Application Security Architect

2 months ago


Richmond, United States Genworth Full time

At Genworth, we empower families to navigate the aging journey with confidence. We are compassionate, experienced allies for those navigating care with guidance, products, and services that meet families where they are. Further, we are the spouses, children, siblings, friends, and neighbors of those that need care—and we bring those experiences with us to work in serving our millions of policyholders each day. 

We apply that same compassion and empathy as we work with each other and our local communities. Genworth values all perspectives, characteristics, and experiences so that employees can bring their full, authentic selves to work to help each other and our company succeed. We celebrate our diversity and understand that being intentional about inclusion is the only way to create a sense of belonging for all associates. We also invest in the vitality of our local communities through grants from the Genworth Foundation, event sponsorships, and employee volunteerism.

Our four values guide our strategy, our decisions, and our interactions:

  • Make it human. We care about the people that make up our customers, colleagues, and communities.
  • Make it about others. We do what's best for our customers and collaborate to drive progress. 
  • Make it happen. We work with intention toward a common purpose and forge ways forward together. 
  • Make it better. We create fulfilling purpose-driven careers by learning from the world and each other.

    

POSITION TITLE

Application Security Architect

    

POSITION LOCATION

Richmond, VA

Your role as an Application Security Architect will be to provide leadership regarding security and governance for application development on both physical datacenter and cloud environments. You will be responsible for creating and monitoring adherence to policies and standards for the development and administration of secure software and related technologies and standards. In your role, you will work closely with key IT and business stakeholders as well as third parties, as needed. As an ideal candidate, you will rely on extensive experience with application security and security compliance to enhance and manage the company’s application security program.

What you will be doing

  • Ensure the company’s application security policies and standards follow best practices based on National Institute of Standards and Technology (NIST) and other relevant standards and frameworks.
  • Translate security and technical policies into actionable requirements.
  • Communicate security risks to different audiences ranging from business leaders to application development teams.
  • Define, publish, maintain and execute application security governance processes.
  • Own day-to-day life cycle management, including identification, threat assessment, threat modeling and risk avoidance.
  • Serve as a subject-matter-expert and lead evangelist for Application Security; act as a first point of contact for critical issues, security risk assessments and triaging CI/CD issues with partners and stakeholders.
  • Work with architecture, engineering, and application teams to advise on secure design for applications in areas such as data protection, key management, authentication, and authorization and to ensure security.
  • “Shift-Left” and work with DevOps teams to create policy as code.
  • Participate in working groups with other subject matter experts to define and review security standards and guidelines.
  • Research and stay up to date on the latest security threats and trends.
  • Analyze threats to application security and design solutions to mitigate those threats.
  • Develop and execute projects to enhance application security measures.
  • Provide guidance and oversight for the correction of discovered vulnerabilities. ​

What you bring

  • Bachelor's degree in Information Technology, Computer Science, or related degree or equivalent years of experience.
  • 7+ years demonstrated cybersecurity experience.
  • Strong understanding of cybersecurity risks, technical control implementation, and at least one industry standard cybersecurity frameworks (NIST 800-53, NIST CSF, ISO 27001, etc.).
  • In-depth knowledge of application security.
  • Expertise in infrastructure, system and application design and implementation using data, web, mobile, cloud, and open-source technologies.
  • Expertise with the Software Development Life Cycle (SDLC) process.
  • Experience with results interpretations of Dynamic Application Security Testing (DAST) reports.
  • Experience with at least one Static Application Security Testing (SAST) tool (e.g., CheckMarx, HP Fortify SCA, Coverity, Veracode, FindBugs, other), its use, reports results interpretation, developer community support in remediating verified code-associated security vulnerabilities.
  • Knowledge of potential risks involved in application transitions from on-premises to cloud.
  • Capacity to work in a team environment, excellent interpersonal and communication skills.
  • Demonstrated project management experience.
  • Strong ability to influence decision makers and drive consensus.


