Senior Application Security Architect

IBM Computing

City of Poughkeepsie (NY)

On-site

USD 170,000 - 250,000

Full time

4 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Confluent is seeking a Staff Application Security Engineer to join a team of security architects and engineers responsible for shaping the application security strategy across on-premises products and cloud services. You will influence architectural direction and embed security throughout the product lifecycle.

You will design security architecture, drive automation, and lead threat modeling, reviews, and vulnerability management.

Qualifications

  • 10+ years of hands-on application security experience, who can drive measurable security improvements across large-scale, distributed systems and global engineering organizations.
  • Comprehensive knowledge of security fundamentals as applied to modern web applications and cloud-native platforms including secure software design and architecture, secure coding practices, common vulnerability classes.
  • Ability to partner as a trusted peer with Engineering and Product leadership to embed security into the core architecture of the organization.
  • Ability to lead technical investigation and response to application security incidents while driving preventive improvements through architecture and automation.
  • Proven experience evolving the software development lifecycle to embed security by default, from securing CI/CD pipelines and build systems to implementing automated security guardrails in cloud-native deployment workflows. Passionate about applying AI and LLMs to automate complex security workflows, reduce manual toil, and drive measurable improvements in security outcomes.
  • Experience in Go, Python, or Java, with the ability to design and build scalable security automation frameworks.
  • Experience in leading cross-functional initiatives in distributed environments, translating security requirements into clear, executable technical roadmaps.
  • A data-driven decision-maker who can balance security requirements with business velocity and engineering trade-offs to deliver outcomes.
  • Ability to raise the organization’s security bar through architectural reviews, advanced technical guidance, and the development of engineers across all levels.

Responsibilities

  • Partner closely with Engineering, Product, and Platform teams to identify security risks early, influence architectural decisions, and drive adoption of secure-by-design practices across the organization.
  • Define and standardize threat modeling frameworks and security design standards, and lead security design reviews for complex, distributed systems, providing actionable architectural guidance to engineers and product managers.
  • Serve as the subject matter expert (SME) for product security implementation reviews, overseeing security code reviews and API security testing while providing definitive remediation guidance.
  • Architect and drive the roadmap for security automation, building scalable software security tooling to transform product security operations and vulnerability management practices.
  • Design and lead the deployment of automation and orchestration frameworks that integrate security seamlessly into the cloud-native deployment pipeline.
  • Proactively identify new vulnerability classes, lead research initiatives and orchestrate complex table-top exercises to keep the organization ahead of the evolving threat landscape.
  • Strategically identify and deploy advanced technology controls to maximize observability and harden key attack surfaces across the ecosystem.

Skills

Application security
Security architecture
Cloud-native security
Go/Python/Java
CI/CD security
Threat modeling
Cross-functional leadership
Security automation
Data-driven decisions

Job description

Confluent is seeking a Staff Application Security Engineer to join a team of security architects and engineers responsible for shaping the application security strategy across on-premises products and cloud services. You will influence architectural direction and embed security throughout the product lifecycle.

You will design security architecture, drive automation, and lead threat modeling, reviews, and vulnerability management.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Application Security Engineer
Senior Application Security Engineer

IBM • Armonk (NY)

On-site
USD 170,000 - 230,000
Staff Application Security Architect
Staff Application Security Architect

IBM • City of Poughkeepsie (NY)

On-site
USD 150,000 - 210,000
Staff Application Security Engineer — Cloud & Platform Security
Staff Application Security Engineer — Cloud & Platform Security

IBM • City of Poughkeepsie (NY)

On-site
USD 180,000 - 240,000
Confluent - Staff Security Engineer Professional Multiple Cities
Confluent - Staff Security Engineer Professional Multiple Cities

IBM • City of Poughkeepsie (NY)

On-site
USD 180,000 - 240,000
Confluent - Staff Security Engineer
Confluent - Staff Security Engineer

IBM • Armonk (NY)

On-site
USD 170,000 - 230,000
Confluent - Staff Security Engineer
Confluent - Staff Security Engineer

IBM • Boston (KY)

On-site
USD 150,000 - 210,000
Confluent - Staff Security Engineer
Confluent - Staff Security Engineer

IBM • Lowell (MA)

On-site
USD 150,000 - 230,000
Confluent - Staff Security Engineer
Confluent - Staff Security Engineer

IBM • Tucson (AZ)

On-site
USD 180,000 - 240,000
Confluent - Staff Security Engineer
Confluent - Staff Security Engineer

IBM • Rochester (MN)

On-site
USD 150,000 - 190,000
Confluent - Staff Security Engineer
Confluent - Staff Security Engineer

IBM • City of Poughkeepsie (NY)

On-site
USD 150,000 - 210,000