Current jobs related to Lead Application Security Architect - Washington - United Airlines


  • Washington, Washington, D.C., United States Bank of America Full time

    Job Title: Senior Application Security ArchitectJob Summary:We are seeking a highly skilled Senior Application Security Architect to join our team at Bank of America. As a key member of our Global Information Security (GIS) team, you will be responsible for leading the development and maintenance of our application security blueprint.Key...

  • Application Architect

    4 weeks ago


    Washington, Washington, D.C., United States Enlightened, Inc. Full time

    Job Title: Application ArchitectWe are seeking a seasoned Application Architect to join our team at Enlightened, Inc. The ideal candidate will have a strong background in web architecture and AWS certification, with a proven track record in designing and implementing scalable, secure, and high-performance web applications.Key Responsibilities:Design and...

  • Security Architect

    6 days ago


    Washington, Washington, D.C., United States ECS Limited Full time

    Job Title: Security ArchitectJob Summary:ECS Limited is seeking a highly skilled Security Architect to join our team. As a Security Architect, you will be responsible for leading customer engagement to capture, define, and understand user and security requirements. You will also assist in leading efforts to plan, design, and implement cross domain data...


  • Washington, United States Architect of the Capitol Full time

    Job SummaryThe Architect of the Capitol is seeking a highly skilled Supervisory Architect/Engineer to lead the Tenant Projects Branch. As a key member of the Architect of the Capitol's team, you will be responsible for supervising professional and technical staff, managing projects, and ensuring the delivery of high-quality results on time and within...


  • Washington, Washington, D.C., United States IBM Full time

    Job DescriptionIBM is seeking a highly skilled Cloud Security Architect to join our team. As a Cloud Security Architect, you will be responsible for designing and developing the overall security architecture for the cloud environment, ensuring alignment with FedRAMP, NIST 800-53, and other relevant security frameworks.Key Responsibilities:Design and develop...


  • Washington, Washington, D.C., United States Cynet Systems Full time

    Job Title: Cloud Security ArchitectJob Summary:Cynet Systems is seeking a highly skilled Cloud Security Architect to design and deploy highly available, scalable, and secure cloud infrastructure and applications with a focus on AWS and Azure Cloud. The ideal candidate will have experience with security operations teams to build and maintain SIEM, SOAR, and...

  • Security Architect

    2 weeks ago


    Washington, Washington, D.C., United States IBM Full time

    Job Title: Security ArchitectIBM is seeking a highly skilled Security Architect to join our team. As a Security Architect, you will be responsible for designing and developing the overall security architecture for the cloud environment, ensuring alignment with FedRAMP, NIST 800-53, and other relevant security frameworks.You will provide architectural...


  • Washington, United States Milestone Technologies, Inc. Full time

    IT Security Architect6 Months Contract with possible extensionAtlanta; GA or Washington; DC or Silver Spring; MD (anticipate 3-4 days per week onsite)Overview:The IT Security Architect is a critical technical role responsible for ensuring the secure design and compliance of client's enterprise architecture to effectively and securely support the organization...

  • Security Specialist

    4 weeks ago


    Washington, United States Architect of the Capitol Full time

    Job SummaryThis position is located in the Architect of the Capitol (AOC), Office of the Chief Security Officer (OCSO), Assistant Director, Security Division. The AOC is seeking an experienced operational security professional to perform specialized duties as a security specialist working as a member of a team that plans and conducts all security-related...


  • Washington, Washington, D.C., United States Editech Staffing Full time

    Job Title: Application Security LeadWe are seeking a highly skilled and experienced Application Security Lead to join our team. As a key member of our security team, you will be responsible for leading our application security testing efforts and ensuring the security of our applications.Key Responsibilities:Lead and mentor a team of penetration testers to...


  • Washington, Washington, D.C., United States MBL Technologies Full time

    Job SummaryWe are seeking an experienced Cyber Security Architect to join our team in support of a federal agency. The ideal candidate will have a deep understanding of cybersecurity principles, federal regulations, and advanced security frameworks, with a proven track record in strategic security planning and implementation.Key Responsibilities:Lead the...


