1

Application Security Architect Jobs (NOW HIRING)

Lead Security Architect | Enterprise, Cloud & Application Security Location: Phoenix, AZ (Day 1 Onsite) Duration: Long-Term Contract Interview : Inperson We are seeking a highly experienced Lead ...

AI-Application Security Engineer

Saint Louis, MO · On-site

$57 - $76.25/hr

In partnership with the AI-Application Security Architect, contribute to detailed technical design and operationalize security architecture, standards, and approved security patterns across ...

AI-Application Security Engineer

Saint Louis, MO · On-site

$57 - $76.25/hr

In partnership with the AI-Application Security Architect, contribute to detailed technical design and operationalize security architecture, standards, and approved security patterns across ...

AI-Application Security Engineer

Saint Louis, MO · On-site

$57 - $76.25/hr

In partnership with the AI-Application Security Architect, contribute to detailed technical design and operationalize security architecture, standards, and approved security patterns across ...

Security Architect

Boston, MA · On-site

$70.50 - $91.25/hr

Review application, cloud, infrastructure, AI, and enterprise technology initiatives to identify architectural risks, validate security controls, and recommend practical mitigation strategies. * Lead ...

Showing results 41-60

Application Security Architect information

See salary details

$131K

$161.2K

$211K

How much do application security architect jobs pay per year?

As of Aug 13, 2026, the average yearly pay for application security architect in the United States is $161,211.00, according to ZipRecruiter salary data. Most workers in this role earn between $143,000.00 and $169,500.00 per year, depending on experience, location, and employer.

What are some common challenges faced by Application Security Architects when integrating security into the software development lifecycle (SDLC)?

Application Security Architects often encounter challenges such as balancing security requirements with agile development timelines and ensuring that security measures do not impede developer productivity. They must work closely with development teams to embed security practices early in the SDLC, which can involve overcoming resistance to change and fostering a security-first mindset. Additionally, they need to stay updated on emerging threats and technologies to provide relevant guidance and solutions, making ongoing communication and collaboration critical to success.

What does an Application Security Architect do?

An Application Security Architect is responsible for designing and implementing security measures within software applications to protect them from threats and vulnerabilities. They work closely with development teams to ensure secure coding practices, conduct security assessments, and integrate security controls throughout the software development lifecycle. Their goal is to minimize security risks and ensure compliance with regulatory requirements and industry best practices.

What is the difference between Application Security Architect vs Security Engineer?

AspectApplication Security ArchitectSecurity Engineer
CredentialsCertifications like CISSP, CSSLP, CEHCertifications like CISSP, Security+
Work EnvironmentDesigns security frameworks, oversees security architectureImplements security measures, monitors systems
Industry UsageUsed in organizations with complex applications and security needsCommon across various industries for security operations

The Application Security Architect focuses on designing and overseeing security architecture for applications, ensuring security best practices are integrated from the ground up. In contrast, the Security Engineer implements and maintains security measures, responding to threats and vulnerabilities. Both roles require similar certifications and work in security-focused environments, but their core responsibilities differ in scope and focus.

What does an Application Security Architect do?

An application security architect is required to design and manage IT systems and programs and analyze and troubleshoot issues related to security and access. Your main duties in this career are to collaborate with developers and other applications specialists to determine the scope of security necessary for an application. You then design and develop these measures. You also periodically test the security system’s capabilities to ensure that they are working properly. You make recommendations and reports to senior security architects about how to improve security as well.

What cities are hiring for Application Security Architect jobs? Cities with the most Application Security Architect job openings:
Who are the top companies hiring for Application Security Architect jobs? The top employers for Application Security Architect jobs are:
What states have the most Application Security Architect jobs? States with the most job openings for Application Security Architect jobs include:
What job categories do people searching Application Security Architect jobs look for? The top searched job categories for Application Security Architect jobs are:
Infographic showing various Application Security Architect job openings in the United States as of August 2026, with employment types broken down into 81% Full Time, and 19% Contract. Highlights an 86% In-person, and 14% Remote job distribution, with an average salary of $161,211 per year, or $77.5 per hour.

Principal Application Security Architect

Jobtailor

Manhattan, NY • On-site

$140 - $180/hr

Other

This job post has expired today. Applications are no longer accepted.


Job description

  • Secure APIs by implementing robust access control mechanisms, OAuth, JWT, and configuring API gateway security to ensure authenticated and authorized access.
  • Develop reusable security design patterns addressing common cybersecurity challenges, ensuring consistency and best practices across diverse technology stacks and business domains.
  • Craft clear, actionable security standards and policies, aligning them with industry best practices and regulatory requirements while ensuring adaptability to emerging technologies.
  • Lead the design and innovation of security architectures, integrating advanced technologies to protect against evolving threats while enabling business agility and growth.
  • Collaborate with key stakeholders to align security initiatives with business objectives, ensuring broad support and integration at all levels.
  • Expertise in cybersecurity frameworks, network security, cloud security, identity management, and encryption, with proficiency in implementing zero‑trust architectures and secure DevOps practices across diverse IT environments.
  • Threat modeling, risk assessment, and vulnerability management, coupled with experience in SIEM implementation, log analysis, and incident response in complex enterprise settings.
  • Conduct thorough threat analysis using intelligence and analytics to identify and mitigate potential security risks proactively, reducing business impact.
  • Implement and oversee a risk management framework, balancing security investments with business needs to protect assets while supporting growth and innovation.
  • Securing machine learning models against adversarial attacks, ensuring data privacy in AI training sets, and implementing ethical AI principles in security applications.
  • Develop secure AI/ML pipelines, including model integrity verification, secure feature engineering, and anomaly detection in AI-driven systems.
Requirements
  • 3+ years of security architecture and API security, designing secure API gateways and microservices architectures
  • 8+ years of experience with information security controls, guidelines, and standards (e.g., ISO27000 series, OWASP, CSA CCM, CIS 20 Critical Security Controls, SOX, and NIST).
  • Bachelor's Degree or equivalent years of experience
  • Technical knowledge/coding skills in any of the following: Java, C# .Net, Ruby and/or Python
  • In-depth knowledge of AWS and its core services, including EC2, S3, IAM, VPC, and security-related services like security groups, ACLs AWS Security Hub, AWS WAF, and Amazon GuardDuty.
  • Working knowledge of Terraform, Cloud Formation, Pulumi, and/or Ansible.Solid experience securing scalable web architectures and distributed systems.
  • Solid understanding of malware, emerging threats, attacks, and vulnerability management.
  • CCSP/Other Cloud Specific Certification, CISSP and/or GIAC are a plus.
  • AI/ML security.
  • Proven record securing ML models and AI pipelines in financial services.
  • Proficient in ML algorithms, deep learning frameworks, AI ethics.
  • Experienced in AI/ML security controls.
  • Expert in OAuth, OpenID Connect, JWT.
  • Proficient in API threat modeling, automated security testing.
Hard Skills
  • API security
  • security architecture
  • zero-trust architecture
  • risk assessmentvulnerability management
  • threat modeling
  • secure DevOps practices
  • machine learning security
  • encryption
  • automated security testing
Soft Skills
  • collaboration
  • leadership
  • communication
  • adaptability
  • problem-solving
  • innovation
  • strategic alignment
  • stakeholder engagement
  • business acumen
  • proactive risk management
Certifications & Qualifications
  • CCSP
  • CISSP
  • GIAC
#J-18808-Ljbffr