Security Architect
Core
Define and own the security design of applications, APIs, and supporting platforms, translating risk appetite into actionable architectural patterns.
Role type
Senior IC Security Architect
Builds
Secure-by-design application architectures for web, mobile, API, and cloud-hosted surfaces
Domain
Fintech / Application Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Application security architecture, Cloud-native architecture (AWS/Azure/GCP), Threat modelling (STRIDE/PASTA/MITRE ATT&CK), Regulatory frameworks (DORA/PCI DSS/ISO/SOC), Vulnerability management (OWASP Top 10)
Preferred skills
Software engineering background, Security certifications (CISSP/CSSLP/OSCP/CCSP/AWS/Azure Security)
Technologies
AWS, Azure, GCP
Responsibilities
Define application security architecture vision and standards, Conduct security architecture reviews and threat modelling, Develop security design patterns and guardrails, Lead evaluation of application security technologies, Partner with Cloud/Infrastructure teams on deployment security, Represent security team in cross-functional forums
Seniority
Senior, hands-on IC