Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Architect, Information Security - DevSecOps/Application Security

$72.37k - $156.8k
Full-time

jobgether

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Architect, Information Security – DevSecOps/Application Security based in the United States.

This role is an opportunity to shape application security architecture and governance across a large, complex technology environment.
You will help development and engineering teams build security into applications from design through deployment.
The position combines hands-on security expertise with architecture, risk management, and cross-functional collaboration.
You will champion a shift-left DevSecOps approach by embedding effective security controls throughout the SDLC.
The role also focuses on secure design patterns, software supply chain risk, cloud-native applications, APIs, and CI/CD security.
You will act as a trusted security advisor and subject matter expert, helping teams turn technical risks into practical business decisions.
This is a high-impact opportunity to strengthen security maturity while enabling teams to deliver software securely and at scale.

Accountabilities:

  • Partner with application, development, solution architecture, DevOps, and security teams to assess and manage application security risks across design, development, testing, and deployment.
  • Conduct and support threat modeling, secure design assessments, and architecture reviews for applications, APIs, and cloud-native environments.
  • Define, document, and promote secure architecture patterns, guardrails, reusable controls, and security requirements aligned with organizational AppSec standards.
  • Guide teams in integrating and effectively using application security testing technologies, including SAST, DAST, and SCA, within CI/CD pipelines.
  • Support the implementation and enforcement of security requirements, standards, and control gates throughout the software development lifecycle.
  • Identify application and software supply chain security gaps and collaborate with engineering teams to develop practical, prioritized risk mitigation strategies.
  • Track vulnerabilities, security exceptions, and risk acceptances in accordance with established governance and risk management processes.
  • Collaborate with Security Champions and development teams to increase application security awareness, adoption, and overall maturity.
  • Contribute to AppSec education, training, awareness, and enablement programs that strengthen secure development practices.
  • Serve as a subject matter expert on application security, secure software development, and DevSecOps practices, providing guidance across technology initiatives.

Requirements:

  • 3+ years of professional experience in application security, software security, DevSecOps, or a closely related discipline.
  • Strong knowledge of secure SDLC methodologies, threat modeling, secure architecture, and secure-by-design principles.
  • Hands-on familiarity with application security testing tools and methodologies, including SAST, DAST, and software composition analysis (SCA).
  • Solid understanding of the OWASP Top 10, API security vulnerabilities, application security risks, and secure coding practices.
  • Familiarity with CI/CD pipelines, DevOps practices, and common development and deployment tooling.
  • Ability to assess technical security issues and clearly translate risks, potential business impact, and remediation options for both technical and non-technical stakeholders.
  • Strong analytical, problem-solving, communication, and collaboration skills, with the ability to influence development teams and security stakeholders.
  • Experience working within governance frameworks and translating security standards into practical engineering controls is highly valuable.
  • Preferred certifications include CISSP, CISM, CCSP, or an equivalent information security credential.
  • Experience implementing or aligning application security programs with frameworks such as OWASP SAMM or NIST SSDF is preferred.
  • Experience leading AppSec or DevSecOps transformation initiatives, security maturity programs, or enterprise-wide security improvements is an advantage.

Benefits:

  • Competitive annual compensation range of $72,370.82–$156,803.45 , with actual compensation varying based on geographic location, experience, education, and skill level.
  • Comprehensive benefits and compensation package.
  • Full-time opportunity with a U.S.-based position.
  • Opportunity to influence application security architecture, governance, and DevSecOps practices across a complex technology environment.
  • Exposure to modern application security, cloud-native technologies, APIs, CI/CD, software supply chain security, and secure development practices.
  • Opportunity to collaborate with engineering, architecture, DevOps, and cybersecurity professionals while contributing to enterprise-wide security maturity.
  • Equal opportunity workplace committed to fair consideration of qualified candidates.

How Jobgether works:

We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.

We appreciate your interest and wish you the best!

Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

#LI-CL1

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Vacancy posted 7 days ago
Similar jobs that could be interesting for youBased on the Architect, Information Security - DevSecOps/Application Security in United States vacancy
  • $103.1k - $171.9k

     ...impact team driving the future of secure healthcare technology. As an Information Protection Advisor, you will...  ...the SDLC, helping protect critical applications while accelerating innovation across...  ...that support enterprise-wide DevSecOps maturityProvide expert guidance to... 
    Application
    Full time
    Local area
    Work from home

    CIGNA

    Bloomfield, NJ
    1 day ago
  • $132.1k - $220.1k

    The Lead Security Software Engineer at CME Group participates in...  ...products across the Global Information Security (GIS) group and the...  ...the execution lifecycle of an application.Identify potential opportunities...  ...Azure).Experience in using DevSecOps tools and frameworks for... 
    Application
    Full time
    Work experience placement
    Local area
    Worldwide

    CME- Group

    Chicago, IL
    2 days ago
  • Job Title:Architect III - Security Domain ArchitectLocation:TX - Dallas/IrvingWhat...  ...the enterprise’s information security strategy. This role...  ...focuses on securing enterprise applications, APIs, data platforms,...  ...teams to embed security into DevSecOps, CI/CD, and cloud... 
    Application
    Full time

    Western Alliance Bancorporation

    Dallas, TX
    1 day ago
  • $168k - $303k

     ...TARGET AS A PRINCIPAL ENGINEER - APPLICATION SECURITYAbout us:  Working...  ...a Principal Application Security Engineer to provide technical...  ...:BS/MS in Computer Science, Information Security, Engineering or equivalent...  ...modern CI/CD pipelines and DevSecOps workflowsProven experience... 
    Application
    Full time
    Temporary work
    Work experience placement
    Flexible hours

    Target

    Brooklyn Park, MN
    2 days ago
  •  ...Humana is seeking a Lead, DevSecOps Architecture to define security-focused architecture strategy for enterprise platforms. The role emphasizes secure...  ...microservice stacks. You will collaborate with Enterprise Information Protection and engineering teams to embed security... 
    Application
    Remote work

    Humana

    Louisville, KY
    20 hours ago
  • SWBC is seeking a talented DevSecOps Security Engineer to leverage modern...  ...reliability of cloud and on-premise applications. This role partners with...  ...in Computer Science, Information Security, or related field,...  ...or AWS Certified Solutions Architect - Associate are highly desired... 
    Application
    Full time

    Southwest Business Corporation

    San Antonio, TX
    3 days ago
  • $135k - $175k

    Position Overview The DevSecOps Engineer IV serves as...  ...the DevSecOps and secure software delivery domain...  ...technical direction, architecting enterprise-scale...  ...software development and application security practices across...  ...Position Category: Information Technology Job Type:... 
    Application
    Full time
    Remote work

    Burlington Stores

    Beverly, NJ
    2 days ago
  •  ...can’t lose! Education:Bachelor’s degree in computer science, Information Security, or related field required.Master’s degree in Cybersecurity...  ...cloud (Amazon Web Services, Azure, Google Cloud Platform), application, and identity security.Proficiency in security technologies... 
    Application
    Full time
    Work experience placement
    Work at office

    Academy Sports + Outdoors

    Katy, TX
    1 day ago
  •  ...liaison between technical teams and clients, particularly in the areas of information security and application security. Ideal candidates will have a Bachelor's degree and experience in AI/ML and DevSecOps. This role offers the chance to work with cutting-edge technologies... 
    Application
    Relocation

    Infosys Limited

    Plano, TX
    2 days ago
  •  ...Description Dark Wolf is looking for a Mid-Level DevSecOps SME / Information System Security Engineer (ISSE) to join a collaborative, dynamic team...  ...evaluations of information systems design, containerized applications, and cloud architectures (AWS or GCP), and... 
    Application
    Full time
    For contractors

