An application made for this job — a tailored resume and cover letter that speak straight to the posting.
VDOT seeks an Application Security Architect to define, embed, and oversee security strategies across enterprise IT initiatives in a hybrid environment in Richmond, VA. This role focuses on SSDLC across web apps, cloud-native systems, and data protection.
The position requires a BS in a technical field and 10+ years in software engineering or security, with CISSP/CCSP/GIAC or similar credentials highly desired. On-site 4 days per week during probation; local candidates preferred.
(Jobs in Richmond, VA)
Job title Architect
Job location in Richmond, VA
Skills required IT Systems Engineering, OWASP, API, Azure OAuth SAML
Job type Contract
Duration 10 Months
Compensation DOE
Start date :9/21/2026
End Date : 06/30/2027
Submission deadline :9/16/2026
Client Info : VDOT
Note:
Candidate must be able to work onsite 4 days/week during an initial 90-day probationary period; there is a possibility of reduced onsite commitment after successful probation, though some onsite presence will continue to be required weekly.
Clint is seeking an Application Security Architect to define, embed, and oversee application security strategies across enterprise IT initiatives.
This role will be responsible for the solution of Secure Software Development Lifecycle (SSDLC) across a hybrid ecosystem, spanning complex web applications, Agentic AI solutions, cloud-native solutions, enterprise GIS platforms, low-code no-code and create patterns. Lead the data protection strategy, data governance frameworks, and privacy posture across our state-wide transportation ecosystem. Define how structured, unstructured, and spatial data (GIS) are classified, encrypted, stored, and accessed across cloud data platforms. support architecture, development, and cybersecurity teams to perform threat modeling, secure architectural designs and ensure compliance with Commonwealth of Virginia (COV) and VITA security standards.
Bachelors degree in computer science, cybersecurity, engineering, or a related field (or equivalent practical experience) is required. Certifications such as CISSP, CSSLP, CCSP, GIAC, or relevant vendor credentials are highly desired.
EOE Protected Veterans/Disability