Enable job alerts via email!

Senior Application Security Architect

Leidos

Clarksburg (WV)

Hybrid

USD 104,000 - 190,000

Full time

15 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company in IT services is seeking a Senior Application Security Architect to design secure application architectures and integrate security into CI/CD processes. The ideal candidate will have extensive experience in security standards compliance, mentoring developers, and working with cross-platform technologies. This role offers the flexibility of remote work while serving a federal law enforcement agency.

Qualifications

  • 6+ years of prior relevant experience.
  • Certified Web Application Penetration Tester (CWAPT) or Certified Application Security Specialist (CASS) required.
  • Experience with Cloud Service Providers (CSPs), AWS and Microsoft Azure preferred.

Responsibilities

  • Design and implement secure application architectures across various enterprise environments.
  • Integrate security into CI/CD pipelines, automating security testing.
  • Conduct security architecture reviews and provide security guidance.

Skills

REST
Python
Perl
JAVA
PowerShell
Sécurité des applications
CI/CD
Modélisation des menaces

Education

Bachelor’s Degree in Software Engineering, Computer Science, Information Systems Management, Cyber Security

Tools

SAST
DAST
OpenStack
RHEV

Job description

As the largest provider of IT services, Leidos develops and sustains large data and technology infrastructures and integrates complex law enforcement IT system for several US federal agencies. At Leidos we offer engaging careers, a collaborative culture, and support for your career goals and growth. This role would be serving a federal law enforcement agency in Clarksburg, WV with remote work possible.

We are seeking a talented and experienced Senior Application Security Architect on our team. The ideal candidate will be responsible for designing and implementing secure application architectures within an enterprise environment, encompassing cross-platform technologies, integrating security into CI/CD systems, ensuring compliance with security standards including NIST and OWASP, and leveraging experience in REST, Python, Perl, JAVA, and PowerShell. This role will be part of a strategic application security team which is part of a larger team that is responsible for defining and enforcing the organization's secure application development lifecycle.

Primary Responsibilities:

Design and implement secure application architectures across various enterprise environments and cross-platform technologies.

Integrate security into CI/CD pipelines, automating security testing and code analysis processes.

Conduct security architecture reviews of existing and new applications, identifying potential vulnerabilities and weaknesses.

Provide security guidance and best practices to development teams throughout the Software Development Life Cycle (SDLC).

Perform threat modeling to identify potential attack vectors and prioritize security efforts.

Define security requirements for applications and APIs, ensuring compliance with NIST, OWASP, and other relevant security standards.

Review code (in languages like Python, Perl, JAVA) for security vulnerabilities and provide remediation guidance.

Configure and utilize application security testing tools (SAST, DAST, etc.) to automate vulnerability detection.

Collaborate with infrastructure and operations teams to ensure secure deployment and configuration of applications.

Develop and maintain secure coding guidelines and best practices for developers.

Evaluate and recommend new security technologies and tools to enhance application security.

Stay up-to-date with the latest application security threats, vulnerabilities, and mitigation techniques.

Mentor and train developers on secure coding practices and application security principles.

Document security architectures, designs, and standards.

Participate in security incident response and provide guidance on application-related security issues.

Basic Qualifications:

Bachelor’s Degree in Software Engineering, Computer Science, Information Systems

Management, Cyber Security or other related discipline, or equivalent experience; additional years of experience may be considered in lieu of a degree

6+ years of prior relevant experience

Certified Web Application Penetration Tester (CWAPT) or Certified Application Security Specialist (CASS) required

Previous System Administration, Developer, and Web services experience in an Enterprise Environment utilizing cross platform technologies

Demonstrated knowledge of networking and virtualization technology, such as OpenStack, RHEV, etc

Experience with Continuous Integration/Continuous Deployment (CI/CD) systems in line with configuration management and Secure SDLC best practices

Experience in information system compliance with government standards and industry best practices, including NIST, OWASP, Common Criteria, DISA and SANS Institute

Documented experience in REST, Python, Perl, JAVA and PowerShell

Ability to research and learn both independently and as part of a team

Must have reliable internet access

Must be a US Citizen to apply

DOD Top Secret Clearance is required

Preferred Qualifications:

Master’s Degree preferred

4+ years of prior relevant experience with a Master’s degree

Experience with Cloud Service Providers (CSPs), AWS and Microsoft Azure

A minimum of 6 years of experience managing and understanding cloud based infrastructures

Original Posting:

May 20, 2025

Description

As the largest provider of IT services, Leidos develops and sustains large data and technology infrastructures and integrates complex law enforcement IT system for several US federal agencies. At Leidos we offer engaging careers, a collaborative culture, and support for your career goals and growth. This role would be serving a federal law enforcement agency in Clarksburg, WV with remote work possible.

