure-as-code and platform primitives
  • Partner in platform and product design reviews
  • Evaluate emerging threats and technology shifts and evolve controls

Requirements

What you’ll need
  • 12+ years of progressive security experience
  • At least 5 years in leadership roles managing managers and multifunctional security teams
  • Experience in a high-growth consumer technology or fintech company strongly preferred
  • Background in security engineering, software development, or platform engineering
  • Experience owning multiple security domains simultaneously
  • Track record building Application Security programs integrated into SDLC, CI/CD, and developer workflows
  • Deep expertise in multi-cloud security, preferably AWS
  • Experience with IaC security using Terraform or CloudFormation
  • Kubernetes and container security knowledge
  • Zero Trust architecture experience
  • Detection engineering experience, including custom detection pipelines, SOAR automation, and threat-model-driven coverage
  • Ability to quantify and communicate security risk in business and financial terms
  • Experience presenting to executive leadership and ideally board-level audiences
  • Experience hiring and developing elite security engineers
  • Familiarity with SIEM, SOAR, DLP, EDR, EPM, CSPM/CWPP, SAST/DAST, IaC, and container security tooling
  • Proficiency in at least one scripting or programming language such as Python or Go

Benefits

Comp & perks
  • Equity awards based on experience, performance, and location
  • Remote work from a physical location of the employee’s choice
  • Flexible work from wherever employees are most productive through Cloud HQ
  • Equal employment opportunity and accommodation support