    Dark Wolf Solutions

    Herndon, VA
    more than 2 months ago
  • Job Title:Architect III - Security ArchitectLocation:Block 23What you'll do:As...  ...your domain, and develop applicable standards and patterns for...  ...DSS, SOX).Familiarity with DevSecOps practices and CI/CD...  ...gender identity or genetic information. Western Alliance Bancorporation... 
    Application
    Full time

    Western Alliance Bancorporation

    Dallas, TX
    2 days ago
  • $127k - $150k

     ...seeking an experienced Cyber Security Analyst to support and...  ...cloud, infrastructure, AI, and DevSecOps security initiatives. This role...  .../ML systems, generative AI applications, and AI-enabled business solutions...  ...’s degree in information technology, Cybersecurity, Computer... 
    Application
    H1b
    Visa sponsorship
    Work visa
    Relocation package
    Flexible hours
    3 days per week

    ISO New England

    Holyoke, MA
    4 days ago
  •  ...AbbVie is seeking an Application & Platform Security Architect to join our Information Security team. You will define security policies, patterns, and guardrails, and partner with development teams to ensure secure design, coding, configuration, and deployment across cloud... 
    Application

    AbbVie

    North Chicago, IL
    20 hours ago
  • $104k - $166k

    ResponsibilitiesPeraton is seeking an Information Systems Security Engineer (ISSE) to support our...  ...virtualization platforms, and containerized applications.Support incident response and...  ...security (AWS/Azure), Kubernetes, and DevSecOps.Deep understanding of NIST SP 800-16... 
    Application
    Contract work
    Shift work

    Peraton Corporation

    Washington DC
    16 hours ago
  • Bna Inc is seeking a Lead Security Engineer in Suitland, MD to drive application security for a federal modernization program supporting the U.S. Census Bureau...  ...security in every phase of the SDLC using DevSecOps methodologies and leading application security testing... 
    Application
    Work at office

    BNA

    Suitland, MD
    2 days ago
  • $179k - $208k

     ...RoleThis is a hands-on security position working within the Information Security group and with...  ...and the automation of application deployment pipelines to...  ...organization, the Cybersecurity Architect will drive the...  ...Application development and DevSecOps pipeline Building and... 
    Application
    Permanent employment
    Full time
    Work experience placement
    Work at office
    Local area

    Creative Artists Agency

    Nashville, TN
    2 days ago
  • $171.6k - $302.2k

     ...Hardware Architect - Information Security Seattle, Washington, United States Corporate Functions Apple Information Security is responsible...  ...market benchmarks, including performance, cost, and scope of application. Be challenged to work under pressure and with... 
    Application
    Work experience placement
    Relocation
    Shift work

    Apple Inc.

    Seattle, WA
    20 hours ago
  • $135k - $216k

    ResponsibilitiesPeraton is seeking an Information Systems Security Engineer (ISSE) to support our...  ...virtualization platforms, and containerized applications.Support incident response and...  ...security (AWS/Azure), Kubernetes, and DevSecOps.Deep understanding of NIST SP 800-16... 
    Application
    Contract work
    Shift work

    Peraton Corporation

    Annapolis Junction, MD
    16 hours ago
  •  ...Royal Caribbean Group’s Global Information Security Team has an exciting career...  ...strong technical focus to architect, build, and operate AI-...  ...security engineering, and DevSecOps to reduce manual work, accelerate...  ...search by the Company, and applications through agencies and other... 
    Application
    Full time

    Royal Caribbean International

    Miramar, FL
    16 hours ago
  •  ...Oceaneering is seeking an Application Security Architect to build and operationalize an enterprise AppSec program, embedding security into the SDLC and CI/CD pipelines. The role collaborates with SCOE, Engineering, and Cybersecurity leadership to enforce secure development... 
    Application
    Work at office

