Principal Application & Product Architect
Core
Senior Application Security SME responsible for establishing and enforcing security policies, standards, and best practices across the ATHIP division, guiding Security Champions, and driving security-by-design initiatives.
Role type
Senior IC application security lead (divisional)
Builds
Secure, compliant, and innovative software solutions for the ATHIP division
Domain
Health technology / Application Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Application security strategy, threat modeling, vulnerability remediation, CI/CD security integration, security testing tools (SAST/SCA/DAST), cloud security (AWS/Azure/GCP), secure SDLC, ASVS compliance, cross-functional leadership, mentoring
Preferred skills
GIAC GSEC/CISSP, CSSLP, internal Wolters Kluwer security policy familiarity, ATHIP product knowledge
Technologies
GitHub Actions, GitLab CI, Jenkins, Azure DevOps, Bitbucket, SAST, SCA, DAST, IaC scanners, container scanning
Responsibilities
Guide and mentor Portfolio Security Leads and Security Champions; ensure continuous threat modeling and vulnerability remediation; oversee training activities; provide quarterly briefings to CTO and monthly reports; collaborate with DevSecOps CoE on CI/CD pipeline security; validate ASVS-based security requirements; participate in strategic AppSec programs like SBOM management.
Seniority
Senior, hands-on IC with strategic alignment
