Design and lead application security strategy across enterprise platforms and services in a hybrid Richmond, VA role.
Responsibilities
- Design and lead security strategies across enterprise applications
- Apply security strategy across cloud platforms
- Secure and govern APIs, including API security considerations
- Support security across data platforms
- Address security needs for GIS
- Cover security for Power Platform
- Develop security approaches for Agentic AI solutions
Requirements
- 10+ years in software/application/security engineering
- Application Security and security architecture experience
- Threat modeling and architecture reviews
- SSDLC / DevSecOps experience
- Azure, Kubernetes, and cloud security experience
- OWASP practices and application security testing methods including SAST and DAST
- Software composition and risk coverage including SCA
- API security experience
- Authentication and authorization standards including OAuth, OIDC, SAML, JWT
- Access control concepts including RBAC and ABAC
- Data protection including data classification, encryption, DLP, and privacy
- Experience with Microsoft Purview
- Experience with SQL Server
- Experience with Dynamics 365
- Experience with Power Platform and ArcGIS
- Experience with VITA/COV security standards is highly preferred
- Bachelor’s degree or equivalent practical experience required
Technologies
- Azure
- Kubernetes
- OWASP
- SAST
- DAST
- SCA
- API Security
- OAuth, OIDC, SAML, JWT
- RBAC, ABAC
- Microsoft Purview
- SQL Server
- Dynamics 365
- Power Platform
- ArcGIS
Location and Work Arrangement
- Richmond, VA (hybrid)
- Local candidates only
- Initial onsite requirement: 4 days/week for 90 days
- Reduced onsite may be possible after the initial period
Compensation
- USD 90–95 per hour
Application Security Architect in richmond at Unknown Company
This position is listed as full time and hybrid.