> Markdown version of [/jobs/ext/1746714-organizational-change-management-lead-application-security](https://www.wearedevelopers.com/jobs/ext/1746714-organizational-change-management-lead-application-security). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Organizational Change Management Lead - Application Security - **Company:** Spectraforce - **Location:** Lake County, IL, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Cyber Security, Secure Coding, Software Engineering, Software Security - **Published:** July 9, 2026 - **Apply:** http://leoforce.us/Careers/Spectraforce/JobDetails.html?jobid=5a5c588e-9f15-45fa-a6d8-9b5cc6393e9a&OrgId=1&UserId=2044 ## About the Role List required and preferred qualifications (up to 10). Include education, skills and experience. · Expertise in change management methodologies, tools, and principles · Change management certification required (Prosci is preferred) · Experience and proven success leading change initiatives, implementing technology/process changes for developer, technical or cybersecurity teams · Skilled in stakeholder engagement, collaboration across all organizational levels, including IT, business, and cybersecurity functions · Strong communication, facilitation, and user experience strategies, as well as developing enterprise communications, coaching, and training · Ability to design and refine change strategies to drive adoption, including developing training programs and measuring OCM adoption metrics · Familiarity with project management practices and tools · Availability to start before year end and commit through 2026 ## Description Serve as the lead OCM specialist for an enterprise-wide initiative in Information Security and Risk Management (ISRM) within BTS, focused on embedding secure coding practices from the outset of software and application development. This role is integral to delivering on the 2025/2026 Cybersecurity Roadmap, enhancing organizational security posture and cyber hygiene. The OCM lead will partner closely with developers, business stakeholders, and cross-functional teams to ensure seamless adoption and sustainment of secure software development practices. Major Responsibilities: · Conduct change impact assessments to identify areas affected by the integration of secure coding standards. · Lead stakeholder analysis, mapping, and engagement activities to ensure all impacted groups are identified, informed, and aligned. · Develop and implement a multi-channel communications strategy to drive awareness, understanding, and buy-in. · Collaborate with the Awareness & Training team to design and deploy targeted learning strategies and materials for developers and business partners. · Assess organizational readiness to adopt secure coding practices and recommend interventions to address any gaps. · Measure and report on adoption rates, resistance points, and overall initiative progress using defined success metrics. · Design and execute a sustainment plan to ensure secure coding becomes a consistent part of business-as-usual (BAU) operations. · Serve as a key advisor and change competency advocate, keeping leadership and stakeholders informed of risks, challenges, and achievements. ## Related Videos - [Software Security 101: Secure Coding Basics](https://www.wearedevelopers.com/videos/220-software-security-101-secure-coding-basics) - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) - [Unleashing the Power of Developers: Why Cybersecurity is the Missing Piece?!?](https://www.wearedevelopers.com/videos/712-unleashing-the-power-of-developers-why-cybersecurity-is-the-missing-piece) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Now is the time for industrialized software development](https://www.wearedevelopers.com/magazine/601-now-is-the-time-for-industrialized-software-development) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Building Security Champions](https://www.wearedevelopers.com/magazine/87-building-security-champions) - [Résumé-Driven Development: How IT trends affect the job market for software developers](https://www.wearedevelopers.com/magazine/59-resume-driven-development-how-it-trends-affect-the-job-market-for-software-developers) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)