Sr Application Security Architect

1 month ago


Washington DC, United States Clean Harbors Full time

The Senior Application Security Architect is responsible for validating that application services are designed and implemented with high security standards. The role is focused significantly on application program interfaces (APIs), and the architect spends a large percentage of time developing and supporting security controls for API services. Additionally, the architect establishes an application security vision with sustainable standards and processes. An influential member of the team, the architect is a primary liaison with the security, engineering and technology teams.

  • Influence secure API development standards and implementations across multiple platforms
  • Adopt security standards for the API lifecycle and disseminate them across development and security teams
  • Enforce rigorous security controls with internal and external constituents, and follow through for verification and consistency
  • Document and provide ongoing maintenance of materials to eliminate discrepancies in development and security best practices.
  • Focus on automation to aid in efficiencies with both testing and production
  • Develop authentication and authorization security requirements to adhere to credential storage, privilege management and authenticity standards; support role- and attribute-based access control
  • Work in tandem with developers to provide repetitive validation testing prior to production that allows for a continuous cycle of development followed by application security assessments
  • Regularly monitor the security community for public-facing security issues as well as to learn new tactics for securing data transmissions and reducing attack exposure
  • Attend and participate in application projects and change management committee meetings. This includes interacting with business units and technical teams to understand what is coming and how projects can be more secure from the beginning
  • Leverage security standards and implementation configurations, as well as common security frameworks
  • Document secure delivery and implementation advancements that meet defined service-level agreements (SLAs) and business metrics
  • Align with architects and development teams for a mission of secure design and data integrity preservation among users, apps and infrastructure
  • Develop security test plans from architectural designs, identify deficiencies and make enhancements to ensure production is not impacted
  • Actively participate in and lead security team meetings that facilitate secure design
  • Be highly engaged in information security projects that evaluate existing security infrastructure and proposed changes as defined by security leadership and architects; deliver projects on time, within budget and in accordance with SLAs

  • At least 5+ years’ experience in cybersecurity preferred, including compliance and risk management with system and application security engineering
  • Highly technical and analytical with a proven deep background in application programming (5+ years above and beyond cybersecurity experience preferred)
  • Established experience with Agile and software development lifecycle (SDLC) practices
  • Experience in DevSecOps to integrate security principles into the development process, such as vulnerability code review, development security frameworks, testing, and integration of such processes within a CI/CD pipeline
  • Assess and understand security requirements of the Clean Harbors network, including impacts on bandwidth, latency, availability, and confidentiality
  • Proficient in Data security concepts pertaining to data with physical security, access controls, logical application security including visibility and data protection
  • Experienced with REST and SOAP development and security controls.
  • Experience with .NET Java, Python, C++, Angular, etc. and the ability to drive a security by design approach within the software development lifecycle
  • Knowledge of security fundamentals for software-as-a-service (SaaS) application integrations and effective use and security configuration of Infrastructure as a Service (IaaS) and Platform as a Service (PaaS) within Azure and Oracle Cloud environments
  • Solid understanding of network and web protocols
  • Skillful in single sign-on (SSO), OAuth 2.0, OpenID Connect and SAML
  • Proven excellence in communicating business risk from cybersecurity topics
  • Knowledge of practices and guidance emerging from OWASP, NIST and SANS, among others
  • Experienced working with API gateways such as Ws02, Oracle OIC and Azure Gateway
  • Experienced with securing intra-company and third-party APIs

Clean Harbors is an equal opportunity employer. We do not discriminate against applicants due to race, ancestry, color, sexual orientation, gender identity, national origin, religion, age, physical or mental disability, veteran status, or on the basis of any other federal, state/provincial or local protected class.

Clean Harbors is a Military & Veteran friendly company.

#LI-DF1
*CH #J-18808-Ljbffr
  • Application Architect

    3 weeks ago


    Washington, United States Donato Technologies Inc Full time

    Job DescriptionJob DescriptionGreetings from Donato Technologies Inc.We have an immediate opening with my client. If you are looking for a new project, please send me a copy of your updated resume.SENIOR APPLICATION ARCHITECTWashington DC4 Months contractAre you passionate about revolutionizing payment systems? Join our esteemed client in DC as a Senior...


  • Washington, DC, United States RICEFW Technologies Full time

    Randstad Client in DC is seeking a seasoned Senior IT Application Solution Architect to join their team. In this role, you will collaborate within project teams, providing pivotal leadership to define architecture programs aligning with Amtrak’s Business Strategy. Your responsibilities will encompass guiding the development of future-state architecture,...


  • Washington, United States Open Systems Technologies Full time

    An international law firm is looking for an Applications Architect to join their team in Washington, D.C. Compensation: $135-200kThe Applications Architect will be responsible for designing, developing, implementing, troubleshooting and maintaining complex enterprise application solutions in support of the business.Responsibilities:Present enterprise...


  • Washington, United States Open Systems Technologies Full time

    An international law firm is looking for an Applications Architect to join their team in Washington, D.C. Compensation: $135-200kThe Applications Architect will be responsible for designing, developing, implementing, troubleshooting and maintaining complex enterprise application solutions in support of the business.Responsibilities:Present enterprise...


