Senior Application Security Architect

3 weeks ago


Washington, Washington, D.C., United States Bank of America Full time

Job Title: Senior Application Security Architect

Job Summary:

We are seeking a highly skilled Senior Application Security Architect to join our team at Bank of America. As a key member of our Global Information Security (GIS) team, you will be responsible for leading the development and maintenance of our application security blueprint.

Key Responsibilities:

  • Lead the effort to develop and maintain the application security blueprint for the bank.
  • Engage with GIS product managers, security architects, solution architects, enterprise architects, and analysts to identify and capture artifacts of application security architecture.
  • Develop and document the application security architectural strategy and evaluate the current architectural level.
  • Lead the solution design effort and provide specific practitioner guidance to remediate defects identified using SAST, DAST, or other programmatic technology.
  • Manage and maintain the application security defect remediation knowledgebase and update the artifact as needed.

Requirements:

  • 10-15 years of progressive experience in application security and/or software development, at least 2 years of experience in application security.
  • Knowledge of one or more enterprise application platforms and secure development in the same.
  • Knowledge of relevant standards, including IETF, W3, and platform-specific standards.
  • Exposure to application security testing techniques.
  • Able to read and write software in at least one programming language, such as C, C++, .Net, Java, or Python.
  • Comprehensive understanding of at least one application security life cycle, up to and including operations, maintenance, and decommissioning.
  • Knowledge of at least one application security testing methodology/approach, including formal methods, system-level security, SAST/DAST, threat modeling, ethical hacking, and crowd-sourcing.
  • Experience with business planning, governance, and management of application development or application security functions at a systemically important financial institution.
  • Ability to document and summarize solutions and guidelines around application security and associated topics.

Desired Skills:

  • Bachelor's degree or higher in CS, IT, a related technical or engineering field.
  • Application development or security testing experience.
  • Experience working in the financial sector.
  • CISSP or similar professional certification, or commensurate experience.
  • Technical writing skills.
  • Cyber security experience at a systemically important financial institution.
  • Experience working at a bank, credit union, money services business, or similar.
  • Experience with online collaboration tools and technologies, such as SharePoint, Slack, HipChat, video conferencing.
  • Experience with source control, agile development, bug tracking, build automation, and change control platforms.
  • Experience with dynamic application security defensive technology, such as WAF, RASP, and compiler security mechanisms and language-theoretic security.
  • Knowledge of NIST 800 series, FIPS standards, ISO 27000 series, CSA, and related standards.

Pay and Benefits:

This role is eligible for a competitive salary, benefits, and discretionary incentive plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group, and the overall success of the Company.

Equal Employment Opportunity:

Bank of America and its affiliates consider for employment and hire qualified candidates without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status, or any factor prohibited by law.



  • Washington, Washington, D.C., United States Humana Full time

    Job SummaryConviva Care Centers is seeking a highly skilled Senior Security Architect to join our team. As a key member of our security team, you will play a critical role in implementing security architecture, application security, identity and access management, and compliance with applicable security regulations and frameworks.ResponsibilitiesIdentify...


  • Washington, Washington, D.C., United States ManTech Full time

    Secure Our Nation, Ignite Your FutureManTech is seeking a highly motivated and customer-oriented Senior Computer Network Architect to provide unparalleled support to our customer and begin an exciting and rewarding career within our organization. We have opportunities in the Washington, DC area as well as Northern Virginia and Maryland.Key...


  • Washington, Washington, D.C., United States ManTech Full time

    Job DescriptionManTech is seeking a highly motivated and experienced Senior Computer Network Architect to join our team. As a key member of our engineering team, you will be responsible for designing, implementing, and maintaining secure network architectures for our customers.Key Responsibilities:Design and implement secure network architectures using Agile...


  • Washington, Washington, D.C., United States MBL Technologies Full time

    Job SummaryWe are seeking an experienced Cyber Security Architect to join our team in support of a federal agency. The ideal candidate will have a deep understanding of cybersecurity principles, federal regulations, and advanced security frameworks, with a proven track record in strategic security planning and implementation.Key Responsibilities:Lead the...


  • Washington, Washington, D.C., United States T-Rex Solutions Full time

    Job SummaryT-Rex Solutions is seeking a highly skilled Senior Cloud Security Engineer to lead the management, enhancement, and security of our Department of Treasury TCloud environments. The ideal candidate will have a deep understanding of system administration, security administration, and scripting, combined with expertise in cloud platforms and security...


  • Washington, Washington, D.C., United States AHU Technologies Inc Full time

    Job Title: Senior Network ArchitectAt AHU Technologies Inc, we are seeking a highly skilled Senior Network Architect to join our team.**Job Summary:**We are looking for a seasoned Network Architect to design and implement high-level network architectures for our organization.**Key Responsibilities:**- Develop and maintain network infrastructure plans-...


  • Washington, Washington, D.C., United States GSSR Inc Full time

    Job DescriptionThe IT Solutions Architect will work on multiple IT projects as a member of a project team and be responsible for the overall direction, guidance, and definition of an architecture program that effectively supports the company's business strategy. They will assist in facilitating the development of the future-state architecture, ensuring its...


