Architect IV - Application Security

Mutual of Omaha Insurance Company
Cliff Township, United States of America
yesterday

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior
Compensation
$ 220K

Job location

Remote
Cliff Township, United States of America

Tech stack

Artificial Intelligence
Software System Penetration Testing
Computing Platforms
Computer Security
Information Systems
DevOps
Open Web Application Security
Systems Development Life Cycle
Secure Coding
Systems Integration
Web Applications
Policy as Code
Enterprise Software Applications
Software Security
GWAPT
Information Technology
Devsecops
Static Application Security Testing
Dynamic Application Security Testing

Job description

The Architect IV - Application Security is a senior technical leader responsible for shaping how secure software is designed, built, and delivered across Mutual of Omaha. This role partners closely with engineering, platform, and DevOps teams to embed security directly into delivery workflows-enabling teams to move fast while managing risk responsibly.

This position is ideal for a hands-on architectural leader who can translate security strategy into practical, scalable solutions that reduce risk, support business outcomes, and empower engineers to do their best work. If you're energized by influencing design up front and enabling secure delivery at enterprise scale, we invite you to apply., * Lead and operationalize application security architecture at enterprise scale, ensuring designs are practical, reusable, and embedded into how teams build and deliver software.

  • Translate security strategy into action by turning frameworks and standards into policy-as-code, reference architectures, and guardrails that integrate seamlessly into engineering workflows.
  • Partner closely with development, platform, and DevOps teams to influence application and platform design early through threat modeling and architectural guidance focused on prevention.
  • Enable secure delivery at speed by integrating application security controls directly into CI/CD pipelines and developer tooling, reducing friction while managing risk responsibly.
  • Advise leaders and stakeholders on architectural tradeoffs, clearly connecting security decisions to business outcomes, risk reduction, and long-term sustainability.

Requirements

  • Significant experience (10 years or more) in application security architecture, secure software design, or security engineering within complex enterprise environments.
  • A demonstrated ability to design and scale security capabilities that enable teams rather than slow them down.
  • Strong collaboration skills and comfort working across organizational boundaries, influencing without direct authority.
  • Deep experience with threat modeling, secure design reviews, and architectural risk analysis, with an emphasis on prevention and informed decision-making.
  • A business-aligned mindset focused on reducing material risk and supporting Mutual of Omaha's strategic objectives.
  • Hands on experience with integrating and optimizing automation tools for SAST, DAST, SCA solutions to streamline security across the SDLC.
  • Well versed in the OWASP Top 10, SANS Top 25, and key regulatory frameworks.
  • Experience in driving AI development planning for AI-assisted penetration testing, shaping how automation augments modern offensive security.
  • Excellent communication skills, with the ability to explain complex security concepts clearly to both technical and non-technical audiences.
  • A strong sense of ownership, accountability, and curiosity-balanced with thoughtful risk awareness.
  • You promote a collaborative culture, value different ideas and opinions, and listen courageously, remaining curious in all that you do.
  • Able to work at our office located in Omaha, NE in a hybrid environment.

PREFERRED:

  • Master's degree in Information systems or Cybersecurity.
  • Bachelor's degree in Computer Science, Information Systems, Engineering, or a related field.
  • GIAC Web Application Penetration Tester - GWAPT
  • Certified in Secure Coding
  • Experience enabling or leading secure SDLC, DevSecOps, or enterprise application security initiatives.
  • A proven ability to influence architectural direction and drive alignment across diverse teams and stakeholders.

We value unique experience, skills, and passion for innovation. If your experience aligns with the listed requirements, please apply!

Benefits & conditions

  • Estimated Salary: $158,000 - $220,000, plus annual bonus opportunity.
  • 401(k) plan with a 2% company contribution and 6% company match.
  • Work-life balance with vacation, personal time and paid holidays. See our benefits and perks page for details.
  • Applicants for this position must not now, nor at any point in the future, require sponsorship for employment.

Apply for this position