> Markdown version of [/jobs/ext/541566-principal-application-security-architect](https://www.wearedevelopers.com/jobs/ext/541566-principal-application-security-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal Application Security Architect - **Company:** LPL Financial - **Location:** Fort Mill, SC, United States (Remote available) - **Experience:** Experienced - **Salary:** $153,470.0 - $255,749.0 - **Contract:** Permanent contract - **Skills:** Java (Programming Language), Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Amazon Elastic Compute Cloud, Amazon S3, C Sharp (Programming Language), Cloud Computing, Cloud Computing Security, Cyber Security, Data Security, DevOps, Distributed Systems, Identity and Access Management, Python (Programming Language), Network Security, Log Analysis, Machine Learning, OAuth, Open Web Application Security, Openid Connect, Ansible, Ruby, Zero Trust Network Access, JSON Web Token, Security Information and Event Management, Software Vulnerability Management, Pulumi, Feature Engineering, Software Security, Deep Learning, Malware, Amazon Virtual Private Cloud (VPC), Cloudformation, Machine Learning Operations, Api Gateway, Software Coding, Terraform, Service Stack, Microservices - **Published:** June 11, 2026 - **Apply:** https://lplfinancial.wd1.myworkdayjobs.com/External/job/Fort-MillCharlotte/Principal-Application-Security-Architect_R-050598 ## About the Role * 3+ years of security architecture and API security, designing secure API gateways and microservices architectures * 8+ years of experience with information security controls, guidelines, and standards (e.g., ISO27000 series, OWASP, CSA CCM, CIS 20 Critical Security Controls, SOX, and NIST). Core Competencies: * Must be self-driven, yet flexible and highly adept at consulting, negotiating, communicating, consensus building, and presenting. * Ability to remain calm under pressure while managing multiple tasks. * Demonstrated ability to learn from mistakes and apply constructive feedback to improve performance. Preferences: * Bachelor's Degree or equivalent years of experience * Technical knowledge/coding skills in any of the following: Java, C# .Net, Ruby and/or Python * In-depth knowledge of AWS and its core services, including EC2, S3, IAM, VPC, and security-related services like security groups, ACLs AWS Security Hub, AWS WAF, and Amazon GuardDuty. * Working knowledge of Terraform, Cloud Formation, Pulumi, and/or Ansible. * Solid experience securing scalable web architectures and distributed systems. * Solid understanding of malware, emerging threats, attacks, and vulnerability management. * CCSP/Other Cloud Specific Certification, CISSP and/or GIAC are a plus. * AI/ML security. Proven record securing ML models and AI pipelines in financial services. * Proficient in ML algorithms, deep learning frameworks, AI ethics. Experienced in AI/ML security controls. Expert in OAuth, OpenID Connect, JWT. Proficient in API threat modeling, automated security testing. ## Description LPL's Information Security team is seeking an exceptional Principal Security Architect to engage on API project efforts in Cloud, On-prem and Data security architectures. As the Principal Application Security Architect at LPL, you will work side by side with our Development, Operations, Business units, and Enterprise Architecture teams to ensure our environments are secured and monitored. The right person for this role will have a broad technical cloud security background with a focus on security design, detection, prevention, and response to security threats., * Secure APIs by implementing robust access control mechanisms, OAuth, JWT, and configuring API gateway security to ensure authenticated and authorized access. * Develop reusable security design patterns addressing common cybersecurity challenges, ensuring consistency and best practices across diverse technology stacks and business domains. * Craft clear, actionable security standards and policies, aligning them with industry best practices and regulatory requirements while ensuring adaptability to emerging technologies. * Lead the design and innovation of security architectures, integrating advanced technologies to protect against evolving threats while enabling business agility and growth. * Collaborate with key stakeholders to align security initiatives with business objectives, ensuring broad support and integration at all levels. * Expertise in cybersecurity frameworks, network security, cloud security, identity management, and encryption, with proficiency in implementing zero-trust architectures and secure DevOps practices across diverse IT environments. * Threat modeling, risk assessment, and vulnerability management, coupled with experience in SIEM implementation, log analysis, and incident response in complex enterprise settings. * Conduct thorough threat analysis using intelligence and analytics to identify and mitigate potential security risks proactively, reducing business impact. * Implement and oversee a risk management framework, balancing security investments with business needs to protect assets while supporting growth and innovation. * Securing machine learning models against adversarial attacks, ensuring data privacy in AI training sets, and implementing ethical AI principles in security applications. * Develop secure AI/ML pipelines, including model integrity verification, secure feature engineering, and anomaly detection in AI-driven systems. What are we looking for? We want strong collaborators who can deliver a world-class client experience. We are looking for people who thrive in a fast-paced environment, are client-focused, team oriented, and are able to execute in a way that encourages creativity and continuous improvement. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Why segmenting your infrastructure into tiers makes your infrastructure design better](https://www.wearedevelopers.com/videos/1960-why-segmenting-your-infrastructure-into-tiers-makes-your-infrastructure-design-better) - [Coffee with Developers: David Heinemeier Hansson](https://www.wearedevelopers.com/videos/875-coffee-with-developers-david-heinemeier-hansson) - [Lessons learned from observing a billion API requests](https://www.wearedevelopers.com/videos/1574-lessons-learned-from-observing-a-billion-api-requests) - [Unleashing Potential Across Teams: The Power of Infrastructure as Code](https://www.wearedevelopers.com/videos/930-unleashing-potential-across-teams-the-power-of-infrastructure-as-code) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers)