Senior Application Security Architect

Job not on LinkedIn

🕒 June 17

🇺🇸 United States – Remote

💵 $160k - $195.1k / year

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of EXL

EXL

10,000+ employees

🏥 Healthcare

🛡️ Insurance

📦 Logistics

💰 $2M Venture Round on 2015-01

Healthcare • Insurance • Logistics

EXL is a business consulting and services firm that focuses on leveraging data to enhance business operations and decision-making. With a strong emphasis on collaboration and adaptability, EXL partners with organizations to address their unique needs and culture while integrating data science and technology solutions. The company's areas of expertise include operations management, decision analytics, digital transformation, and various industries such as healthcare, finance, and insurance. EXL's mission is to help clients drive business evolution and maintain competitive advantage through tailored solutions and effective use of data.

📋 Description

• Serve as the security architecture authority within the architecture organization, partnering with product architects, principal engineers, cloud partners (AWS, Azure, GCP), and business leaders to embed secure-by-design principles into hardware appliances, multi-tenant SaaS platforms, and globally distributed cloud infrastructure. • Coach and support developers in writing secure code, including secure patterns, common vulnerability classes, and secure use of frameworks and libraries. • Provide timely consulting on “how to do it right” (architecture, implementation details, and operational considerations) and help teams choose secure-by-default approaches. • Triage findings from SAST, SCA, DAST, container and IaC scanning; investigate, validate, and resolve false positives; and help teams prioritize true risk. • Partner with teams to tune security tools, reduce noise, and improve signal quality (rules, suppressions, baselines, and exception processes) while maintaining strong security posture. • Drive adoption of CNAPP, CWPP, WAF, service mesh security, API gateways, SIEM/SOAR, and cloud-native telemetry for protective monitoring, runtime defense, and incident-ready detection. • Conduct Secure by Design reviews for new applications and material changes to existing applications, validating security requirements and design decisions early. • Lead and facilitate threat modeling workshops; identify abuse cases, trust boundaries, and attack paths; and document mitigations and residual risk. • Review authentication/authorization design, data flows, secrets handling, logging/monitoring, and resiliency controls to ensure secure architectures. • Provide clear, actionable recommendations and track follow-through with engineering teams. • Translate regulatory and compliance requirements (FedRAMP, SOC2, ISO 27001, NIST SP 800-53, CSA CCM, SOX) into actionable, measurable, and auditable security architecture control objectives—shifting from audit-driven to architecture-driven alignment.

🎯 Requirements

• 8+ years related IT experience; 5+ years' experience in security application tools • 6+ years' experience in application security reviews of new architecture; 5 + years of experience with public and hybrid cloud (AWS, Azure and GCP) environments. • Strong software development background with the ability to read, understand, and advise on production code and design decisions. • Demonstrated expertise in threat modeling and secure architecture review for modern web and API-based applications. • Expertise securing CI/CD and SDLC processes (pipeline security, secrets management, artifact integrity, build/release controls, and automation). • Experience with application security tooling and processes, including managing findings and resolving false positives (SAST/SCA/DAST and related scanning in pipelines). • Working knowledge of AI/ML security risks and mitigations for applications that use ML models or GenAI components. • Strong collaborative and consulting skills ability to influence without authority, communicate clearly, and deliver pragmatic, developer-friendly recommendations.

Apply Now

Similar Jobs

🕒 June 16

Highway.ai

51 - 200

💼 Consulting

📣 Marketing

🏠 Real Estate

Director of Security & Infrastructure overseeing AWS security and infrastructure operations for Highway. Responsible for embedding security into development practices and maintaining operational excellence.

🇺🇸 United States – Remote

💵 $140k - $160k / year

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

🕒 June 15

Coalfire

1001 - 5000

💼 Consulting

🏥 Healthcare

📦 Logistics

Principal Google Cloud Security Consultant serving as a senior advisor on Google Cloud security engagements. Helping clients design and operationalize secure Google Cloud environments.

🕒 June 15

Equality Health

201 - 500

🏥 Healthcare

☁️ SaaS

⚕️ Healthcare Insurance

Director, Security & Risk at Equality Health focused on managing the entire enterprise security program. Responsible for strategy, roadmap, execution, and continuous improvement in a tech-enabled healthcare system.

🇺🇸 United States – Remote

💰 Private equity on 2022-01

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

AWS

Azure

Firewalls

Splunk

🕒 June 15

Equality Health

201 - 500

🏥 Healthcare

☁️ SaaS

🤝 B2B

Director, Security & Risk overseeing end-to-end enterprise security program at Equality Health. Ensuring compliance, risk management, and security strategy execution in a remote role.

🇺🇸 United States – Remote

💰 Private equity on 2022-01

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

AWS

Azure

Firewalls

Splunk

🕒 June 13

New Era Technology

1001 - 5000

💼 Consulting

🏥 Healthcare

📦 Logistics

Principal Security Advisor assisting clients with cybersecurity challenges while driving revenue growth through sales and consulting. Join New Era Technology's collaborative cybersecurity team.