  • Washington, Washington, D.C., United States Patrona Full time

    Job SummaryPatrona Corporation is seeking a highly skilled Senior Network Architect to join our team in supporting PEO IWS, the U.S. Navy's office responsible for acquiring state-of-the-art ship and submarine combat and weapons systems.About the RoleAs a Senior Network Architect, you will be responsible for managing the development cycle associated with...


  • Washington, Washington, D.C., United States IBM Full time

    Job DescriptionIBM is seeking a highly skilled Cloud Security Architect to join our team. As a Cloud Security Architect, you will be responsible for designing and developing the overall security architecture for the cloud environment, ensuring alignment with FedRAMP, NIST 800-53, and other relevant security frameworks.Key Responsibilities:Design and develop...

  • Security Architect

    4 weeks ago


    Washington, Washington, D.C., United States IBM Full time

    Job Title: Security ArchitectIBM is seeking a highly skilled Security Architect to join our team. As a Security Architect, you will be responsible for designing and developing the overall security architecture for the cloud environment, ensuring alignment with FedRAMP, NIST 800-53, and other relevant security frameworks.You will provide architectural...


  • Washington, Washington, D.C., United States Abode Techzone LLC Full time

    Job Title: Senior Cloud Solutions ArchitectWe are seeking a highly skilled Senior Cloud Solutions Architect to join our team at Abode Techzone LLC. As a key member of our cloud architecture team, you will be responsible for designing and implementing scalable, secure, and efficient cloud solutions using Azure technologies.**Key Responsibilities:*** Design...


  • Washington, Washington, D.C., United States IDR Healthcare Full time

    Palantir Senior Systems ArchitectIDR Healthcare is seeking a highly skilled Palantir Senior Systems Architect to join our team. As a key member of our data integration team, you will design and implement data integration solutions using Palantir Foundry.This role requires a strong background in data system architecture and project management, with experience...


  • Washington, Washington, D.C., United States T-Rex Solutions Full time

    Job DescriptionT-Rex Solutions is seeking a Senior Cloud Security Engineer to play a critical role in the management, enhancement, and security of our Department of Treasury TCloud environments. Your deep knowledge in system administration, security administration, and scripting, combined with your proficiency in cloud platforms and security practices, will...


  • Washington, Washington, D.C., United States Cynet Systems Full time

    Job Title: Cloud Security ArchitectJob Summary:Cynet Systems is seeking a highly skilled Cloud Security Architect to design and deploy highly available, scalable, and secure cloud infrastructure and applications with a focus on AWS and Azure Cloud. The ideal candidate will have experience with security operations teams to build and maintain SIEM, SOAR, and...


  • Washington, Washington, D.C., United States Apex Communication Corporation (ACC) Full time

    Job Title: Senior Cloud ArchitectWe are seeking a highly experienced Senior Cloud Architect to join our team at Apex Communication Corporation (ACC). The ideal candidate will have a strong background in cloud architecture, with a minimum of 10 years of experience in technical and management roles on US Army or DoD programs and projects.Key...


  • Washington, Washington, D.C., United States SUCCESS BY DESIGN LLC Full time

    Job Title: Senior Systems/Network Architect/Engineer with a Secret ClearanceWe are seeking a highly skilled Senior Systems/Network Architect/Engineer with a Secret Clearance to join our team at SUCCESS BY DESIGN LLC.Key Responsibilities:Design, implement, and support complex network systems and architectures.Develop and maintain Windows Server 2019, Active...


  • Washington, Washington, D.C., United States Highmark Health Full time

    Job Title: Principal Information Security ArchitectJob Summary:The Principal Information Security Architect at Highmark Health serves as the most senior security architect and advanced technology analyst in the company. This position involves synthesizing and simplifying complex needs such as business capability, operational efficiency, regulatory, security,...

  • Application Architect

    3 weeks ago


    Washington, Washington, D.C., United States NFF Full time

    About NFFNFF is a Washington, DC based company that offers a performance-focused approach to delivering transformational IT business solutions. We take pride in keeping users productive and engaged by providing business and IT teams with the solutions they need to improve their performance in a dynamic, connected world.NFF is the only Cisco Gold Partner...

  • Security Architect

    3 weeks ago


    Washington, Washington, D.C., United States ECS Limited Full time

    Job Title: Security ArchitectJob Summary:ECS Limited is seeking a highly skilled Security Architect to join our team. As a Security Architect, you will be responsible for leading customer engagement to capture, define, and understand user and security requirements. You will also assist in leading efforts to plan, design, and implement cross domain data...


  • Washington, Washington, D.C., United States Dynamics ATS Organic Full time

    Job DescriptionSolutions Through Innovative Technologies, Inc. (STI-TEC) specializes in delivering professional business and information management services. Our comprehensive portfolio of services identifies, manages, distributes, and improves business processes related to entities' most valued resource, information. As a fast-growing solutions provider,...