Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via emailAs Application Security Architect you will support the embedding of security into all phases of the SDLC. This includes collaborating with development teams to implement secure coding practices performing threat modeling and ensuring that applications are resilient against potential security threats. The role also involves staying abreast of emerging security threats and technologies to continuously enhance the organizations security posture.
Key responsibilities
Develop and implement security architectures for applications ensuring alignment with organizational security policies and compliance requirements.
Conduct threat modeling exercises to identify potential security vulnerabilities and recommend mitigation strategies.
Perform indepth code and design reviews delivering actionable remediation guidance.
Integrate security practices into the SDLC including code reviews static and dynamic analysis and security testing.
Work closely with crossfunctional teams including developers QA and operations to ensure security is considered at every stage of application development.
Develop and maintain application security standards guidelines and best practices.
Evaluate implement and manage application security tools such as SAST DAST and IAST solutions.
Participate in incident response activities related to application security breaches including root cause analysis and remediation planning.
Provide training and guidance to development teams on secure coding practices and emerging security threats.
Qualifications :
Qualifications
Bachelors or Masters degree in Computer Science Information Security or a related field.
Minimum of 5 years in application security software development or related roles.
Proven experience with secure coding practices security assessments authentication/authorisation design cryptography API protection and integrating security into the SDLC.
Proven record of facilitating threatmodelling and delivering riskbalanced solutions to engineering teams.
Experience integrating and tuning securitytesting tools in CI/CD workflows.
Strong understanding of application security frameworks and standards (e.g. OWASP ASVS SAMM NIST).
Proficiency in programming languages such as Java Kotlin or Python.
Exoerience with cloud security principles and securing applications in cloud environments (AWS in particular).
Clear persuasive communication skills for both technical and nontechnical audiences.
Ability to work independently and manage multiple projects simultaneously.
Additional Information :
Remote Work :
Yes
Employment Type :
Fulltime
Remote