Director, Application Security (Cybersecurity Defense)
$135.4k - $208.1kCardinal Health
What Cybersecurity Defense contributes to Cardinal Health
Cybersecurity Defense focuses heavily on threat detection, incident response, and implementing security measures to protect our digital assets and infrastructure at Cardinal Health. The Director, Application Security is responsible for establishing, leading, and evolving the enterprise application security strategy to embed security into the software development lifecycle (SDLC) and reduce application-layer risk across the business segments. This leader ensures that applications and APIs are designed, developed, and deployed in alignment with security policies & standards, regulatory requirements, and risk management objectives. This Director oversees segment-aligned application security capabilities across Pharma, Medical, and Commercial Technology environments, enabling consistent governance, scalable processes, and effective risk mitigation across diverse application portfolios.
Location - Open to candidates nationwide working in a fully remote capacity, with preference towards those based local to Central Ohio (willingness to travel into our Corporate HQ in Dublin, OH during certain period of the year is a plus)
Responsibilities
Lead the enterprise application security strategy aligned with cybersecurity, risk management, and business objectives.
Establish governance frameworks to embed security into the software development lifecycle (SDLC) across all application domains.
Collaborate with enterprise architecture, engineering, and product teams to align application security with technology strategies and transformation initiatives.
Serve as an advisor to executive and business leadership on application security risks, priorities, and investment decisions.
Drive a secure-by-design culture across development and engineering teams.
Oversee application security capabilities across Pharma, Medical, and Commercial Technology segments, ensuring consistent implementation of security practices.
Define segment-specific requirements and approaches to address unique regulatory, operational, and risk considerations.
Ensure alignment of application security practices across segments while enabling flexibility to support business-specific needs.
Drive standardization of processes, tooling, and reporting across segment application security teams.
Oversee enterprise application security testing programs, including SAST, DAST, SCA, and IAST across all application environments.
Ensure vulnerabilities are identified, assessed, prioritized, and remediated during the development lifecycle prior to deployment.
Establish secure coding standards and integrate security controls into CI/CD pipelines and development workflows.
Collaborate with development teams to reduce application security technical debt and improve code quality.
Oversee implementation of runtime security controls for applications and APIs, including WAF, API gateways, and runtime monitoring solutions.
Ensure security requirements are embedded into application and API design, deployment, and operational processes.
Collaborate with engineering and infrastructure teams to enforce runtime protections aligned with enterprise architecture.
Monitor runtime risks and coordinate mitigation efforts across application environments.
Lead development and integration of application security tooling, including configuration, onboarding, and operational management.
Define use cases, policies, and detection logic for application security tools to ensure effective coverage and scalability.
Drive integration of application security tools into CI/CD pipelines and DevSecOps workflows.
Ensure application security tooling aligns with enterprise security architecture and standards.
Collaborate with Security Architecture teams to define secure design patterns, reference architectures, and application security standards.
Ensure application security requirements are incorporated into solution design and architecture reviews.
Partner with engineering teams to implement secure development lifecycle (SDLC) practices and controls.
Support evaluation of new technologies and architectures to ensure alignment with security requirements.
Ensure application security practices align with regulatory requirements, compliance standards, and enterprise risk management frameworks.
Provide application security oversight for audits, regulatory assessments, and compliance reporting.
Collaborate with risk and compliance teams to translate application security risks into enterprise risk insights.
Support remediation of identified risks and ensure alignment with risk tolerance and governance processes.
Define and track KPIs and KRIs related to application security posture, vulnerability management, and SDLC integration.
Provide regular reporting to executive leadership on application security risks, trends, and program effectiveness.
Leverage data and analytics to drive continuous improvement in application security practices and outcomes.
Identify opportunities to enhance automation, efficiency, and scalability of application security processes.
Collaborate with application development, product, IT, security operations, and business teams to integrate application security into enterprise processes.
Partner with Cyber Detection & Response to ensure application security findings are integrated into monitoring and incident response workflows.
Engage with segment leaders to align application security initiatives with business priorities and risk considerations.
Support M&A activities by assessing and integrating application security controls for acquired applications.
Build and lead a high-performing application security organization with expertise across secure development, testing, and runtime protection.
Ensure alignment of team capabilities with evolving technologies, threats, and business needs.
Qualifications
Ideally targeting individuals with 10+ years of experience in cybersecurity, with a focus on application security, secure development, or DevSecOps.
Deep expertise in application security testing methodologies (SAST, DAST, SCA, IAST) and secure development practices, strongly preferred.
Strong understanding of application and API security, cloud-native architectures, and modern development frameworks.
Experience leading application security programs across large, complex organization, preferred.
Strong understanding of cybersecurity frameworks (e.g., NIST CSF, OWASP, ISO 27001) and regulatory requirements.