Preferred Qualifications:

  • Familiarity with big data security solutions
  • Leadership Experience
  • Knowledge of Open Security Architecture (OSA), The Well Architected Framework, and OWASP Application Security Verification Standard (ASVS)
  • Demonstrated ability to act as a thought leader in Cloud security for your existing organization
  • Commitment to continuous improvement and innovative approaches

    

Employee Benefits & Well-Being

Genworth employees make a difference in people’s lives every day. We’re committed to making a difference in our employees’ lives.

  • Competitive Compensation & Total Rewards Incentives
  • Comprehensive Healthcare Coverage
  • Multiple 401(k) Savings Plan Options
  • Auto Enrollment in Employer-Directed Retirement Account Feature (100% employer-funded)
  • Generous Paid Time Off – Including 12 Paid Holidays, Volunteer Time Off and Paid Family Leave
  • Disability, Life, and Long Term Care Insurance
  • Tuition Reimbursement,  Student Loan Repayment and Training & Certification Support
  • Wellness support including gym membership reimbursement and Employee Assistance Program resources (work/life support, financial & legal management)
  • Caregiver and Mental Health Support Services


  • Richmond, United States Genworth Full time

    At Genworth, we empower families to navigate the aging journey with confidence. We are compassionate, experienced allies for those navigating care withguidance, products, and services that meet families where they are. Further, we are the spouses, children, siblings, friends, and neighbors of those that need care—and we bring those experiences with us to...


  • Richmond, United States Genworth Full time

    At Genworth, we empower families to navigate the aging journey with confidence. We are compassionate, experienced allies for those navigating care with guidance, products, and services that meet families where they are. Further, we are the spouses, children, siblings, friends, and neighbors of those that need care-and we bring those experiences with us to...


  • Richmond, United States Genworth Full time

    At Genworth, we empower families to navigate the aging journey with confidence. We are compassionate, experienced allies for those navigating care with guidance, products, and services that meet families where they are. Further, we are the spouses, children, siblings, friends, and neighbors of those that need care-and we bring those experiences with us to...


  • Richmond, United States Axiom Path Full time

    Job DescriptionJob DescriptionTITLE: Application Security ArchitectBE PART OF A HIGH-PERFORMING TEAM:Join a dynamic organization that is committed to safeguarding its digital assets and ensuring the security of its applications across both physical datacenters and cloud environments. This company prioritizes the integration of advanced security measures...


  • Richmond, United States Axiom Path Full time

    TITLE: Application Security ArchitectBE PART OF A HIGH-PERFORMING TEAM:Join a dynamic organization that is committed to safeguarding its digital assets and ensuring the security of its applications across both physical data centers and cloud environments. This company prioritizes the integration of advanced security measures within its development processes,...


  • Richmond, United States Axiom Path Full time

    TITLE: Application Security ArchitectBE PART OF A HIGH-PERFORMING TEAM:Join a dynamic organization that is committed to safeguarding its digital assets and ensuring the security of its applications across both physical datacenters and cloud environments. This company prioritizes the integration of advanced security measures within its development processes,...


  • Richmond, United States Axiom Path Full time

    TITLE: Application Security ArchitectBE PART OF A HIGH-PERFORMING TEAM:Join a dynamic organization that is committed to safeguarding its digital assets and ensuring the security of its applications across both physical datacenters and cloud environments. This company prioritizes the integration of advanced security measures within its development processes,...


  • Richmond, United States Axiom Path Full time

    TITLE: Application Security ArchitectBE PART OF A HIGH-PERFORMING TEAM:Join a dynamic organization that is committed to safeguarding its digital assets and ensuring the security of its applications across both physical data centers and cloud environments. This company prioritizes the integration of advanced security measures within its development processes,...


  • Richmond, Virginia, United States Genworth Full time

    About the RoleGenworth is seeking a highly skilled Application Security Architect to join our team. As a key member of our IT organization, you will be responsible for providing leadership and expertise in application security and governance.Key ResponsibilitiesDevelop and implement application security policies and standards that align with industry best...