  • Washington, Washington, D.C., United States Highmark Health Full time

    Job SummaryThe Principal Information Security Architect – Enterprise Technology serves as the most senior security architect and advanced technology analyst in the company. This role synthesizes and simplifies complex needs such as business capability, operational efficiency, regulatory, security, and privacy considerations into architecture and system...


  • Washington, Washington, D.C., United States IQUASAR LLC Full time

    Job Title: Azure Architect Tech LeadWe are seeking an experienced Azure Architect Tech Lead to join our team at MSM Technology, a Woman-Owned Small Business (WOSB) located in Quantico, VA. As a remote position, you will have the opportunity to work with a talented team of engineers, software developers, and other key professionals in the field of cloud...


  • Washington, Washington, D.C., United States iQuasar Full time

    Job Title: Network Architect LeadiQuasar, LLC is seeking a highly skilled Network Architect Lead to join our team. As a key member of our engineering team, you will be responsible for designing, implementing, and maintaining our enterprise network infrastructure.Key Responsibilities:Drive process improvement and deliver efficiency in our network...


  • Washington, Washington, D.C., United States Blue Rose Consulting Group, Inc. Full time

    Job OverviewBlue Rose Consulting Group, Inc. is seeking a highly skilled Lead Platform Architect to join our team in Washington, DC. This is a hybrid role open to U.S. citizens only.The successful candidate will be required to obtain a Public Trust Clearance prior to start.Key ResponsibilitiesRe-architect and deliver a highly available, high-performing IT...


  • Washington, Washington, D.C., United States NFF Full time

    About NFFNFF is a Washington, DC based company that offers a performance-focused approach to delivering transformational IT business solutions. We take pride in keeping users productive and engaged by providing business and IT teams with the solutions they need to improve their performance in a dynamic, connected world.NFF is the only Cisco Gold Partner...


  • Washington, Washington, D.C., United States Architect of the Capitol Full time

    Job SummaryWe are seeking a highly skilled General Engineer/Architect to join our team at the Architect of the Capitol. As a key member of our team, you will be responsible for overseeing project planning, design, budgets, and construction schedules to ensure that projects are completed within guidelines and on time.Key ResponsibilitiesPrepare requirements...


  • Washington, Washington, D.C., United States Simple Technology Solutions Full time

    Job Title: Azure Architect LeadJob Summary:Simple Technology Solutions is seeking an experienced Azure Architect Lead to join our team. As a key member of our cloud architecture team, you will be responsible for designing and implementing complex cloud solutions using Microsoft Azure, ensuring high availability, performance, and security.Key...


  • Washington, Washington, D.C., United States SAIC Full time

    Job Summary:This is a Security/Firewall Architect position within the Vanguard 2.2.1 Cybersecurity Integrity Center (CIC) office, within the Department of State Bureau of Diplomatic Technology (DT) providing security architecture and design leadership over multiple firewall and security systems and devices.The well-qualified candidate will possess and apply...


  • Washington, Washington, D.C., United States Cynet Systems Full time

    Job Description:Overview:Cynet Systems is seeking a highly skilled Cloud Security Architect to design and deploy highly available, scalable, and secure cloud infrastructure and applications with a focus on AWS and Azure Cloud.Responsibilities:Design and develop automation to build cloud security accelerators and IP.Experience with Security Operations teams...

Lead Application Security Architect

2 months ago


Washington, United States United Airlines Full time

United's Digital Technology team is dedicated to designing, developing, and maintaining scalable technology solutions through innovative architectures, data analytics, and digital solutions.

Our Core Values : At United Airlines, we recognize that diversity fuels innovation and is fundamental to our operations. Our Shared Purpose: "Connecting people. Uniting the world." motivates us to be the premier airline for our employees, customers, and all stakeholders, achievable only through a genuinely diverse and inclusive workforce. Our global team comprises diverse individuals collaborating with advanced technology to establish the finest airline in aviation history.

