Application Security Lead, Medical Services

Date: 8 Aug 2025

Location: MU

Company: International SOS

About the role

The Application Security Lead is responsible for overseeing and ensuring the security posture of the MSBL Enterprise Applications. This role involves leading application security initiatives, complying with outcomes of security assessments, assisting technical team with implementing secure development practices, and ensuring compliance with industry standards. The ideal candidate will collaborate with the MSBL IT team, local & regional IT, ITSS and Cybersecurity team to mitigate risks associated with application vulnerabilities.

 

Responsibilities also involve providing technical support to end-users, diagnosing and resolving application issues, and collaborating with development and infrastructure teams to improve system reliability. The ideal candidate will have strong problem-solving skills, technical expertise, and excellent customer service abilities.

Key responsibilities

  • Implement the organization’s application security strategy.
  • Assist with static (SAST), dynamic (DAST), and interactive (IAST) application security testing.
  • Manage vulnerability assessments, penetration testing, and code reviews.
  • Ensure remediation of security findings and track vulnerabilities to closure.
  • Support audit and regulatory compliance efforts related to application security.
  • Assist in security incident response related to application vulnerabilities.
  • Conduct risk assessments and provide mitigation recommendations.
  • Collaborate with cross-functional teams to address security risks.
  • Rapidly gain an in-depth understanding of the “as is” architecture landscape of existing applications.

Skills & Knowledge

Required Experience

  • 5+ years of experience in application security and development.
  • 2+ years in a leadership or mentorship role.
  • Familiarity with cloud security (AWS, Azure, GCP) and container security (Docker, Kubernetes).
  • Understanding of DevSecOps and CI/CD security integration.
  • Document solutions and maintain a knowledge base for Enterprise Applications
  • Assist in application deployments, patches, and upgrades in coordination with DevOps/Engineering teams

Required Qualifications

Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or related field.

Required Technical Skills

  • SQL databases (MySQL, PostgreSQL, SQL Server) and query troubleshooting.
  • APIs & Web Services (REST, SOAP, Postman).
  • Log analysis tools (Splunk, ELK, Grafana).
  • Scripting (PowerShell, Bash, Python) for automation.