Sr Application Security Architect
Jobgether · United States · 1 mo ago
RemoteRemoteInformation TechnologyFull-time
About the role
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Sr Application Security Architect based in the United States. This senior-level opportunity is designed for an experienced cybersecurity professional who is passionate about building secure software and cloud solutions at scale.
Responsibilities
- Partner with engineering, architecture, and cloud hosting teams to improve the security posture of enterprise applications across on-premises, hybrid, and public cloud environments.
- Design and promote secure architectures by implementing Secure by Design, Secure by Default, defense-in-depth, and Zero Trust security principles.
- Conduct secure design reviews, threat modeling, code reviews, and security assessments throughout the software development lifecycle to identify vulnerabilities and recommend remediation strategies.
- Collaborate with product management and technical stakeholders to ensure security implementations align with business objectives, customer requirements, and regulatory expectations.
- Support development teams by providing expert guidance on secure coding practices, application hardening, and software security best practices.
- Develop and maintain security standards, engineering documentation, technical guidance, and educational materials to strengthen organizational security capabilities.
- Mentor Security Champions and collaborate with cross-functional teams to improve security awareness and integrate security into development workflows.
- Evaluate and recommend security tools, processes, and policies that enhance the Secure SDLC and overall application security maturity.
- Ensure adherence to organizational security policies while continuously improving software security practices and operational resilience.
Requirements
- Bachelor's degree in Computer Science, Electrical Engineering, or a related technical discipline, or an equivalent combination of education and professional experience.
- 8+ years of experience in secure software development, secure systems architecture, application security, or a related cybersecurity field.
- 4+ years of experience implementing or promoting secure software development and application security best practices.
- Professional security certifications such as CISSP, CSSLP, CCSP, CISM, CEH, GIAC, SANS, or equivalent are highly desirable.
- Strong knowledge of enterprise application security concepts, including OWASP Top 10, CWE, CVSS, SANS Top 25, and current cyber threats and attacker techniques (MITRE ATT&CK).
- Experience reviewing and securing applications developed with languages such as Java, Python, C/C++, JavaScript, PHP, Go, or similar technologies.
- Expertise securing modern architectures, including microservices, containers, cloud-native applications, DevSecOps pipelines, and AI-enabled environments.
- Experience working with cloud platforms such as AWS, Microsoft Azure, or Google Cloud Platform, including hybrid cloud security practices.
- Familiarity with application security testing tools, including SAST, DAST, and IAST solutions such as Snyk, Black Duck, SonarQube, Burp Suite, ZAP, Nessus, or similar.
- Strong analytical, communication, mentoring, collaboration, and problem-solving skills with the ability to influence technical teams across the organization.
Benefits
- Remote work opportunity within the Eastern Time Zone in the United States.
- Comprehensive medical, dental, vision, and prescription drug coverage.
- Multiple healthcare plan options, including PPO and High Deductible Health Plans with Health Savings Account contributions.
- Industry-leading 401(k) retirement savings plan.
- Tuition assistance and ongoing professional development programs.
- Generous paid time off, paid holidays, and an annual Winter Wellness Break.
- Paid parental leave, unlimited paid sick leave, and volunteer time off.
- Childcare benefits for full-time employees.
- A collaborative, inclusive work environment focused on innovation, continuous learning, and career growth.