Eugene McClure

Application Security | DevSecOps | Secure SDLC | AI Governance | CSSLP | SecAI+

Role
Devsecops - Application Security & Security Engineering Lead at iPipeline
Location
Philadelphia, PA, US
LinkedIn followers
500 followers

About Eugene McClure

Product Security & Security Engineering Expert specializing in embedding security seamlessly into engineering workflows without slowing innovation. Proven success in deploying and maturing AppSec tools (SAST, SCA, DAST) and integrating automated security testing into CI/CD pipelines, most recently driving (Shift-Left) AI-powered SAST detection & remediations directly within IDEs. Skilled at partnering with engineering and product teams to design secure architectures, minimize remediation noise, and foster a culture of security ownership. Recognized for clear technical communication and strong cross-functional collaboration, enabling organizations to measurably advance DevSecOps maturity and reduce vulnerabilities that actually improve attack posture.

Experience

  1. Devsecops - Application Security & Security Engineering Lead

    iPipeline

    Apr 2025 — Present · Philadelphia, PA, US

    Subject matter expert for CheckMarx (SAST), Invicti (DAST), and BlackDuck (SCA), providing tool expertise, integration guidance, and support across development teams• Lead the penetration testing program for all iPipeline products, including coordination with external vendors, internal stakeholders, and engineering teams to scope, execute, and remediate findings• Championed “Shift Left” security integration within CI/CD pipelines by embedding automated controls and developer-centric feedback loops, accelerating vulnerability remediation and improving deployment velocity.• Provide guidance to iPipeline’s Security Champions program across our global development teams, helping integrate security best practices into the software development lifecycle.• Evaluate, analyze, and reproduce security vulnerabilities reported by internal tools, internal engineers, security researchers, partners, and customers• Utilized CrowdStrike Falcon to detect and remediate cloud misconfigurations, including insecure S3 bucket policies, overly permissive IAM roles, and publicly exposed or unencrypted assets, significantly reducing cloud security risk across AWS environments.• Leveraged CrowdStrike CSPM to maintain continuous compliance with PCI‑DSS and SOC 2, implementing automated posture monitoring and remediation workflows that reduced audit preparation effort and shortened compliance review cycles.• Partner with engineering teams to ensure they address vulnerabilities in our products and services• Define, develop, implement and manage standards, policies, and procedures as tech docs• Partner with Engineering Leaders, Product Owners, and Developers to evangelize security, assist in developing security controls into engineering pipelines, and remediate security issues from internal, and third- party assessments• Institute annual security training and outreach to our engineering teams

Education

  • Neumann University

    Bachelor of Science (BS), Business Administration and Management, General

    2010 — 2015

  • SANS Technology Institute

    Web Application Penetration Testing and Ethical Hacking

    2017 — 2017

  • Neumann University

    Bachelor of Science (BS), Computer Information Systems

    2010 — 2015

Skills

  • Firewalls
  • Research
  • Leadership Development
  • Team Leadership
  • Relationship Management
  • Web Application Security
  • Time Management
  • Entrepreneurship
  • Software Development
  • Event Planning
  • Microsoft Office
  • Sales
  • Microsoft Sql Server
  • Information Security
  • Problem Solving
  • Photoshop
  • Web Application Security Assessment
  • Social Networking
  • Reliability
  • Management
  • Strategic Planning
  • Computer Maintenance
  • Cybercrime Investigation
  • Organizational Development
  • Microsoft Excel
  • IT Security Best Practices
  • Windows
  • Marketing
  • Coaching
  • Contract Negotiation
  • Leadership
  • Editing
  • C++
  • Application Security
  • Public Relations
  • Tcp/Ip
  • Project Management
  • Teamwork
  • Customer Service
  • Social Media

Find verified contacts for anyone on LinkedIn

Unifers gives sales teams verified emails and direct dials, enriched profiles, and outreach that lands in the inbox.

Free plan included · No credit card required

This profile is compiled from publicly available professional sources. Unifers is not affiliated with or endorsed by LinkedIn. Request removal of this profile.

Eugene McClure — Devsecops - Application Security & Security Engineering Lead at iPipeline in Philadelphia, PA, US | Unifers