  • Washington, United States Open Systems Technologies Full time

    An international law firm is looking for an Applications Architect to join their team in Washington, D.C. Compensation: $135-200kThe Applications Architect will be responsible for designing, developing, implementing, troubleshooting and maintaining complex enterprise application solutions in support of the business.Responsibilities:Present enterprise...


  • Washington, DC, United States Abacus Technology Corporation Full time

    OverviewAbacus Technology is seeking a Sr. Cyber Security Analyst to plan and implement security measures for IT systems in the DoE Office of Environment, Health, Safety, and Security (EHHS).  This is a full-time position.ResponsibilitiesAssist in developing the DoE EHSS security posture.Protect network and IT infrastructure and telecommunications systems...


  • Washington, United States Architect of the Capitol Full time

    Summary This position is located in the Architect of the Capitol, Office of the Chief Security Officer (OCSO), Asst. Director, Security Infrastructure Project Division. The Construction Representative (Security Projects) oversees and manages the work of construction management teams and performs a variety of construction management tasks in support of...

  • Senior IT Architect

    2 weeks ago


    Washington, DC, United States Modern Technology Solutions Full time

    Overview Own Your Future.Modern Technology Solutions, Inc. (MTSI) is searching for a Senior IT Architect & Team Lead (Cloud Network & Computer Systems Architect) to join our team.  Why is MTSI known as a Great Place to Work?Interesting Work:  Our co-workers support some of the most important and critical programs to our national defense and...


  • Washington, United States Gridiron IT Full time

    Gridiron IT is seeking a Sr. Application Developer to support a federal client on a remote basis. Responsibilities: Seeking a candidate with over 3 years of professional experience as an Application Developer Provide application development and management for all NMOTC Applications. Assist customers in identifying and documenting functional requirements ...


  • Washington, United States TalentRemedy Full time

    The Sr. Application Security Engineer is a technology and process focused security professional with extensive experience in Development Operations, Software Engineering, Application Security and/or Information Security disciplines. This individual will be at the forefront of our security efforts, partnering closely with product and application developers to...


  • Washington, United States TalentRemedy Full time

    The Sr. Application Security Engineer is a technology and process focused security professional with extensive experience in Development Operations, Software Engineering, Application Security and/or Information Security disciplines. This individual will be at the forefront of our security efforts, partnering closely with product and application developers to...


  • Washington, DC, United States Chronos Consulting Full time

    Job DescriptionChronos Consulting’s client is seeking a motivated self-starter to help drive adoption of multi-cloud services and solutions as part of their transformation journey to the public cloud. You possess  hands-on experience, designing, and deploying multi-cloud-based solutions with a focus on Network and Security. As an ACE-Cloud Solution...


  • Washington, United States Dfuse Technologies Inc Full time

    Job Title: Cloud Solutions ArchitectLocation: Suitland, MD 20020Clearance Level: Active DoD - Top Secret / SCI Design, implement and support soft ware-defined services for computing, storage, networking, security, and cloud management to run enterprise applications traditional or containerized in a hybrid cloud environment.Collaborate with the appropriate...


  • Washington, United States Node.Digital Full time

    Security Splunk Architect/Engineer Location: Washington DC metro area (Hybrid) Must have an active Secret OR Top Secret Clearance We are seeking a Security Splunk Architect/Engineer to support a Navy enterprise network within the Engineering and Cyber Divisions. The candidate's primary responsibility is to maintain and enhance the existing Splunk...


  • Washington, United States Node.Digital Full time

    Job DescriptionJob DescriptionSecurity Splunk Architect/EngineerLocation: Washington DC metro area (Hybrid)Must have an active Secret OR Top Secret ClearanceWe are seeking a Security Splunk Architect/Engineer to support a Navy enterprise network within the Engineering and Cyber Divisions. The candidate's primary responsibility is to maintain and enhance...


  • Washington, DC, United States RICEFW Technologies Full time

    Embark on an exciting career as a SAP Applications Solutions Architect - Mid Level with our esteemed client in Washington, DC, in collaboration with Randstad. This role is tailored for an IT professional with excellent communication skills and a passion for SAP solutions. As a pivotal member of the team, you will leverage your expertise in SAP MM Master Data...


  • Washington, DC, United States GuidePoint Security Full time

    GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government...


  • Washington, United States Kalani Consulting Inc Full time

    Cyber Security Architect Kalani Consulting Inc recently awarded Best and Brightest Companies to Work for in The Nation for the second year in a row and Washington Post’s Top Workplaces of 2023 is looking to add more talent to our team! Kalani is a fast-growing small business located in Northern Virginia with an increasing base of government customers. We...


  • Washington, United States The Tatitlek Corporation Full time

    Overview The cybersecurity architect is responsible for managing all aspects of the SIEM to include operations and maintenance for all lookup files, integrating security feeds, developing the alerting framework, developing the risk framework and the orchestration of all security devices. The role is also responsible for ensuring that data quality. DUTIES AND...


  • Washington, United States Lumen Solutions Group Inc. Full time

    About us:Lumen Solutions Group Inc., a dynamic small and minority-owned, Disadvantaged Business Enterprise headquartered in Florida, USA. As a leading consulting services and solutions provider, we focus on IT Staffing, Business/IT Strategy, Business Process Blueprints, Enterprise Architecture, Enterprise Transformation for our clients. Our client base...