We are seeking a talented and experienced Senior Application Security Architect on our team. The ideal candidate will be responsible for designing and implementing secure application architectures within an enterprise environment, encompassing cross-platform technologies, integrating security into CI/CD systems, ensuring compliance with security standards including NIST and OWASP, and leveraging experience in REST, Python, Perl, JAVA, and PowerShell. This role will be part of a strategic application security team which is part of a larger team that is responsible for defining and enforcing the organization's secure application development lifecycle.

Primary Responsibilities:

  • Design and implement secure application architectures across various enterprise environments and cross-platform technologies.

  • Integrate security into CI/CD pipelines, automating security testing and code analysis processes.

  • Conduct security architecture reviews of existing and new applications, identifying potential vulnerabilities and weaknesses.

  • Provide security guidance and best practices to development teams throughout the Software Development Life Cycle (SDLC).

  • Perform threat modeling to identify potential attack vectors and prioritize security efforts.

  • Define security requirements for applications and APIs, ensuring compliance with NIST, OWASP, and other relevant security standards.

  • Review code (in languages like Python, Perl, JAVA) for security vulnerabilities and provide remediation guidance.

  • Configure and utilize application security testing tools (SAST, DAST, etc.) to automate vulnerability detection.

  • Collaborate with infrastructure and operations teams to ensure secure deployment and configuration of applications.

  • Develop and maintain secure coding guidelines and best practices for developers.

  • Evaluate and recommend new security technologies and tools to enhance application security.

  • Stay up-to-date with the latest application security threats, vulnerabilities, and mitigation techniques.

  • Mentor and train developers on secure coding practices and application security principles.

  • Document security architectures, designs, and standards.

  • Participate in security incident response and provide guidance on application-related security issues.

Basic Qualifications:

  • Bachelor’s Degree in Software Engineering, Computer Science, Information Systems

  • Management, Cyber Security or other related discipline, or equivalent experience; additional years of experience may be considered in lieu of a degree

  • 6+ years of prior relevant experience

  • Certified Web Application Penetration Tester (CWAPT) or Certified Application Security Specialist (CASS) required

  • Previous System Administration, Developer, and Web services experience in an Enterprise Environment utilizing cross platform technologies

  • Demonstrated knowledge of networking and virtualization technology, such as OpenStack, RHEV, etc

  • Experience with Continuous Integration/Continuous Deployment (CI/CD) systems in line with configuration management and Secure SDLC best practices

  • Experience in information system compliance with government standards and industry best practices, including NIST, OWASP, Common Criteria, DISA and SANS Institute

  • Documented experience in REST, Python, Perl, JAVA and PowerShell

  • Ability to research and learn both independently and as part of a team

  • Must have reliable internet access

  • Must be a US Citizen to apply

  • DOD Top Secret Clearance is required

Preferred Qualifications:

  • Master’s Degree preferred

  • 4+ years of prior relevant experience with a Master’s degree

  • Documented experience is preferred in as many of the following programming languages, web services, and applicable software stacks as possible: SOAP, Apache Struts, Websockets, Java Message Queue, RPC over HTTP, WIA (Windows, IIS, ASP.NET), C, C++, C#, Node.js, JavaScript, Pega, Groovy, LAMP (Linux, Apache, MySQL, PHP), AMP (Apache, MySQL, PHP), JOLT (Java, Oracle, Linux, Tomcat), and LAMJ (Linux, Apache, MySQL, JSP Servlets).

  • Experience with Cloud Service Providers (CSPs), AWS and Microsoft Azure

  • A minimum of 6 years of experience managing and understanding cloud based infrastructures

Original Posting:

May 20, 2025

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $104,650.00 - $189,175.00

The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Receive tips & info on cleared job search, security clearances and career development.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Data Architect Clarksburg, WV

Tygart Technology, Inc.

Clarksburg

Remote

USD 120,000 - 160,000

Today
Be an early applicant

Sr. Data Architect - Remote

Two95 International Inc.

New York

Remote

USD 120,000 - 160,000

13 days ago

Sr. Data Architect (Remote)

Lensa

Columbus

Remote

USD 150,000 - 185,000

13 days ago

SENIOR SECURITY ARCHITECT, TECHNICAL LEAD

ZipRecruiter

Arlington

Remote

USD 130,000 - 170,000

Today
Be an early applicant

Senior Security Architect

Empower Retirement, LLC

Overland Park

Remote

USD 135,000 - 197,000

Today
Be an early applicant

Senior Software Developer

Tygart Technology, Inc.

Clarksburg

Remote

USD 100,000 - 130,000

Today
Be an early applicant

Senior Software Engineer

NFP

New York

Remote

USD 100,000 - 120,000

Today
Be an early applicant

Senior Software Engineer

HackerWeb

New York

Remote

USD 120,000 - 180,000

Today
Be an early applicant

Professional, Senior Software Engineer

MVP Health Care

City of Schenectady

Remote

USD 75,000 - 140,000

Today
Be an early applicant