Senior Application Security Architect Employment Type: Direct Hire Job Title: Senior Application Security Architect
Overview The client company is seeking a Sr Application Security Architect to serve as a strategic leader and subject matter expert in application and product security. This role will be pivotal in defining enterprise-wide application security strategies, championing modern DevSecOps practices, and guiding secure adoption of technologies across cloud-native and on-premises environments. The ideal candidate brings deep technical expertise, strong architectural vision, and the ability to influence enterprise-wide security decisions in a rapidly evolving digital landscape-including the emerging space of AI and Generative AI (GenAI) security.
Responsibilities
- Define, communicate, and implement application security strategies and architectural standards across hybrid environments (cloud and on-premises).
- Lead the development and adoption of security-by-design principles within modern software development practices (Agile, DevSecOps, CI/CD).
- Partner with engineering, product, and platform teams to embed robust security controls into software architecture, APIs, microservices, and containers.
- Guide secure design for AI and GenAI systems-including secure model development, data protection, model governance, adversarial testing, and emerging risks (e.g., prompt injection, data leakage).
- Conduct architecture reviews, threat modeling, and risk assessments for high-value assets, APIs, cloud-native services, Container technologies, and open-source software.
- Recommend and enforce secure deployment patterns for SaaS, PaaS, and IaaS (AWS) models
Qualificaion
- Bachelor's degree in a STEM discipline required; Master's degree preferred.
- 10+ years of experience in cybersecurity, with at least 7 years in application security architecture roles.
- Proven experience designing and implementing secure architectures in cloud environments- AWS
- Deep knowledge of secure software development practices, including threat modeling, secure coding, SAST/DAST/IAST, and OSS governance.
- Strong experience in securing APIs (OAuth, OIDC, JWT, mTLS), containers, Kubernetes, and microservices-based architectures.
- Understanding of modern AI/ML architecture and emerging GenAI security challenges, including model integrity, hallucination prevention, and responsible AI principles.
- Familiarity with industry frameworks and standards (e.g., OWASP Top 10, NIST 800 series, ISO 27001, MITRE ATLAS).
- Excellent communication and presentation skills, with the ability to engage stakeholders at all levels, including executive leadership.
- Demonstrated leadership in cross-functional initiatives and mentoring of junior architects or engineers.
Estimated Min Rate: $133808.50
Estimated Max Rate: $181155.00
Note: Any pay ranges displayed are estimations. Actual pay is determined by an applicant's experience, technical expertise, and other qualifications as listed in the job description. All qualified applicants are welcome to apply.
Yoh, a Day & Zimmermann company, is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Visit
https://www.yoh.com/applicants-with-disabilities
to contact us if you are an individual with a disability and require accommodation in the application process.
For California applicants, qualified applicants with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act. All of the material job duties described in this posting are job duties for which a criminal history may have a direct, adverse, and negative relationship, potentially resulting in the withdrawal of a conditional offer of employment.
|