Application Security Architect – AWS(15+ EXP)

Remote • Posted 11 hours ago • Updated 11 hours ago
Contract W2
12 Months
No Travel Required
Able to Sponsor
Remote
$65 - $70/hr
Fitment

Dice Job Match Score™

🤯 Applying directly to the forehead...

Job Details

Skills

  • PCI DSS
  • Information Security
  • Kubernetes
  • Management
  • Mentorship
  • Microservices
  • GitLab
  • HIPAA
  • ISO/IEC 27001:2005
  • Incident Management
  • Jenkins
  • DevOps
  • DevSecOps
  • Docker
  • Encryption
  • FedRAMP
  • GitHub
  • Computer Science
  • Continuous Delivery
  • Continuous Integration
  • Cyber Security
  • CISSP
  • Cloud Computing
  • Cloud Security
  • Collaboration
  • Communication
  • Analytical Skill
  • Auditing
  • Authentication
  • Authorization
  • Burp Suite
  • OAuth
  • OIDC
  • OWASP
  • Oracle Policy Automation
  • Penetration Testing
  • API
  • Access Control
  • Amazon EC2
  • Amazon Lambda
  • Amazon Web Services
  • Python
  • RBAC
  • Regulatory Compliance
  • SAML
  • SCA
  • Stakeholder Management
  • System On A Chip
  • Terraform
  • Scripting
  • Security Controls
  • Software Development
  • Software Security
  • Threat Modeling
  • WAF

Summary

  • 15+ years of experience in Application Security, Product Security, or DevSecOps, including 3+ years securing AWS-based applications.
  • Strong expertise in securing applications throughout the Secure Software Development Lifecycle (SSDLC).
  • Perform threat modeling and secure architecture reviews for applications, APIs, microservices, and cloud-native workloads.
  • Hands-on experience securing AWS services including EC2, ECS/EKS, Lambda, API Gateway, IAM, WAF, Shield, GuardDuty, Inspector, Security Hub, KMS, Secrets Manager, and CloudTrail.
  • Implement and manage security controls across CI/CD pipelines using SAST, DAST, SCA, container image scanning, and Infrastructure-as-Code (IaC) scanning.
  • Integrate security into GitHub Actions, GitLab CI, Jenkins, AWS CodePipeline, or similar CI/CD platforms.
  • Configure and enforce least-privilege IAM policies, role-based access control (RBAC), secrets management, and encryption standards.
  • Conduct secure code reviews and vulnerability assessments using OWASP Top 10, CWE, and secure coding best practices.
  • Experience with security tools such as SonarQube, Checkmarx, Veracode, Snyk, Prisma Cloud, Aqua Security, Burp Suite, and OWASP ZAP.
  • Secure containerized workloads using Docker, Kubernetes (EKS), ECS, and serverless applications using AWS Lambda.
  • Perform Infrastructure-as-Code (IaC) security using Terraform or CloudFormation with Checkov, tfsec, cfn-nag, or similar tools.
  • Develop automation scripts using Python, Go, or similar languages for security validation and compliance.
  • Strong understanding of API security, OAuth 2.0, OpenID Connect (OIDC), SAML, JWT, and authentication/authorization mechanisms.
  • Implement cloud security guardrails using AWS Organizations, Service Control Policies (SCPs), AWS Config, and policy-as-code frameworks such as OPA.
  • Coordinate penetration testing activities, validate findings, and drive remediation with development teams.
  • Support security audits and compliance initiatives including SOC 2, ISO 27001, PCI-DSS, HIPAA, and FedRAMP.
  • Respond to application security incidents, investigate threats, and develop detection rules and incident response runbooks.
  • Experience with Cloud Native Application Protection Platforms (CNAPP) such as Wiz, Prisma Cloud, or CrowdStrike Falcon Cloud.
  • Strong knowledge of threat modeling methodologies including STRIDE and PASTA.
  • Collaborate with development, DevOps, infrastructure, and client security teams to promote DevSecOps best practices.
  • Mentor engineering teams on secure coding, cloud security, and vulnerability remediation.
  • Excellent communication, analytical, troubleshooting, and stakeholder management skills.
  • AWS Certified Security – Specialty preferred; CSSLP, CISSP, or OSWE certifications are highly desirable.
  • Bachelor''s degree in Computer Science, Information Security, Cybersecurity, or a related field.
  •  
     
    Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
    • Dice Id: 91138713
    • Position Id: 9049556
    • Posted 11 hours ago
    Contact the job poster
    AV

    Arun Varma

    Recruiter @ V-Work Infotech Solutions INC
    Create job alert
    Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

    Similar Jobs

    Remote

    Today

    Easy Apply

    Contract, Third Party

    Depends on Experience

    Remote

    Today

    Full-time

    USD 169,604.00 - 229,464.00 per year

    Remote or Rockville, Maryland

    Today

    Full-time

    USD 160,000.00 - 185,000.00 per year

    Remote or New York, New York

    Today

    Full-time

    USD 200,000.00 - 265,000.00 per year

    Search all similar jobs