Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Senior Manager – Application Security image - Rise Careers
Job details

Senior Manager – Application Security

Company Description

McDonald’s new growth strategy, Accelerating the Arches, encompasses all aspects of our business as the leading global omni-channel restaurant brand. As the consumer landscape shifts, we are using our competitive advantages to further strengthen our brand. One of our core growth strategies is to Double Down on the 4Ds (Delivery, Digital, Drive Thru, and Development). Our growth pillars emphasize the critical role technology plays as the best-in-class, global omni-channel restaurant brand. Technology enables the organization through digital technologies, and improving the customer, crew, and employee experience each and every day.

Leading the security of our business is the Global Cyber Security (GCS) organization made up of leading practitioners who partner with the enterprise and provide security for the next set of groundbreaking opportunities business. We take on the highest security challenges for McDonalds – driving security platforms, enabling McDonalds to do business securely, and helping continuously mature secure practices for McDonalds all while improving operational effectiveness. GCS provides access to compelling career paths for aspiring technologists. It’s bonus points when you get to see your family and friends use the tech you secure at their favorite McDonald’s restaurant.

Job Description

McDonald’s is seeking a Senior Manager – Application Security to support our cybersecurity team as we protect our customers and the McDonald’s brand. You will develop and lead an application security program that is designed to ensure that all developed software meets exact McDonald’s standards while enabling continued innovation to meet customers’ needs.

McDonald’s is investing heavily in technology to drive our growth. We’re looking at how to use technology to improve the customer experience and build new customer experiences. We’re also exploring technologies that can help us reduce or eliminate repetitive tasks and make employees’ jobs ultimately exciting. With all the new projects and initiatives, it is a dynamic era in our cybersecurity growth, helping to make a Safer and Better McDonald's!

The Senior Manager of Application Security must set high-level strategy and direction governance practices, including defining policies, procedures, and standards. The Senior Manager of Application Security also oversees the Application Security Champions Program. This role will provide clear expectations, goals, and success measures for application security initiatives, ensuring security is integrated throughout the Software Development Lifecycle (SDLC). This position will work closely with cybersecurity authorities, Global Technology teams, suppliers, and business leaders to define cybersecurity controls that protect McDonald’s assets and critical technology.

Responsibilities

  • Stay up to date on emerging threats and potential impact to our cyber ecosystem
  • Oversee the evaluation, implementation, and management of application security tools and technologies throughout the development process (e.g., SAST, DAST, AMAST).
  • Supervise security evaluations of application code and design to detect security flaws and secure code adherence in addition to compliance with relevant security policies and standards.
  • Define, implement and maintain application security policies, procedures, and standards across development teams.
  • Drive the education and training of development teams on secure coding practices, security tools, and development techniques.
  • Create and maintain collaborative relationships with other cyber / business teams & stakeholders to share knowledge and improve the overall security posture of the organization.
  • Build and maintain a network of Security Champions and ensure collaboration with the AppSec team to enhance security practices across development teams.
  • Measure and report on key metrics for all application security initiatives.

Benefits eligible: Yes

Bonus eligible: Yes

Long term incentive eligible: Yes

The expected salary range for this role is $149,260 - $190,310

The above represents the expected salary range for this job requisition. Ultimately, in determining your pay, we may also consider your experience, and other job-related factors.

Qualifications

Minimum Requirements

  • Bachelor's degree in Computer Science, Cybersecurity, or other related fields (Master’s Degree Preferred).
  • 5+ years of professional experience in Application Security, Software development, or related roles.
  • Experience managing technical teams and leading security projects and initiatives.
  • Experience with security tools and technology (e.g., SAST, DAST, AMAST).
  • Experience with secure software development practices and integration of security into the SDLC with pipeline integrations.
  • Ability to communicate complex security concepts to technical and non-technical stakeholders

Desired skills:

  • Relevant certifications (e.g., CISSP, CEH) preferred.
  • Familiarity with complex multinational companies and distributed business models.
  • Solid ability to develop strategic direction and long-term objectives without supervision.
  • Confirmed social skills with the ability to translate complex technical issues or concepts to non-technical audiences in a clear and concise manner that focuses on business value.
  • Ability to interpret and understand business needs and convey such issues to inform security teams.
  • Strong knowledge of application security tools (SAST, DAST, AMAST) and secure coding practices.
  • Experience with code reviews, identifying vulnerabilities, and ensuring code compliance.
  • Ability to develop, implement, and maintain security policies, procedures, and standards aligned with industry frameworks such as ISO 27001, NIST, and GDPR.
  • Proven ability to build and maintain strong collaborative relationships with stakeholders.
  • Proven experience in managing a team and overseeing security initiatives (e.g. Application Security Champions Program, tool integration within the SDLC, etc.)
  • Ability to oversee and guide the development and delivery of security training programs to development teams.
  • Ability to stay current on emerging security issues.

