Application Security Architect

Fynbosys Inc
New York, United States
18 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Application Programming Interfaces (APIs) Amazon Web Services Cloud Computing Security Cyber Security Continuous Integration Information Leak Prevention Identity and Access Management OAuth OpenID Open Web Application Security Systems Development Life Cycle Role-Based Access Control
+13 more
JSON Web Token Policy as Code Google Cloud Large Language Models Software Security Kubernetes Virtual Agents Terraform Docker Static Application Security Testing Vulnerability Analysis Microservices Dynamic Application Security Testing

Job description

  • Design and implement application security architecture across applications, APIs, and microservices.
  • Perform threat modeling, security reviews, and vulnerability assessments.
  • Embed security into the SDLC and CI/CD pipelines using SAST, DAST, SCA, and other security tools.
  • Ensure secure coding practices aligned with OWASP Top 10 and API Security.
  • Secure cloud-native applications across AWS/Google Cloud Platform, Kubernetes, and containers.
  • Define security controls for GenAI, LLM, RAG, and Agentic AI applications.
  • Address AI security risks such as prompt injection, data leakage, insecure outputs, and excessive agency.
  • Implement IAM, authentication, authorization, encryption, Policy-as-Code, and Identity-as-Code.
  • Partner with engineering and security teams to drive security-by-design.

Requirements

  • 12+ years of experience in Application Security / Security Architecture.
  • Strong knowledge of OWASP, Threat Modeling, Secure SDLC, API Security, SAST/DAST/SCA.
  • Experience with AWS/Google Cloud Platform, Kubernetes, Docker, CI/CD, Terraform.
  • Strong understanding of OAuth2, OIDC, JWT, IAM, RBAC/ABAC.
  • Experience with GenAI/LLM, RAG, Agentic AI, or AI Security.
  • Knowledge of LangChain/LangGraph, vector databases, and AI security controls is a plus.
  • Strong communication and stakeholder management skills.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · World Congress 2025

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

26:47 min

Exploring pathways to application security careers and research workflows

Vandana Verma Sehgal · LIVE

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all