Sr. Security Application Architect

Tysons, VA, US • Posted 30+ days ago • Updated 5 hours ago
Contract W2
On-site
USD $75.00 - 82.00 per hour
Company Branding Image
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Management
  • Leadership
  • Enterprise Software
  • Stacks Blockchain
  • Octave
  • Authorization
  • Continuous Integration
  • Continuous Delivery
  • Roadmaps
  • Generative Artificial Intelligence (AI)
  • Security Analysis
  • Documentation
  • Training
  • Security Awareness
  • Design Review
  • Encryption
  • Computer Science
  • Information Security
  • Security Architecture
  • Threat Modeling
  • Cloud Computing
  • Microsoft Azure
  • Google Cloud Platform
  • Google Cloud
  • Software Security
  • SCA
  • Security QA
  • Burp Suite
  • Proxies
  • Software Development
  • DevSecOps
  • OWASP
  • SANS
  • Authentication
  • Multi-factor Authentication
  • SSO
  • OAuth
  • SAML
  • OIDC
  • Security Controls
  • PCI DSS
  • Sarbanes-Oxley
  • Microservices
  • API
  • Programming Languages
  • Java
  • Python
  • JavaScript
  • Code Review
  • SPA
  • Communication
  • CISSP
  • Amazon Web Services
  • MEAN Stack
  • Customer Service
  • Training And Development
  • SAP BASIS

Summary

Software Guidance & Assistance, Inc., (SGA), is searching for an Sr. Application Security Architect for a Contract assignment with one of our premier Regulatory clients in Tysons, VA
The Senior Application Security Architect is responsible for designing, implementing, and overseeing enterprise-wide application security architecture and standards. This role focuses on establishing security frameworks, conducting architecture reviews, developing security baselines, and leading strategic security initiatives that have broad impact across the organization. The position requires a blend of technical expertise, architectural thinking, and leadership to embed security throughout the software development lifecycle. We are looking for a versatile resource who can handle multiple tasks at the same time and have great attitude.

Job Responsibilities:
  • Design and establish enterprise application security architecture frameworks and reference models aligned with business objectives and risk tolerance
  • Lead architecture reviews of applications and systems to identify security gaps and recommend appropriate controls
  • Develop and maintain security baselines, standards, and patterns for different technology stacks (web, mobile, API, microservices) and deployment models
  • Create and evolve threat modeling methodologies (STRIDE, PASTA, OCTAVE) and facilitate threat modeling sessions with development teams
  • Define secure coding standards and security requirements for different application types based on data classification and risk profile
  • Architect security solutions for authentication, authorization, encryption, and secure communication channels
  • Establish security guardrails for cloud-native applications, serverless architectures, and infrastructure-as-code implementations
  • Design and implement API security strategies including OAuth/OIDC flows, API gateways, and rate limiting
  • Integrate security architecture principles into CI/CD pipelines to support DevSecOps initiatives
  • Evaluate and recommend security tools and technologies for the enterprise security tech stack
  • Develop security architecture roadmaps and guide implementation of security capabilities
  • Partner with development teams to design secure solutions that balance security requirements with business needs
  • Lead strategic security initiatives with enterprise-wide impact
  • Leverage GenAI technologies to enhance security architecture reviews and automate security analysis
  • Maintain documentation of security architecture decisions, patterns, and reference implementations
  • Develop and deliver security architecture training to raise security awareness among developers and architects
  • Stay current with emerging security threats, technologies, and architectural approaches
  • Perform security design reviews for new applications and major changes to existing applications
  • Architect secure data handling practices including encryption at rest and in transit

Qualifications:
  • Bachelor's degree in Computer Science, Information Security, or related technical field required
  • 5+ years of experience in application security, with at least 2 years in security architecture roles
  • Deep knowledge of secure design principles, threat modeling methodologies, and security patterns
  • Experience designing security controls for cloud environments (AWS, Azure, Google Cloud Platform)
  • Proficiency in evaluating and implementing application security tools (SAST, DAST, IAST, SCA)
  • Hands-on experience with security testing tools such as Burp Suite, OWASP ZAP, and other proxy tools
  • Experience with secure software development practices and DevSecOps implementation
  • Strong understanding of OWASP Top 10, SANS CWE, and other security standards
  • Knowledge of secure authentication mechanisms (MFA, SSO, OAuth 2.0, SAML, OIDC)
  • Experience with secure API design and implementation of API security controls
  • Knowledge of regulatory requirements (PCI-DSS, GDPR, SOX, etc.) and their architectural implications
  • Experience with containerization, microservices, and API security
  • Proficiency in one or more programming languages (Java, Python, JavaScript preferred)
  • Experience with secure code review techniques and identifying common vulnerability patterns
  • Knowledge of cryptographic protocols and implementations
  • Experience with security requirements for modern application architectures (SPA, serverless, etc.)
  • Excellent communication skills with ability to translate complex security concepts to technical and non-technical audiences
  • Experience leading cross-functional security initiatives and influencing stakeholders
  • Certifications such as CSSLP, CISSP, AWS Security Specialty are highly desirable
  • This position requires a strategic thinker who can balance security requirements with business objectives while driving the organization toward a more secure application ecosystem.

SGA is a technology and resource solutions provider driven to stand out. We are a women-owned business. Our mission: to solve big IT problems with a more personal, boutique approach. Each year, we match consultants like you to more than 1,000 engagements. When we say let's work better together, we mean it. You'll join a diverse team built on these core values: customer service, employee development, and quality and integrity in everything we do. Be yourself, love what you do and find your passion at work. Please find us at .

SGA is an Equal Opportunity Employer and does not discriminate on the basis of Race, Color, Sex, Sexual Orientation, Gender Identity, Religion, National Origin, Disability, Veteran Status, Age, Marital Status, Pregnancy, Genetic Information, or Other Legally Protected Status. We are committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, and our services, programs, and activities. Please visit our company to request an accommodation or assistance regarding our policy.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: sgainc
  • Position Id: 26-00142
  • Posted 30+ days ago

Company Info

About Software Guidance & Assistance

Founded in 1981, SGA is a technology and resource solutions provider with a national footprint and headquartered in the shadow of Wall Street. We’re a certified women-owned business. We provide contingent staffing, direct placement, and professional and managed services to transform businesses and evolve careers. We’re small enough to tailor our services to each client and big enough to deliver for some of the world’s largest employers. Our professionals are experts in areas such as IT, finance, accounting, risk, and clinical.

SGA provides contingent staffing, direct placement, and professional and managed services nationwide for Fortune 500 companies, mid-size businesses and select startups.

Our core skillsets include all areas of technology – business & data analysis, cyber & network security, database administration, development & architecture, infrastructure, program & project management, quality assurance & testing. We also deliver talent across professional business functions such as finance, accounting, risk, and clinical.

Our Professional & Managed Services team delivers IT projects through onshore, offshore and hybrid delivery models. We develop software products, modernize applications, add features, and integrate and maintain systems. Our scope covers, among others, complex application suites, data management and visualizations, machine learning and mobile applications.

About_Company_OneAbout_Company_Two
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Warrenville, Illinois

Today

Contract

USD 50.00 - 60.00 per hour

New York, New York

Today

Full-time

USD 200,000.00 - 225,000.00 per year

San Francisco, California

Today

Contract

New York, New York

Today

Full-time

USD 200,000.00 - 225,000.00 per year

Search all similar jobs