Application Security Architect
SIDRAM TECHNOLOGIES · New York, NY · Yesterday
On-siteInformation TechnologyFull-time
Key Responsibilities
- Design and implement application security architecture across applications, APIs, and microservices.
- Perform threat modeling, security reviews, and vulnerability assessments.
- Embed security into SDLC and CI/CD pipelines using SAST, DAST, SCA, and other security tools.
- Drive secure coding practices aligned with OWASP Top 10 and API Security.
- Secure cloud-native applications across AWS/GCP, Kubernetes, and containers.
- Define security controls for GenAI, LLM, RAG, and Agentic AI applications.
- Address AI security risks including prompt injection, data leakage, insecure outputs, and excessive agency.
- Implement IAM, authentication, authorization, encryption, Policy-as-Code, and Identity-as-Code.
- Partner with engineering and security teams to drive security-by-design.
Required Skills
- 12+ years in Application Security / Security Architecture.
- OWASP, Threat Modeling, Secure SDLC, API Security, SAST/DAST/SCA.
- AWS/GCP, Kubernetes, Docker, CI/CD, Terraform.
- OAuth2, OIDC, JWT, IAM, RBAC/ABAC.
- GenAI/LLM, RAG, Agentic AI, or AI Security experience.
- LangChain/LangGraph, vector databases, and AI security controls are a plus.
- Strong communication and stakeholder management skills.