Demonstrated ability to collaborate with cross-functional teams and influence executive stakeholders.
Strong leadership, communication, and problem-solving skills.
#LI-LP
#LI-Remote
Anticipated salary range: $135,400 - $208,100
Bonus eligible: Yes
Benefits: Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
Medical, dental and vision coverage
Paid time off plan
Health savings account (HSA)
401k savings plan
Access to wages before pay day with myFlexPay
Flexible spending accounts (FSAs)
Short- and long-term disability coverage
Work-Life resources
Paid parental leave
Healthy lifestyle programs
Application window anticipated to close: 07/01/2026 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply.
Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law.
To read and review this privacy notice click here (
$100k
...mission‑critical programs across national security, defense, and public service delivery. Recent contract awards in cybersecurity and operational readiness underscore Maximus... ...and modifies RESTful APIs supporting application functionality. Performs database management...ApplicationContract workRemote work$40k
...mission‑critical programs across national security, defense, and public service delivery. Our... ...Engineer supports 24x7 enterprise cybersecurity operations by monitoring security tools... ...activities, including access changes, application removal, configuration updates, and...ApplicationContract workRemote work$130k - $140k
...Description Role: Manager, Security Operations... ..., NC) Department: Cybersecurity - Security Operations... ...Reports to: Senior Director, Security Operations... ...regional equivalents where applicable). Security... ...accurate, validated, and defensible . Support internal...ApplicationFull time- ...to operate more effectively, securely, and efficiently. We support... ...federal missions across defense, civilian, and intelligence... ...scientists, data engineers, cybersecurity staff, and customer stakeholders... ...Serco team- then submit your application now for immediate...ApplicationFull timeContract workPart timeLocal areaImmediate startFlexible hours
$135.4k - $208.1k
...What Cybersecurity Defense contributes to Cardinal Health Cybersecurity... ...response, and implementing security measures to protect our digital... ...at Cardinal Health. The Director, Exposure Management is responsible... ...across infrastructure, applications, and cloud environments....ApplicationTemporary workLocal areaImmediate startRemote workFlexible hours- ...designing, implementing, automating, and maintaining security platforms that support enterprise cybersecurity operations. The role focuses on integrating... ...to a culturally diverse workforce. All qualified applicants will receive consideration for employment without...ApplicationImmediate startRemote workFlexible hours
- ...services. The role ensures high availability, security, and performance of systems supporting... ...IFS ERP Cloud and field service applications. Oversee monitoring, patching, backup,... ...processes. Manage IT Security to enforce cybersecurity policies, endpoint protection, and identity...ApplicationFull timeContract workTemporary workWork at office
$69.55k - $125.73k
...Description The Defense Sector at Leidos has a current job opportunity for... ...deployment, roll-back, and monitoring of applications into software development, test,... ...Secret clearance. Professional cybersecurity certification such as Security+, or similar. Experience designing...ApplicationWork from home$127k - $155k
...Enforces application security in all phases of the software development life cycle. Works closely with team members to define application... ...for cloud and on-premises systems. Works closely with cybersecurity, infrastructure, and application teams to ensure identity...ApplicationContract workWork at office- ...transformers, and integrate models into secure production workflows. Collaboration... ...federal security clearance requirements, applicant must be a United States Citizen or Permanent... ...-to-end AI/ML/NLP plans compliant with cybersecurity policies. Apply software engineering...ApplicationHourly payPermanent employmentContract workLocal areaRemote work
$94.2k
...JOB SUMMARY This job secures AI/ML, Generative AI, and agentic... ..., data engineering, and application teams to integrate security... ...policy; advise leadership on AI cybersecurity risk and regulatory considerations... ...security (prompt injection defense, unsafe output handling,...ApplicationFor contractorsWork at officeLocal areaRemote work- ...Overview Your Future. Secured. ISC2 is a force for good. As the world’s leading nonprofit member organization for cybersecurity professionals, our core values — Integrity, Advocacy... ..., log, and resolve Salesforce application issues in coordination with Salesforce...ApplicationWork experience placementWork at officeRemote work
$94.1k - $144.8k
...resilient, scalable data services across complex application portfolios. It also establishes database standards, security baselines, and governance practices while... ...roadmaps in collaboration with architecture and cybersecurity teams. Compensation Ranges Compensation...ApplicationContract workWork experience placementWork at office- ...QualificationsIf you like high profile and challenging cloud system security work supporting the readiness of America's Navy ships,... ...(ISSE) will be working with a dynamic team supporting applications on the Defense Information System Agency (DISA) military cloud.An active...ApplicationFull timeContract workPart timeFor contractorsLocal areaRemote workFlexible hours
$90.1k - $209.5k