With various employee-led "Business Resource Group" communities and exceptional benefits such as health insurance, parental leave, and travel opportunities, United is a unique workplace that fosters a welcoming and inclusive environment.

Role Overview and Responsibilities

The Lead Application Security Architect is responsible for ensuring that our services, applications, and websites are developed and implemented in alignment with United's secure development standards. This senior-level role collaborates closely with development teams, product teams, and various departments to embed security throughout the product lifecycle, from design to deployment.
The Lead Architect is recognized as a subject matter expert in defining security requirements, conducting application security assessments, and offering developers guidance on remediation strategies.

  • Acts as a trusted advisor, assisting in the creation of security designs, requirements, and risk mitigation strategies in line with industry best practices and regulatory standards.
  • Leads architecture design evaluations and threat modeling for our products, both cloud-based and on-premises.
  • Recommends and implements products and services that fulfill operational and security needs.
  • Aids in the design, definition, and implementation of security best practices and standards, ensuring product development teams comprehend them.
  • Advocates for and contributes to the continuous enhancement of our security strategy and supports risk prioritization.
  • Provides training and support to team members.
  • Drives the improvement of security accessibility through automation, continuous integration pipelines, and other methods.
  • Conducts code analysis of applications, both manually and utilizing SAST, DAST, and SCA scanning solutions, along with manual vulnerability assessments.
  • Serves as the technical point of contact for product teams regarding automation, CI/CD, and remediation guidance.

United Airlines is an equal opportunity employer. We recruit, employ, train, compensate, and promote without regard to race, religion, color, national origin, gender identity, sexual orientation, physical ability, age, veteran status, or any other protected status as mandated by applicable law.

Qualifications

Required

  • Bachelor's degree in a STEM field, preferably Computer Science.
  • At least 9 years of experience in a related domain.
  • Profound understanding of OWASP Top 10 and CWE 25; ability to implement and integrate remediation strategies.
  • Capacity to collaborate with development teams to create secure solutions, effectively communicating risks and achieving consensus on diverse priorities.
  • Familiarity with common vulnerabilities and attack vectors, encryption technologies, and authentication protocols.
  • Proficient in application risk assessment, risk categorization, and application security testing tools.
  • Awareness of current industry standards, best practices, and reference architectures.
  • Strong understanding of secure network and system design in both cloud and traditional environments, as well as network and web-related protocols.
  • Excellent grasp of web applications, web servers, and layer 7 application technologies, frameworks, and protocols concerning application development and deployment.
  • Ability to work independently and self-motivate.
  • Exceptional problem-solving, critical thinking, interpersonal, collaboration, written, and verbal communication skills.
  • Must be legally authorized to work in the United States for any employer without sponsorship.
  • Successful completion of an interview is required to meet job qualifications.
  • Reliable and punctual attendance is essential for this position.

Preferred

  • Master's degree.
  • Certified Ethical Hacker (CEH).
  • GIAC Security Essentials (GSEC).
  • Certified Information Security Manager (CISM).
  • CompTIA Security +.
  • Certified Information Systems Security Professional (CISSP).
  • Certified Information Systems Auditor (CISA).
  • Systems Security Certified Practitioner (SSCP).
  • CompTIA Advanced Security Practitioner (CASP+).
  • Offensive Security Certified Professional (OSCP).
  • Minimum of 12 years of experience in a related field, including any combination of the following:
  • Threat modeling, secure coding, identity management and authentication, software development, cryptography, system administration, network security, and cloud computing.
  • Application penetration testing to demonstrate and assess the exploitability of vulnerabilities.
  • Familiarity with waterfall and agile development processes and the ability to integrate secure development practices into both models.
  • Experience with multiple programming languages.
  • Proven success in implementing effective Secure SDLC frameworks across a large organization.