1

Application Security Architect Jobs (NOW HIRING)

Company / multi-year scope; owns AI and application security architecture and standards; sets direction on the most consequential design decisions. Focus areas: this role spans AI/ML security and ...

Company / multi-year scope; owns AI and application security architecture and standards; sets direction on the most consequential design decisions. Focus areas: this role spans AI/ML security and ...

Company / multi-year scope; owns AI and application security architecture and standards; sets direction on the most consequential design decisions. Focus areas: this role spans AI/ML security and ...

Nerdio's growing security team seeks an Application Security Architect to help us enhance the security of our cutting-edge applications. Partnering closely with our engineering and product teams, you ...

next page

Showing results 1-20

Application Security Architect information

See salary details

$131K

$161.2K

$211K

How much do application security architect jobs pay per year?

As of Sep 3, 2026, the average yearly pay for application security architect in the United States is $161,211.00, according to ZipRecruiter salary data. Most workers in this role earn between $143,000.00 and $169,500.00 per year, depending on experience, location, and employer.

What does an Application Security Architect do?

An Application Security Architect is responsible for designing and implementing security measures within software applications to protect them from threats and vulnerabilities. They work closely with development teams to ensure secure coding practices, conduct security assessments, and integrate security controls throughout the software development lifecycle. Their goal is to minimize security risks and ensure compliance with regulatory requirements and industry best practices.

What does an Application Security Architect do?

An application security architect is required to design and manage IT systems and programs and analyze and troubleshoot issues related to security and access. Your main duties in this career are to collaborate with developers and other applications specialists to determine the scope of security necessary for an application. You then design and develop these measures. You also periodically test the security system’s capabilities to ensure that they are working properly. You make recommendations and reports to senior security architects about how to improve security as well.

What are some common challenges faced by Application Security Architects when integrating security into the software development lifecycle (SDLC)?

Application Security Architects often encounter challenges such as balancing security requirements with agile development timelines and ensuring that security measures do not impede developer productivity. They must work closely with development teams to embed security practices early in the SDLC, which can involve overcoming resistance to change and fostering a security-first mindset. Additionally, they need to stay updated on emerging threats and technologies to provide relevant guidance and solutions, making ongoing communication and collaboration critical to success.

What is the difference between Application Security Architect vs Security Engineer?

AspectApplication Security ArchitectSecurity Engineer
CredentialsCertifications like CISSP, CSSLP, CEHCertifications like CISSP, Security+
Work EnvironmentDesigns security frameworks, oversees security architectureImplements security measures, monitors systems
Industry UsageUsed in organizations with complex applications and security needsCommon across various industries for security operations

The Application Security Architect focuses on designing and overseeing security architecture for applications, ensuring security best practices are integrated from the ground up. In contrast, the Security Engineer implements and maintains security measures, responding to threats and vulnerabilities. Both roles require similar certifications and work in security-focused environments, but their core responsibilities differ in scope and focus.

What cities are hiring for Application Security Architect jobs?

Cities with the most Application Security Architect job openings:

Who are the top companies hiring for Application Security Architect jobs?

The top employers for Application Security Architect jobs are:

What states have the most Application Security Architect jobs?

States with the most job openings for Application Security Architect jobs include:

Infographic showing various Application Security Architect job openings in the United States as of August 2026, with employment types broken down into 76% Full Time, 19% Part Time, and 5% Contract. Highlights an 90% Physical, 2% Hybrid, and 8% Remote job distribution, with an average salary of $161,211 per year, or $77.5 per hour.

Application Security Architect

Fynbosys Inc

Manhattan, NY • On-site

Other

Posted 15 days ago


Job description

Hi 

Role :Application Security Architect – AI / GenAI
Location: NYC / NJC – Hybrid

Client: Altimetrik /  S&P Global
FTE

Role Overview

We are looking for an Application Security Architect with strong experience in Application Security, DevSecOps, Cloud Security, and AI/GenAI security. The role will focus on securing enterprise applications, APIs, microservices, and AI-powered applications.

Key Responsibilities

  • Design and implement application security architecture across applications, APIs, and microservices.
  • Perform threat modeling, security reviews, and vulnerability assessments.
  • Embed security into the SDLC and CI/CD pipelines using SAST, DAST, SCA, and other security tools.
  • Ensure secure coding practices aligned with OWASP Top 10 and API Security.
  • Secure cloud-native applications across AWS/Google Cloud Platform, Kubernetes, and containers.
  • Define security controls for GenAI, LLM, RAG, and Agentic AI applications.
  • Address AI security risks such as prompt injection, data leakage, insecure outputs, and excessive agency.
  • Implement IAM, authentication, authorization, encryption, Policy-as-Code, and Identity-as-Code.
  • Partner with engineering and security teams to drive security-by-design.

Required Skills

  • 12+ years of experience in Application Security / Security Architecture.
  • Strong knowledge of OWASP, Threat Modeling, Secure SDLC, API Security, SAST/DAST/SCA.
  • Experience with AWS/Google Cloud Platform, Kubernetes, Docker, CI/CD, Terraform.
  • Strong understanding of OAuth2, OIDC, JWT, IAM, RBAC/ABAC.
  • Experience with GenAI/LLM, RAG, Agentic AI, or AI Security.
  • Knowledge of LangChain/LangGraph, vector databases, and AI security controls is a plus.
  • Strong communication and stakeholder management skills.