Application Security Architect

Nerdio, Inc.
United States
5 days ago
Apply on startup.jobs
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Working hours
Regular working hours
Job source

Tech stack

JavaScript (Programming Language) Software System Penetration Testing C Sharp (Programming Language) Code Review Cross-Site Request Forgery Open Web Application Security Secure Coding Software Engineering SQL Injection ReactJS Software Security Cross-Site Scripting (XSS)
+7 more
Gitlab Restful APIs Api Management Static Application Security Testing Vulnerability Analysis Programming Languages Dynamic Application Security Testing

Job description

Nerdio’s growing security team seeks an Application Security Architect to help us enhance the security of our cutting-edge applications. Partnering closely with our engineering and product teams, you will play a vital role in applying your security expertise throughout the software development lifecycle. The architect will be a key contributor to evolving the Application Security program from inception.

What You’ll Do

  • Establish and continuously improve the AppSec program’s strategy, processes, and tooling.
  • Collaborate with engineers to integrate security best practices into design reviews, threat modeling, code reviews, and penetration testing.
  • Participate in secure code review and penetration testing efforts, honing your skills with hands-on experience under the guidance of senior team members.
  • Contribute to deep-dive security reviews of our web, mobile, and API products to ensure they adhere to secure design principles.
  • Participate in security training and share your learnings with the broader engineering team to foster a culture of security awareness.
  • Assist in incident response to gain valuable real-world experience and help protect Nerdio’s systems and data.
  • Gain exposure to SAST/DAST tools and risk assessment, building a foundation for future growth.
  • Mentor junior members of the AppSec team to support their professional growth and skill development.

Requirements

  • 10+ years of experience in application security or a related field, with a passion for learning and growing your skillset.
  • Someone who has led the initial inception of the Application Security program from the ground up.
  • A solid understanding of security fundamentals and common vulnerabilities (e.g., XSS, CSRF, SQL Injection).
  • A knack for identifying potential risks and collaborating with engineers to find effective solutions.
  • The ability to effectively communicate security concepts to both technical and non-technical audiences.

Preferred Qualifications

  • Familiarity with one or more programming languages (C#, React, JavaScript and REST APIs, to aide in code review and vulnerability analysis.
  • Actively engaged in the security community through participation in B-sides conferences, OWASP chapter activities, and regular contributions to GitLab repositories, fostering continuous learning and collaboration.

Benefits & conditions

  • Competitive Base and Incentive Plan
  • Stock Options
  • Health and Welfare Plans*
  • Life and Disability Plans*
  • Retirement Plan*
  • Unlimited Flexible Paid Time Off, including your birthday off!
  • Collaborative Team Culture

  • Benefits for international employees, outside the US, vary by country.

About the company

Nerdio adds value on top of the powerful capabilities in Azure Virtual Desktop, Windows 365, and Microsoft Intune by delivering hundreds of features that simplify management, ensure efficient operations, and lower Azure compute and storage costs by up to 80% via automation.

Leveraging Nerdio, partners can manage customers’ cloud environments through streamlined, multi-tenant, workflow-powered technology that allows them to create and grow cloud-based recurring revenues. Enterprise IT professionals can deliver and maintain a wide range of virtual Windows endpoints across hybrid workforces with ease and fine-tune end-user computing (EUC) approaches for maximum effectiveness using powerful monitoring and analytics capabilities.

We are a fast-moving, nimble company looking for individuals who are collaborative, empathetic, driven and who love to move at the speed of light. If you want to be part of the AVD transformation that Microsoft and Nerdio are leading, then we want to speak with you.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on startup.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

26:47 min

Exploring pathways to application security careers and research workflows

Vandana Verma Sehgal · LIVE

6:14 min

Structuring CI/CD pipelines with integrated security and quality checks

Christoph Ruggenthaler · LIVE

1:21 min

Exploring the target application for front end tests

Anna Mcdougall · JS Congress

3:39 min

Addressing code review surrender and process exploitation

Laura Tacho Laura Tacho · World Congress 2026 Europe

1:22 min

Addressing the shortage of application security specialists

Joseph Katsioloudes Joseph Katsioloudes · World Congress 2025

4:54 min

Implementing geographic salary tiers for compensation equity and fairness

Rudi Bauer Rudi Bauer +1 · Cappuccino with HR

Videos

See all

Related articles

See all