Lead Application Security Architect
Core
Orchestrating and leading the global application security strategy, uniting efforts to create, standardize, and scale the Secure Software Development Lifecycle (SSDLC) across the company.
Role type
Senior Application Security Architect (Strategy & Standards)
Builds
Global security standards, baselines, guidelines, and tooling strategy for secure design, build, and deployment.
Domain
Application Security, Cloud-Native, AI/ML Security
Required skills
Application Security (AppSec), Secure Software Development Lifecycle (SSDLC), Secure Coding Principles, OWASP Top 10, Threat Modeling, Secure Architecture, Mergers & Acquisitions Security, Cloud-Native Security, CI/CD Security, Microservices Security, API Security, AI/ML Security
Preferred skills
SAST, DAST, IAST, Software Composition Analysis (SCA), Security Tooling Strategy, Security Mentorship, AI-driven Security Innovation
Technologies
Snyk, Checkmarx, Veracode, GCP, AWS
Responsibilities
Champion and orchestrate the definition of the global SSDLC from threat modeling to secure release; Develop and maintain global security standards for secure coding, vulnerability management, and architecture; Create strategy for application security tooling including SAST, DAST, IAST, and SCA; Define security standards for Mergers & Acquisitions; Act as a lead security consultant for product and engineering teams; Lead security architecture reviews and threat modeling sessions; Stay at the forefront of emerging threats with a focus on AI/ML risks; Drive innovation in security practices and leverage AI within the AppSec program.
Seniority
Senior, hands-on IC with strategic influence
