We are seeking an Application Security Architect to join our Security team. As an Application Security Architect, you will serve as a member of a collaborative team to partner with technology teams, respective architects, and business units to develop and promote an integrated and mature culture of secure software development practices. Identify common areas of risk related to secure development practices and architect solutions, strategies and processes to mitigate the risk across the entire application life cycle. Champion the adoption of innovative security technologies, including AI-assisted code scanning and intelligent automation, to identify vulnerabilities earlier in the software development lifecycle and continuously improve secure coding practices.
Essential Duties & Responsibilities
- Work with security team, developers and solution architects to implement and evolve security guidance and practices as it relates to the development of web-based applications and services on leading platforms.
- Develop and deploy Secure Development Lifecycle practices and tooling to measure and assist with compliance to the established security guidance.
- Develop and maintain varying levels of security testing and review processes applicable to software development practices, technology footprint and various risk factors.
- Identify and/or provide secure software development training opportunities to applications development team members.
- Provide support and validation of secure development practices as part of a continuous integration (CI/CD) and SDLC processes.
- Collaborate with the application security team to develop and advance the enterprise software security maturity model.
- Identify and evaluate products and tools that can enhance the maturity of application security.
- Lead efforts with the application security team to architect, develop and deploy secure code practices that can be shared across teams to implement common security practices such as encryption, authentication and authorization.