 

Additional Information

Benefits eligible: This position offers health and welfare benefits, a 401(k) plan, adoption assistance program, educational assistance program, flexible ways of working, and time off policies (including sick leave, parental leave, and vacation/PTO). Eligibility requirements apply to some benefits and may depend on job classification and length of employment. 

Bonus eligible: This position is eligible for a bonus, calculated based on individual and company performance.

Long term Incentive eligible: This position is eligible for stock or other equity grants pursuant to McDonald’s long-term incentive plan.

McDonald’s is committed to providing qualified individuals with reasonable accommodations to perform the essential functions of their jobs. Additionally, if you (or another applicant of whom you are aware) require assistance accessing or reading this job posting or otherwise seek assistance in the application process, please contact [email protected]

McDonald’s provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to sex, sex stereotyping, pregnancy (including pregnancy, childbirth, and medical conditions related to pregnancy, childbirth, or breastfeeding), race, color, religion, ancestry or national origin, age, disability status, medical condition, marital status, sexual orientation, gender, gender identity, gender expression, transgender status, protected military or veteran status, citizenship status, genetic information, or any other characteristic protected by federal, state or local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.

Nothing in this job posting or description should be construed as an offer or guarantee of employment.

Average salary estimate

$169785 / YEARLY (est.)
min
max
$149260K
$190310K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Senior Manager – Application Security, McDonald's Corporation

At McDonald's, we are on the lookout for a dynamic and experienced Senior Manager – Application Security to join our Global Cyber Security team based at our Chicago location. This exciting role is all about developing and leading an application security program that ensures all our software meets the high standards set by McDonald's. As we continue to enhance our technology to improve customer experiences, your mission will be to protect these innovations by implementing robust security measures. You will oversee security controls integrated throughout the Software Development Lifecycle (SDLC), and ensure that our developers are equipped with the knowledge of secure coding practices and necessary tools. You’ll work hand in hand with various stakeholders, including cybersecurity authorities and technology teams, creating a collaborative environment focused on elevating our security posture. With your expertise, McDonald’s can continue to thrive in the digital landscape, demonstrating our commitment to safety and excellence every day. Join us on this thrilling journey as we uplift our digital realm while giving you the chance to see your loved ones enjoy the technology you help secure at McDonald’s restaurants worldwide!

Frequently Asked Questions (FAQs) for Senior Manager – Application Security Role at McDonald's Corporation
What are the key responsibilities for the Senior Manager – Application Security at McDonald's?

The Senior Manager – Application Security at McDonald's is responsible for developing and leading the application security program, ensuring that all software meets McDonald's standards while promoting innovation. This includes overseeing the security of application code throughout the SDLC, implementing security policies, and fostering secure coding practices within development teams.

Join Rise to see the full answer
What qualifications are required for the Senior Manager – Application Security position at McDonald's?

To qualify for the Senior Manager – Application Security role at McDonald's, candidates should have a Bachelor's degree in Computer Science, Cybersecurity, or a related field, along with a minimum of 5 years of experience in application security or software development. Experience in managing technical teams and familiarity with security tools and technologies such as SAST and DAST are also essential.

Join Rise to see the full answer
How does McDonald's prioritize security in its application development process?

At McDonald's, security is prioritized by integrating it throughout the Software Development Lifecycle (SDLC). The Senior Manager – Application Security plays a crucial role in establishing security policies, training development teams on secure practices, and ensuring continuous evaluation of application security tools to protect the organization effectively.

Join Rise to see the full answer
What are some desired skills for a Senior Manager – Application Security at McDonald's?

