AppSec Jobs
← Back to all jobs

FedEx

M01P0: Manager Security Operations

Mumbai, Maharashtra, IndiaWebsite

Full details on LinkedIn

The complete job description, requirements, and application details are available on the original posting.


About FedEx

FedEx Corporation is a global leader in transportation, e-commerce, and logistics services, founded in 1971 by Frederick W. Smith. The company began operations in 1973 and is headquartered in Memphis, Tennessee. FedEx pioneered express shipping with a hub-and-spoke model, enabling urgent overnight deliveries. Today, it serves over 220 countries and territories with a comprehensive range of integrated services. FedEx offers various transportation and business services, including express shipping for packages and freight, ground shipping through FedEx Ground, and freight services via FedEx Freight. The company also provides specialized trucking, international freight forwarding, customs brokerage, and business services at FedEx Office locations. With a focus on digital innovations, FedEx has led advancements in online package tracking and offers data analytics and e-commerce tools. The company operates the world's largest all-cargo airline fleet, ensuring a robust global reach and efficient service delivery.

Industry

package/freight delivery

Employees

306,000

3805 engineers

Revenue

$88B

Website

Visit →

Security at FedEx

Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.

3 Intel Signals

Security Philosophy

  • FedEx's AppSec philosophy centers on 'Secure by Design' principles and proactive developer enablement, particularly for emerging technologies like AI.
  • The team views security as a consultative function rather than a gatekeeper, aiming to embed security directly into automated lifecycles. - Stated AppSec Mission: "We're dedicated to providing a safe, secure online environment for our customers."– FedEx Trust Center (fedex.com), - Developer Enablement: The team aims to "act as the primary security consultants for teams building business-facing AI products."– Manager AI Product Security & MLOps (FC95E090E931F4C9BE5CE7F72AD52EDB) - Risk Philosophy: Focus on "managing the digital risks"through "Secure by Design"architectural patterns. – Gene Sun Profile (zscaler.com).

Security Team

  • FedEx's Application Security function resides within the 'Enterprise Fraud & Security Solutions organization.' The team is led globally by Gene Sun, Chief Information Security Officer, who reports to Vishal Talwar, Chief Digital and Information Officer (CDIO).
  • Public professional profiles confirm the presence of dedicated Application Security Engineers.
  • As of, there are at least five active job postings related to AppSec, AI security, and MLOps security.
  • Key Leaders: - Gene Sun, Chief Information Security Officer – https://www.zscaler.com/cxorevolutionaries/cxo/profile/gene-sun - Vishal Talwar, Chief Digital and Information Officer (CDIO) – https://www.fedex.com/en-us/about/leadership/vishal-talwar.html Team Size Estimate (as of): - LinkedIn Search Query: site:linkedin.com/in/ "FedEx""Application Security" - Result: >= 4 profiles identified.
  • Active AppSec Job Postings (as of): - Count: 5 - Common Skill/Tool Patterns: Experience with Spring Boot, RESTful services, microservices architectures, and integrating security tools into CI/CD pipelines.

Key Initiatives

FedEx is currently focused on securing its AI and machine learning operations, as well as maintaining a public vulnerability intake process. - Security Champions Program: Information not publicly available. - "Shift Left"in Practice: The team works to "embed security directly into the MLOps lifecycle."– Manager AI Product Security & MLOps (FC95E090E931F4C9BE5CE7F72AD52EDB) - Vulnerability Management Process: - Intake: FedEx maintains a "Vulnerability Disclosure Program"where "The assessment and validation of disclosed issues are conducted through our trusted third-party security partner."– FedEx Trust Center (fedex.com) - Secure SDLC Artifacts: Use of "Secure AI Patterns"and "Secure by Design"architectural patterns. – Advisor AI Product Security & MLOps (0BDB0B54F009DECD09BB126229D0522E) - Recent Initiatives (Last 6 Months): Integration of "security tools like scanners and firewalls into developer CI/CD pipelines"specifically for AI products. – Advisor AI Product Security & MLOps (0BDB0B54F009DECD09BB126229D0522E)

Preparing for an AppSec interview?

Get the weekly briefing 2,000+ security pros trust.