  • Richmond, United States Serigor Inc Full time

    Job Title: IT Security Architect 3 (HYBRID) Location: Richmond, VA Duration:12+ Months Job Description: The client is seeking a team member to function as a Sr. Enterprise Architect. The Architect will analyze business needs, and develop appropriate technology deliverables, such as, briefs, patterns, reports, data models and hi-level risk assessments. The...


  • Richmond, United States Serigor Inc. Full time

    Job DescriptionJob DescriptionJob Title: IT Security Architect 3 (HYBRID)Location: Richmond, VADuration: 12+ MonthsJob Description:The client is seeking a team member to function as a Sr. Enterprise Architect. The Architect will analyze business needs, and develop appropriate technology deliverables, such as, briefs, patterns, reports, data models and...


  • Richmond, United States Tri-Force Consulting Services, Inc. Full time

    Title: .NET Application Architect Duration: 6 months with possibility for extensionClient:Virginia Information Technology AgencyLocation: Richmond VA 23219 Note: This is an onsite position. The applicant is the center of our universe. Job...

  • IT Security Architect

    2 weeks ago


    Richmond, United States Serigor Inc Full time

    Job Title: IT Security Architect (HYBRID) Location: Richmond, VA Duration: 12+ Months Job Description: The client CSRM needs a Security Architect to help the team resolve possible security threats and identify areas of weakness in client's a network system. Security Architect must respond promptly and effectively to possible breaches of security. As a...


  • Richmond, United States eTek IT Services, Inc. Full time

    Job DescriptionJob DescriptionJob Overview:& We are seeking a highly skilled and experienced .NET Application Architect to join our team. The ideal candidate will have a strong background in designing and developing web-based applications and a deep understanding of cloud-based architecture and design solutions.Responsibilities:Design and develop web-based...


  • Richmond, United States eTek IT Services, Inc. Full time

    Job DescriptionJob DescriptionJob Overview:& We are seeking a highly skilled and experienced .NET Application Architect to join our team. The ideal candidate will have a strong background in designing and developing web-based applications and a deep understanding of cloud-based architecture and design solutions.Responsibilities:Design and develop web-based...


  • Richmond, United States CapLeo Global Full time

    Title: DVS - .NET Application Architect Location: Richmond, VA(Hybrid) Duration: 12 Months Responsibilities: Seven years of progressive responsibility in an IT environment with demonstrated technical knowledge which provides the necessary skills, knowledge and abilities. Three years relevant Experience with enterprise-wide integration architecture in .net...


  • Richmond, United States Capleo Global Full time

    Title: DVS - .NET Application Architect Location: Richmond, VA(Hybrid) Duration: 12 Months Responsibilities: Seven years of progressive responsibility in an IT environment with demonstrated technical knowledge which provides the necessary skills, knowledge and abilities. Three years relevant Experience with enterprise-wide integration architecture in .net...


  • Richmond, United States Integrated Resources Full time

    Position: NET Application Architect Location: Richmond, VA Duration : 6 months with a possibility for extension ONSITE Expectation. This is 100% on-site for the first month. After that 4 days on-site and 1 day telework Interview: Both Web Cam and In-personal interview Job Description: Seven years of progressive responsibility in an IT environment...


  • Richmond, United States Estes Express Full time

    Job Summary: In our dynamic and fast-paced environment, we are seeking a visionary Enterprise Security Architect to push the boundaries of innovation, fortifying our digital ecosystem against emerging threats. As an industry leader, Estes Express is committed to shaping the future, and we recognize the pivotal role of a creative and forward-thinking...


  • Richmond, United States Cyber Resource Full time

    Engagement Type Contract Short Description The DVS is seeking a .NET Application Architect/Developer to establish DVS internal application architecture. Duration: 6 mo with possibility for extension 100% ON SITE for first month and then 75% after Complete Description ONSITE Expectation. This is 100% on site for the first month. After that 4 days on site and...