    Oceaneering

    Houston, TX
    21 hours ago
  •  ...they're doing!Job Description: The Sr. Principal Information Security Architect is a strategic technical leader responsible for...  ...architectural oversight for cloud-native and hybrid applications Integrate security into DevSecOps pipelines and CI/CD frameworks Conduct threat... 
    Application
    Full time

    Ingram Micro

    Santa Ana, CA
    1 day ago
  • $118.8k - $177.1k

     ...Summary: The Principal Architect, Product Security is a senior product security...  ...implementation of modern application, API, cloud-native, and...  ...degree in Computer Science, Information Technology, Cybersecurity,...  ...knowledge of secure SDLC, DevSecOps, threat modeling, vulnerability... 
    Application
    Temporary work
    Work experience placement
    Work at office
    Immediate start
    Flexible hours
    Night shift

    JetBlue Airways

    Long Island City, NY
    3 days ago
  • $110k - $150k

     ...Job Description Cyber Security Engineer...  ...organization's infrastructure, applications, and data. The ideal...  ...Trust Architecture DevSecOps Docker & Kubernetes...  ...in Computer Science, Information Security, Cyber Security...  ...: Cybersecurity Architect Expert Certified Cloud... 
    Application
    Full time
    Remote work

    Vultus Inc

    North Chatham, NY
    24 days ago
  •  ...mandatesCollaborate with senior architects to integrate security controls into systems design, evaluating...  ...software development lifecycle (DevSecOps), perform application vulnerability assessments, and...  ...and tune use cases for Security Information and Event Management (SIEM)... 
    Application
    Local area

    KPMG

    McLean, VA
    1 day ago
  •  ...role of Vice President, Cloud Security Engineer to join our Cloud...  ...infrastructure, platform, and application environments in AWS, Azure,...  ....Partner with cloud architects and governance stakeholders...  ...engineering, security engineering, DevSecOps, infrastructure security, or... 
    Application
    Worldwide
    Flexible hours

    The Bank of New York Mellon

    New York, NY
    2 days ago
  • $100k - $135k

     ...About the RoleThe Enterprise Security Administrator is responsible...  ...architectures, systems, applications, networks, and cloud environments...  ...while ensuring Apex's information assets are protected against...  ...with cloud-native security and DevSecOps practices.Knowledge of MITRE... 
    Application
    Full time
    Work at office

    Apex Technology

    Los Angeles, CA
    2 days ago
  •  ...Defense and National Security mission sets. We leverage...  ...Development, Application, and Training (EDAT)...  ...that protect sensitive information throughout its lifecycle...  ...closely with cybersecurity architects, ICAM engineers,...  ...development and DevSecOps environments.CertificationsCandidate... 
    Application
    For contractors
    Work at office

    Barbaricum

    Tampa, FL
    2 days ago
  • $158.82k - $269.99k

     ...compliance coordination, and security integration for a complex...  ...are addressed across systems, applications, integrations, cloud services...  ...delivery, architecture, DevSecOps, cloud, data, and service operations...  ...supporting cybersecurity, information assurance, security... 
    Application
    Full time
    Contract work
    Work experience placement
    Work at office
    Remote work

    ICF

    Reston, VA
    3 days ago
  • The Cybersecurity Architect is a senior member of the ABS IT Cyber Security Team responsible for designing...  ..., data, systems, and applications. This role serves as a...  ...practices, and DevSecOps integration across the...  ...in Computer Science, Information Security, Software Engineering... 
    Application
    Permanent employment
    For contractors
    Work at office
    Remote work
    Flexible hours

    ABS Group

    Houston, TX
    3 days ago
  •  ...nation's most critical national security challenges in the most...  ...solutionsBuild solutions with a focus on information security principalsWork...  ...with Cisco Application Centric Infrastructure (ACI)...  ...Spaces DirectKnowledge of DevOps/DevSecOps methodologies and tools Job... 
    Application
    Work experience placement
    Flexible hours

    Cadre

    Reston, VA
    13 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Architect, Information Security - DevSecOps/Application Security. Be the first to apply!