Application Security Architect
Core
Design and lead enterprise application security programs, secure SDLC integration, and AI/LLM security strategies for a global manufacturing and engineering firm.
Role type
Senior Application Security Architect
Builds
Enterprise-wide secure software development lifecycle (SSDLC) programs, security standards, and AI security roadmaps
Domain
Enterprise Information Security, Application Security, Generative AI Security
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
Secure SDLC program design, CI/CD security integration, OWASP Top 10 for LLMs, NIST AI RMF, threat modeling (OWASP/MITRE), vulnerability remediation, cloud security, identity and access management, data security, WAF management, SAST/DAST/SCA tool expertise, Java/C#, Node/Angular, REST/SOAP/API management, SQL, UML/ArchiMate, Agile methodology, server-side and client-side technologies
Preferred skills
AI Security Platforms (Zenity, PA AIRS), Kiro, Amazon Q, Amazon Bedrock, TOGAF 9, ArchiMate 3 Practitioner
Technologies
SAST, DAST, SCA, WAF, Zenity, PA AIRS, Kiro, Amazon Q, Amazon Bedrock, SNYC, BURP, Java, C#, Node, Angular, REST, SOAP, ESB, EIP, SQL, UML, ArchiMate
Responsibilities
Design and build enterprise SSDLC programs within CI/CD processes; develop and lead application security domain roadmaps; manage enterprise application security standards; provide architectural guidance for enterprise-wide security initiatives; conduct secure software development training; provide SME support for application security technology acquisition; maintain relationships with third-party security vendors; mentor IT professionals; perform risk assessments of LLM and GenAI models; validate solutions through modeling or prototyping
Seniority
Senior, hands-on IC with strategic leadership