Desired skills for the Senior Manager – Application Security role at McDonald's include relevant certifications like CISSP or CEH, experience with secure coding practices, and the ability to communicate complex security concepts to both technical and non-technical stakeholders. Additionally, proficiency in developing strategic security directions and strong collaboration skills are significant assets.

Join Rise to see the full answer
What does the career trajectory look like for a Senior Manager – Application Security at McDonald's?

A Senior Manager – Application Security at McDonald's has access to compelling career paths within the Global Cyber Security team. As McDonald's continues to grow and expand its technology portfolio, professionals in this role can anticipate involvement in innovative security projects, leadership opportunities, and a chance to shape operational security practices across the organization.

Join Rise to see the full answer
Common Interview Questions for Senior Manager – Application Security
What is your experience with application security tools and techniques?

When answering this question, be specific about the tools you've used, such as SAST and DAST, and how you've implemented them in previous projects. Highlight your understanding of how these tools fit into the overall security strategy and their effectiveness in preventing security vulnerabilities.

Join Rise to see the full answer
Can you explain the importance of integrating security into the SDLC?

Express how integrating security into the SDLC helps in identifying and mitigating security risks early in the development process, ultimately leading to more secure applications. Discuss your experience in training development teams and implementing security during the various phases of the SDLC.

Join Rise to see the full answer
Describe a complex security challenge you've encountered and how you overcame it.

Provide a clear narrative of a specific challenge, the steps you took to assess the situation, and the ultimate resolution. Focus on demonstrating your problem-solving skills and how you collaborated with other teams or stakeholders to achieve a secure solution.

Join Rise to see the full answer
How do you stay current with emerging security threats?

Discuss your approach to continuous learning, such as attending conferences, following industry leaders on social media, or participating in online webinars. Emphasize the importance of staying updated to better protect the organization from vulnerabilities.

Join Rise to see the full answer
What strategies do you utilize for educating development teams on secure coding practices?

Explain your training methods, such as workshops, hands-on coding sessions, or the development of instructional materials. Highlight the importance of fostering a security-minded culture among developers to enhance overall application security.

Join Rise to see the full answer
Can you give an example of how you have measured the success of security initiatives?

Share specific metrics you've used to evaluate the performance of application security initiatives, such as vulnerability reduction rates, compliance adherence, or developer engagement in training programs. This illustrates your ability to assess and report on security effectiveness.

Join Rise to see the full answer
What is your experience with leading a team and overseeing security projects?

Describe your previous leadership experiences, focusing on how you motivated your team, defined goals, and managed projects. Offer examples of successful outcomes that were achieved under your leadership.

Join Rise to see the full answer
What challenges do you foresee in securing rapidly evolving technological environments?

Discuss your insights into the complexities posed by rapid technological advancement and how organizations can balance innovation with security. Offer strategic ideas on implementing security measures without hampering development speed.

Join Rise to see the full answer
How would you handle a situation where security policies were not being followed by development teams?

Focus on the importance of open communication and collaboration in addressing this issue. Explain how you would work with the team to understand their challenges and guide them on the necessary steps to align with security policies.

Join Rise to see the full answer
Why do you want to work at McDonald's as a Senior Manager – Application Security?

Share your passion for working at McDonald's, emphasizing the significance of contributing to a globally recognized brand that prioritizes customer and employee safety. Highlight your eagerness to innovate within a forward-thinking organization.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
McDonald's Corporation Hybrid 110 N Carpenter St, Chicago, IL 60607, USA
Posted 4 days ago
Photo of the Rise User
McDonald's Corporation Hybrid 110 N Carpenter St, Chicago, IL 60607, USA
Posted 4 days ago
Photo of the Rise User
Posted 4 days ago
Photo of the Rise User
Posted 5 days ago
Posted 5 days ago
Mindrift Remote No location specified
Posted 7 days ago
Posted 7 days ago
Photo of the Rise User
Posted 5 days ago
Dental Insurance
Family Medical Leave
Paid Holidays
Photo of the Rise User
AllTrails Remote San Francisco
Posted yesterday

McDonald's Corporation is a chain of fast food restaurants. Headquartered in Oak Brook, Illinois, the company's famous menu items include the Big Mac, Chicken McNuggets and Egg McMuffin. McDonald's is a publicly owned company and operates a Canadi...

236 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
March 19, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!