Staff Security Architect

4 days ago


New York, New York, United States Intuit Inc Full time
Job Description

We are seeking a highly skilled Staff Security Engineer to join our team at Intuit Inc. The ideal candidate will have over 10 years of overall experience, including 5+ years of coding experience, and a robust background in security reviews, threat modeling, and incident response.

This role requires a unique combination of advanced software development skills and deep expertise in security to perform thorough security reviews and threat modeling for both regular and Generative AI applications.

The successful candidate will seamlessly integrate security into our development processes, ensuring our applications are secure by design and capable of resisting various threats.

This is a unique opportunity for a seasoned software engineer with a strong security focus to play a vital role in enhancing the security posture of our applications, including cutting-edge Generative AI solutions.

Responsibilities
  • Develop, test, and maintain high-quality code for various software applications, emphasizing security best practices.
  • Conduct comprehensive security reviews and threat modeling for new and existing applications, including Web, LLM, Generative AI, Mobile, Cloud, Thick Client applications, to identify potential security vulnerabilities and risks.
  • Automate the security review and threat modeling processes using scripting languages such as Python, Perl, or Bash.
  • Collaborate with various teams across the organization, including software developers, product managers, and security professionals, to ensure security is integrated throughout the software development lifecycle.
  • Develop and implement standardized security methodologies, procedures, and tools for application security.
  • Stay informed about the latest security threats, vulnerabilities, and trends in both traditional and Generative AI application security.
  • Document and report security findings in a clear and structured manner to both technical and non-technical stakeholders.
  • Provide actionable remediation recommendations and track their implementation to closure.
  • Contribute to the development of security policies, standards, and guidelines.
  • Mentor junior engineers on secure coding practices and develop internal training materials.
  • Participate in code reviews to ensure that security best practices are maintained across all projects.
  • Lead the development of security-related features and tools to enhance the security posture of our applications.
  • Collaborate with the incident response team to investigate, remediate, and learn from security incidents, ensuring that findings are integrated into future security measures.
Requirements
  • Bachelor's degree in computer science, Information Security, Software Engineering, or a related field. Equivalent experience will be considered.
  • A minimum of 10 years of overall experience, including 5+ years of software development experience with a strong emphasis on security.
  • Experience with LLM, Generative AI Models, and prompt engineering (e.g., OpenAI, Google Gemini, Claude).
  • Strong understanding of OWASP Web, LLM, and Mobile Top 10, SANS Top 25, CVE, and MITRE ATT&CK frameworks.
  • Proven experience in security reviews and threat modeling for a wide range of applications, including Generative AI applications.
  • Strong programming skills in languages such as Python, Java, C++, or similar, with a focus on secure coding practices.
  • In-depth understanding of security protocols, authentication/authorization mechanisms, encryption, and secure software development practices.
  • Familiarity with security assessment tools and best practices for identifying and mitigating vulnerabilities.
  • Excellent analytical and problem-solving skills, with the ability to identify and prioritize security risks based on potential impact.
  • Strong communication skills, with the ability to explain complex security issues to both technical and non-technical audiences.
  • Experience managing and mentoring a team of security professionals.
  • Relevant certifications such as OSCP, OSWE, OSEP, CRTE, CRTP, or Security+ are a plus.
  • Experience with secure code review, software development lifecycle (SDLC), and DevSecOps practices is preferred.
  • Proven experience in contributing to incident response efforts, including investigation, remediation, and post-incident analysis.
What We Offer

At Intuit Inc, we offer a competitive salary range of $191,000 - $258,500, as well as a comprehensive benefits package, including medical, dental, and vision insurance, 401(k) matching, and paid time off.

We are an equal opportunity employer and welcome applications from diverse candidates. Intuit Inc is committed to creating a workplace that is inclusive and respectful of all employees, regardless of their background, culture, or identity.



  • New York, New York, United States Comfort Click Full time

    Job DescriptionWe're building the ultimate platform for modern finance teams at Comfort Click, and we're looking for a skilled Staff Cloud Security Architect to help us make it the most secure place for our customers to collect, manage, and put to work their business' financial information.The Security Engineering team plays a crucial role in ensuring the...

  • Security Architect

    1 month ago


    New York, New York, United States DataDirect Networks Inc Full time

    Job Title: Security ArchitectWe are seeking a highly skilled Security Architect to join our team at DataDirect Networks Inc. As a Security Architect, you will be responsible for designing and implementing secure solutions for our cloud storage infrastructure.Key Responsibilities:Design and implement secure architecture for cloud storage infrastructureDevelop...

  • Security Architect

    2 weeks ago


    New York, New York, United States Tech Tammina Full time

    Job Title: Security ArchitectAt Tech Tammina, we are seeking a highly skilled Security Architect to join our team. The ideal candidate will have a strong background in IT security standards and architecture, with a minimum of 12 years of experience.The Security Architect will be responsible for designing and implementing security controls, participating in...


  • New York, New York, United States Matrix Medical Network Full time

    About the RoleWe are seeking a highly skilled Cyber Security Architect to join our team at Matrix Medical Network. As a key member of our organization, you will play a critical role in designing and implementing robust security solutions to protect our systems and data.Key ResponsibilitiesDevelop and implement security strategies to mitigate risks and...


