Senior AppSec Architect: Threat Modeling & Secure SDLC

Saransh Inc

Maryland Heights (MO)

On-site

USD 140,000 - 190,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Saransh Inc. seeks a Senior Application Security Architect to lead Secure-by-Design initiatives across enterprise apps, embedding security early in SDLC.

You will conduct threat modeling, security architecture reviews, secure design assessments, and establish guardrails aligned with OWASP ASVS and NIST SSDF, collaborating with developers, enterprise architects, DevOps, and business stakeholders. The architect will work closely with teams to ensure security risks are identified and mitigated

Qualifications

  • 10+ years of cybersecurity experience
  • 5+ years leading security architecture reviews and threat modeling engagements
  • Experience in regulated industries such as Financial Services, Banking, Insurance, or Healthcare
  • Demonstrated expertise implementing Secure SDLC and DevSecOps programs at enterprise scale

Responsibilities

  • Define and implement Secure-by-Design principles across application development programs.
  • Develop security reference architectures, reusable security patterns, and architecture standards.
  • Embed security requirements into solution design and development processes.
  • Threat modeling workshops using STRIDE, Attack Trees, or similar methodologies.
  • Identify trust boundaries, attack surfaces, abuse cases, and potential design weaknesses.
  • Provide risk-based mitigation recommendations and architectural guidance.
  • Perform application, API, microservices, cloud-native, and AI-enabled app security reviews.
  • Validate architecture compliance against OWASP ASVS, OWASP Top 10, NIST SSDF, and standards.
  • Review data flows, authentication, authorization, encryption, secrets management, and logging controls.
  • Integrate security requirements into Agile and CI/CD workflows.
  • Collaborate with development teams to implement security-by-default controls.
  • Support adoption of SAST, DAST, SCA, API Security, Container Security, and Secure Coding practices.
  • Provide secure coding guidance and architectural consultation.
  • Conduct architecture review sessions, threat modeling training, and security awareness workshops.
  • Act as a trusted advisor to engineering and product teams.
  • Partner with Enterprise Architects, Product Teams, Security Leadership, and Development Managers.
  • Define security acceptance criteria and architecture review processes.
  • Present security findings, risks, and remediation strategies to senior leadership.

Skills

Application Security Architecture
Secure-by-Design Methodologies
Threat Modeling (STRIDE, Attack Trees,
PASTA
OWASP ASVS, OWASP Top 10
Secure SDLC / DevSecOps
Security Architecture Reviews
Secure Coding Practices
API Security
Cloud Security (AWS, Azure, GCP)

Tools

Microsoft Threat Modeling Tool

Job description

Saransh Inc. seeks a Senior Application Security Architect to lead Secure-by-Design initiatives across enterprise apps, embedding security early in SDLC.

You will conduct threat modeling, security architecture reviews, secure design assessments, and establish guardrails aligned with OWASP ASVS and NIST SSDF, collaborating with developers, enterprise architects, DevOps, and business stakeholders. The architect will work closely with teams to ensure security risks are identified and mitigated

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

AppSec Engineer: Secure SDLC & DevSecOps in Cloud
AppSec Engineer: Secure SDLC & DevSecOps in Cloud

Saransh Inc • Maryland Heights (MO)

On-site
USD 110,000 - 160,000
Senior App Security Architect - Cloud & DevSecOps
Senior App Security Architect - Cloud & DevSecOps

American business solutions inc • Richmond (VA)

On-site
USD 130,000 - 185,000
Senior AppSec Engineer: Threat Modeling & Secure SDLC
Senior AppSec Engineer: Threat Modeling & Secure SDLC

Mach7 Technologies • New Jersey

On-site
USD 120,000 - 190,000
Senior Application Security Analyst – SDLC & Threat Modeling
Senior Application Security Analyst – SDLC & Threat Modeling

ASM Research, An Accenture Federal Services Company • Sacramento (CA)

On-site
USD 85,000 - 95,000
Sr. Application Security (AppSec) Architect - W2 Only
Sr. Application Security (AppSec) Architect - W2 Only

Saransh Inc • Maryland Heights (MO)

On-site
USD 140,000 - 190,000
Senior App Sec Engineer: Lead Secure SDLC (Remote)
Senior App Sec Engineer: Lead Secure SDLC (Remote)

platacard • United States

Hybrid
USD 120,000 - 180,000
Relocation with visa support
Flexible work office or remote
Healthcare coverage
+3
Senior App Security Architect: Threat Modeling & CI/CD
Senior App Security Architect: Threat Modeling & CI/CD

United Airlines • Chicago (IL), Northern (KY)

Hybrid
USD 112,000 - 147,000
Medical insurance
Dental insurance
Vision insurance
+8
Senior AppSec Architect & Threat Modeling Lead
Senior AppSec Architect & Threat Modeling Lead

CLS Group • Woodbridge Township (NJ)

On-site
USD 140,000 - 180,000
Senior App Security Engineer - DevSecOps & Secure SDLC
Senior App Security Engineer - DevSecOps & Secure SDLC

Ascensus • Dresher

On-site
USD 120,000 - 170,000
Tuition reimbursement
Paid time off
Medical benefits
+2
Senior App Security Engineer: Secure SDLC & AI Risk Lead
Senior App Security Engineer: Secure SDLC & AI Risk Lead

Clear Capital • Reno (NV)

On-site
USD 111,000 - 145,000
Profit-sharing bonus
401(k) with employer match
Comprehensive health insurance