Security Architect Application Security

Security Architect Application Security

Posted 2 weeks ago by 1759321582

Negotiable
Outside
Remote
USA

Summary: The Security Architect for Application Security will be responsible for designing, implementing, and maintaining the security posture of data security systems and applications. This role involves collaborating with cross-functional teams to identify vulnerabilities and integrate security measures throughout the software development lifecycle. The position requires a strong background in security architecture and application security, with a focus on compliance and best practices. The role is fully remote and offers a long-term contract with potential extensions.

Key Responsibilities:

  • Lead the design and implementation of comprehensive application security architectures that align with industry best practices and compliance requirements.
  • Collaborate with software development teams to integrate security measures into the software development lifecycle, ensuring security is addressed from design to deployment.
  • Conduct thorough application security assessments and code reviews to identify vulnerabilities and recommend appropriate remediation strategies.
  • Develop and maintain application security policies, standards, and guidelines, and ensure their adherence across projects.
  • Ensure compliance with corporate policies, procedures, and security standards while performing assigned duties.
  • Stay current with emerging threats, vulnerabilities, and industry trends, and provide guidance on proactive security measures.
  • Work closely with DevOps and CI/CD teams to implement automated security testing, architectures, and validation processes.
  • Lead training and knowledge-sharing initiatives to enhance the awareness of secure coding practices among development teams.
  • Collaborate with third-party vendors, stakeholders, and partners to ensure the security of integrated applications and services.
  • Provide subject matter expertise, roadmaps, strategies, reference architectures, and business requirements documentation in application security during compliance assessments and audits.

Key Skills:

  • Bachelor's degree or higher (completed and verified prior to start) or High School Diploma/GED with a minimum of sixteen (16) years of experience in Information Technology (IT).
  • Ten (10) years of security architecture expertise in a private, public, government, or military environment.
  • Five (5) years of Application Security background in a private, public, government, or military environment.
  • Master's degree in Information Technology or Cybersecurity from an accredited institution (preferred).
  • Experience with security tools such as Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Interactive Application Security Testing (IAST).
  • Knowledge of DevSecOps principles and experience integrating security into CI/CD pipelines.
  • Proficiency in programming languages commonly used in software development (e.g., Java, C#, Python) and familiarity with security libraries and frameworks.
  • Excellent communication and collaboration skills to work with technical and non-technical stakeholders.

Salary (Rate): undetermined

City: undetermined

Country: USA

Working Arrangements: remote

IR35 Status: outside IR35

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

Job Title: Security Architect Application Security

Location: 100% Remote

Duration: 12+ Months with extensions

Description:

  • Proven category leadership
  • Exposure to attractive end-markets
  • Innovation mindset driving improved patient outcomes
  • Collaborative customer relationships
  • Deep global regulatory experience
  • Operational excellence and strong cash flow
  • Strong sales growth and profitability with significant recurring sales

The Impact You'll Make in this Role

The Data Security Architect will play a pivotal role in designing, implementing, and maintaining the security posture of our data security-based systems and applications. Reporting to the Chief Security Architect Cybersecurity, the successful candidate will work closely with cross-functional teams to identify application- based vulnerabilities, design secure application architectures, and guide the integration of security measures into the development process.

  • Lead the design and implementation of comprehensive application security architectures that align with industry best practices and compliance requirements.
  • Collaborate with software development teams to integrate security measures into the software development lifecycle, ensuring security is addressed from design to deployment.
  • Conduct thorough application security assessments and code reviews to identify vulnerabilities and recommend appropriate remediation strategies.
  • Develop and maintain application security policies, standards, and guidelines, and ensure their adherence across projects.
  • Responsibilities of this position include that corporate policies, procedures and security standards are complied with while performing assigned duties.
  • Stay current with emerging threats, vulnerabilities, and industry trends, and provide guidance on proactive security measures.
  • Work closely with Dev0ps and CI/CD teams to implement automated security testing, architectures, and validation processes.
  • Lead training and knowledge-sharing initiatives to enhance the awareness of secure coding practices among development teams.
  • Collaborate with third-party vendors, stakeholders, and partners to ensure the security of integrated applications and services.
  • Provide subject matter expertise, roadmaps, strategies, reference architectures, and business requirements documentation in application security during compliance assessments and audits.

Your Skills and Expertise

To set you up for success in this role from day one, 3M requires (at a minimum) the following qualifications:

Bachelor's degree or higher (completed and verified prior to start)

OR

High School Diploma/GED or higher from a (completed and verified prior to start) and a minimum of sixteen (16) years of experience in Information Technology (IT)

Ten (10) years of security architecture expertise in a private, public, government or military environment.

Five (5) years of Application Security background in a private, public, government or military environment

Additional qualifications that could help you succeed even further in this role include:

  • Master's degree in Information Technology or Cybersecurity from an accredited institution
  • Experience with security tools such as Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Interactive Application Security Testing (IAST).
  • Knowledge of DevSecops principles and experience integrating security into CI/CD pipelines.
  • Proficiency in programming languages commonly used in software development (e.g., Java, C#, Python) and familiarity with security libraries and frameworks.
  • Excellent communication and collaboration skills to work with technical and non-technical stakeholders.