Cybersecurity Architect
About the role
We are seeking an experienced Cybersecurity Architect to lead and mature application security initiatives across a diverse technology environment. This individual will partner closely with software engineering, architecture, infrastructure, and product teams to embed security throughout the software development lifecycle. The role combines hands-on technical security work with strategic influence, helping drive secure development practices across cloud applications, APIs, IoT-connected systems, and emerging AI-enabled technologies.
Responsibilities
- Lead application security efforts, including vulnerability management and remediation prioritization.
- Review findings from security tools such as SAST, DAST, SCA, penetration testing, and other assessments.
- Conduct threat modeling and participate in architecture and design reviews for new applications and systems.
- Perform targeted code reviews focused on high-risk components, authentication, authorization, and API security.
- Partner with engineering teams to integrate security controls into CI/CD pipelines and DevSecOps processes.
- Develop and maintain security automation to improve detection, validation, and remediation workflows.
- Provide guidance on cloud application security, identity management, secrets management, and secure system design.
- Support security initiatives related to AI/LLM technologies, including data protection, prompt validation, and model security considerations.
- Deliver secure coding guidance, training, and best practices to development teams.
- Assist with incident response activities, security investigations, and continuous improvement initiatives.
Qualifications
- 8+ years of experience in Application Security, Software Engineering, DevSecOps, or a related cybersecurity discipline.
- Strong understanding of secure software development practices and common application security vulnerabilities.
- Experience with application security tools such as SAST, DAST, SCA, IAST, and WAF technologies.
- Proficiency with at least one programming language such as Python, JavaScript, C#, or similar.
- Knowledge of cloud-native environments, Kubernetes, and modern software architectures.
- Experience integrating security into CI/CD pipelines and development workflows.
- Strong communication skills with the ability to influence technical teams and stakeholders.
- Familiarity with AI/LLM security concepts is a plus.
- Bachelor's degree in Computer Science, Engineering, Cybersecurity, or a related field.
Schedule
Hybrid work environment of 4 days onsite and 1 day remote.
Benefits
Competitive compensation, bonus potential, and comprehensive benefits package.
Candidates must be authorized to work in the United States; sponsorship is not available for this position.