  • New York, New York, United States Saxon Global Full time

    Job Title: Cyber Security ArchitectAbout the Role:We are seeking a highly skilled Cyber Security Architect to join our team at Saxon Global. As a Cyber Security Architect, you will be responsible for evaluating and implementing new technologies, analyzing infrastructure and software designs and implementations, and identifying and resolving potential issues...


  • New York, New York, United States Abnormal Security Full time

    About the RoleAbnormal Security is seeking a highly skilled Staff Software Engineer to lead the Cellular Architecture team. This team will be responsible for executing the company's strategic goal of transitioning to a Cellular-based Architecture, a complex project that will improve the scalability and reliability of the product offerings.This role involves...


  • New York, New York, United States SysLogic Full time

    Job Title: Application Security ArchitectWe are seeking a highly skilled Application Security Architect to join our team at SysLogic. As a key member of our managed security offering, you will play a critical role in developing enterprise architectural security deliverables that drive significant value to our clients.Key Responsibilities:Build strong client...


  • New York, New York, United States Matrix Medical Network Full time

    About the RoleMatrix Medical Network is seeking a highly skilled Cyber Security Architect to join our team. As a Cyber Security Architect, you will be responsible for designing and implementing secure solutions to protect our organization's infrastructure and data.Key ResponsibilitiesDevelop and implement security strategies to protect against cyber...


  • New York, New York, United States Startech Network Inc. Full time

    Job Title: Security Solutions ArchitectWe are seeking a highly motivated and experienced Security Solutions Architect to join our team at Startech Network Inc.About the Role:As a Security Solutions Architect, you will be responsible for designing and implementing automated security solutions that secure and harden internal platforms, reducing friction for...


  • New York, New York, United States Maveris Full time

    Job Title: DevSecOps Security ArchitectMaveris is a leading IT and cybersecurity services company that helps organizations create secure digital solutions to accelerate their mission. We are committed to delivering exceptional solutions to our clients and are seeking a highly skilled DevSecOps Security Architect to join our team.About the Role:We are looking...


  • New York, New York, United States SysLogic Full time

    Job DescriptionWe are seeking a highly skilled Application Security Architect to join our team at SysLogic. As a key member of our managed security offering, you will be responsible for developing enterprise architectural security deliverables that drive significant value to our clients.You will work closely with key client decision makers and business...


  • New York, New York, United States Duolingo Full time

    Senior Security ArchitectAt Duolingo, we're committed to developing the best education in the world and making it universally available. To achieve this mission, we need a skilled Senior Security Architect to join our team.This role is a pivotal part of our security strategy, responsible for designing and developing scalable monitoring and response systems...

  • Security Architect

    1 month ago


    New York, New York, United States DataDirect Networks Inc Full time

    Job Title: Security ArchitectWe are seeking a highly skilled Security Architect to join our Infinia engineering team at DataDirect Networks Inc. The successful candidate will be responsible for designing, building, and delivering components of our Infinia security solution.Key Responsibilities:Design and implement good security practices in the Infinia...


  • New York, New York, United States GE Healthcare Full time

    Job DescriptionAs a Principal Cyber Security Architect at GE HealthCare, you will be responsible for designing and implementing secure cloud and enterprise network environments. You will work closely with cross-functional teams to ensure that security architecture aligns with business goals and objectives.Key Responsibilities:Participate in domain technical...


  • New York, New York, United States LanceSoft Full time

    Job Summary:As a Senior Security Architect at LanceSoft, you will provide technical leadership and consultation for infrastructure architects and engineers to ensure the secure deployment of technology. You will be responsible for driving consideration of cybersecurity tools and datasets to enhance detective and preventative control sets. Additionally, you...


  • New York, New York, United States Scout Exchange Full time

    Job Title: Cloud Security ArchitectJob Summary:We are seeking an experienced Cloud Security Architect to design and implement comprehensive identity and access management solutions within Google Cloud Platform (GCP). The ideal candidate will be responsible for establishing security frameworks, best practices, and policies to ensure the secure management of...


  • New York, New York, United States Matrix Medical Network Full time

    About the RoleWe are seeking a highly skilled Cyber Security Architect to join our team at Matrix Medical Network. As a Cyber Security Architect, you will be responsible for designing and implementing security solutions to protect our organization's infrastructure and data.ResponsibilitiesDevelop and implement security strategies to mitigate risks and...


  • New York, New York, United States Lorven Technologies Full time

    We are seeking a highly skilled GCP IAM Security Architect to join our team at Lorven Technologies. The ideal candidate will have a strong background in designing and implementing comprehensive identity and access management solutions within Google Cloud Platform (GCP).The successful candidate will be responsible for establishing security frameworks, best...


  • New York, New York, United States Monad Labs Full time

    Job Title: Network Security ArchitectAbout the Role:We are seeking a highly skilled Network Security Architect to join our team at Monad Labs. As a Network Security Architect, you will be responsible for designing and implementing secure network architectures for our blockchain infrastructure.Key Responsibilities:Design and implement secure network...


  • New York, New York, United States Vimerse InfoTech Inc Full time

    Job Title: Network Security ArchitectAt Vimerse InfoTech Inc, we are seeking a highly skilled Network Security Architect to lead and support the development, implementation, and management of Privileged Access Management (PAM) strategies and frameworks across the enterprise.Key Responsibilities:Design and implement PAM policies, procedures, and standards to...