...Oracle Cloud to provide the broadest, most secure cloud in the industry. Oracle offers a... ...of integrated services, including applications as a service, platform as a service, and... ...scope and coordinate multiple complex, cybersecurity initiatives, ensuring effective prioritization...ApplicationTemporary workImmediate startFlexible hours$99.6k - $192.9k
...a critical part in designing, developing, and maintaining our Security Data Lake and associated data products. The core requirement... ...skills and experience, and base salary will be set within the applicable range according to job scope, responsibility and competitive...ApplicationImmediate startRemote workFlexible hours$146k - $241k
...workload orchestration for latency and throughput.Partner with cybersecurity and compliance teams to ensure adherence to GxP, FDA 21 CFR... ...Biotechnologies collects and processes personal data relating to job applicants. The organization is committed to being transparent about how...ApplicationWork from home- ...Description: Remote Our client, an industry leader in cybersecurity and threat intelligence, seeks a Lead Business Analyst / Quality... ...artificial intelligence (AI) tools as part of its initial application screening and hiring process. You may receive email and...ApplicationHourly payContract workLocal areaRemote work
$138.9k - $180.6k
...accomplishments and vision in maritime and defense sectors. You will solve difficult... ...hold or be able to obtain U.S. DoD SECRET security clearance Ability to travel up to 25%... ...products/solutions for Naval and Marine applications (including robotic systems) is a plus...ApplicationTemporary workFor contractorsWork experience placementCasual workLocal areaRemote work- ...Responsibilities Maintains, monitors, and verifies correct operations of client’s networks, applications and hardware via multiple solutions including company provided RMM and cybersecurity software and hardware. Installs and configures hardware components such as servers,...ApplicationFull timeWork experience placementWork at officeRemote work
$71.2k - $158.2k
...The Senior Federal Information Systems Security Engineer (ISSE) serves as a technical integrator... ..., and compliant with all required cybersecurity and interoperability standards. This... ...roles may be required to comply with applicable requirements, such as immunization/occupational...ApplicationContract workTemporary workWork experience placementRelocationFlexible hours$105k - $141.75k
...technical skill and relevant project experience in at least one of the following focus areas: Infrastructure modernization projects Application modernization projects Process modernization projects The candidate will also be able to deploy fit for purpose workload in a...ApplicationRemote workWorldwide- ...such as AWS, Azure, GCP, Cloud Foundry, Docker / Kubernetes Desired Project Experience A practical experience of mainframe application modernization project is highly desirable. For example: Experience with tools and methodologies used to migrate mainframe workloads...ApplicationLocal areaRemote workWorldwide
$154.7k - $200.9k
...The application window is expected to close on: 06/26/2026 Job posting may be removed earlier if the position is filled or if a sufficient... ...Remote United States Meet the Team At Cisco, Corporate Security plays a critical role in more than just protection-it's a...ApplicationFull timeTemporary workLocal areaRemote workFlexible hours- ...NEHiring Rate:$45.000Job Posting:JR2026-00025378 IT Security Engineer Ill - (SecOps Team Supervisor) (Open)Applications No Longer Accepted On (If no date is displayed,... ...a IT Security Engineer III to join their Cybersecurity team. This role performs advanced cybersecurity...ApplicationWork experience placementWork at officeWork visa
$188k - $235k
...healthcare. Guided by our mission to make the world’s health data secure, accessible and actionable, we provide critical data solutions... ...security systems, including the internal system portfolio application and related security tooling, ensuring reliability, extensibility...Application$122.9k - $150k
...Key Infrastructure services that enable secure authentication, encryption, and digital... ...cryptographic keys for users, devices, applications, and services, including issuance,... ...Qualifications Bachelor's degree in Cybersecurity, Information Technology, Computer Science...ApplicationContract workWork at office$115k - $135k
...Officer and Data Governance Director. The Privacy Manager will... ...Collaborate with information security team to ensure that security... ...in accordance with applicable privacy laws. Collaborate... ...with data loss prevention and cybersecurity events, including an understanding...ApplicationRemote workFlexible hours$221.7k - $266k
...connect a globally distributed company. As Director of IT, you will lead the team... ...enterprise identity, core productivity applications, corporate networking, and corporate cloud... ...IT meaningfully better, faster, and more secure. What You Will Do: Lead and develop...ApplicationFull timeWork at officeRemote workShift work$50k
...partner supporting mission‑critical programs across national security, defense, and public service delivery. Our work focuses on sustaining... ...is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national...Contract work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Director, Application Security (Cybersecurity Defense). Be the first to apply!
- vice president of application development Lincoln, NE
- oracle apps technical consultant Lincoln, NE
- now accepting applications Lincoln, NE
- cash application clerk Lincoln, NE
- app support Lincoln, NE
- application system administrator Lincoln, NE
- application security lead Lincoln, NE
- cash applications coordinator Lincoln, NE
- cash application representative Lincoln, NE
- application development Lincoln, NE

