1

Software Security Architect Jobs (NOW HIRING)

SECURITY ARCHITECT

Arlington, VA ยท Remote

$66.50 - $86/hr

Addressing critical software; and Developing secure Cloud adoption.Security Architecture ReviewsDevelop, and integrate with other Cybersecurity workflow to include: ATO Intake, assessment, and ...

Software Architect, Duo Security & Compliance

Austin, TX ยท On-site +1

$177K - $257K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Your Impact This Software Architect role draws upon hands on experiences of building modern SaaS applications and bridges Product, Security, SRE, and Duo Engineering - ensuring compliance is designed ...

Product Security Architect

$66.50 - $86/hr

Responsibilities : โ€ข Lead security architecture reviews for software products and platforms, providing design guidance that aligns business objectives, scalability, and security requirements โ€ข ...

Security Architect

Muscatine, IA ยท Hybrid

$61 - $78.75/hr

Partner with Enterprise Applications and Software Engineering teams to ensure security is incorporated into enterprise application design. * Develop architectural guidance for secure integrations ...

Security Architect

Muscatine, IA ยท Hybrid

$61 - $78.75/hr

Partner with Enterprise Applications and Software Engineering teams to ensure security is incorporated into enterprise application design. * Develop architectural guidance for secure integrations ...

Plan, test and implement advanced software security techniques in compliance with technical reference architecture * Organize on-going security testing and code review to improve software security

Security Architect

Muscatine, IA ยท On-site

$61 - $78.75/hr

Partner with Enterprise Applications and Software Engineering teams to ensure security is incorporated into enterprise application design. * Develop architectural guidance for secure integrations ...

... and Zero Trust Architectural principles. * Work with development teams providing security ... Recommend and promote software security policies, standards, and procedures that can improve the ...

Product Security Architect

Loveland, CO ยท On-site +1

$171K - $214K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Lead security architecture reviews for software products and platforms, providing design guidance that aligns business objectives, scalability, and security requirements * Define and maintain product ...

Lead Security Architect

Santa Clara, CA ยท On-site

$75 - $95/hr

Partner with engineering teams to integrate security throughout the software development lifecycle ... Security Architecture Assessments * Security Design Reviews * Tiger Team Engagements * Risk ...

Security Architect

Columbia, SC

$60.25 - $77.75/hr

Security Architect Location: Columbia, SC Duration: 12 months Description: SCOPE OF THE PROJECT ... Software 3. Participate in audit and assessment of internal agency systems as well as business ...

Product Security Architect

Loveland, CO ยท On-site

$171K - $214K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Lead security architecture reviews for software products and platforms, providing design guidance ... that aligns business objectives, scalability, and security requirements * Define and maintain ...

Security Architect

Lansing, MI ยท On-site

$75/hr

MDOT - IT Security Architect 3--142556- Lansing, MI-m Hybrid Posting #142556 - This resource will provide cybersecurity architecture, design, and consulting services to the State of Michigan ...

Showing results 41-60

Software Security Architect information

See salary details

$86K

$133.2K

$166K

How much do software security architect jobs pay per year?

As of Aug 14, 2026, the average yearly pay for software security architect in the United States is $133,233.00, according to ZipRecruiter salary data. Most workers in this role earn between $110,500.00 and $165,000.00 per year, depending on experience, location, and employer.

What does a software security architect do?

A Software Security Architect is responsible for designing secure software systems and ensuring that security best practices are integrated throughout the software development lifecycle. They assess potential threats, define security requirements, and create architectural solutions to mitigate risks. This role involves collaborating with developers, IT teams, and stakeholders to ensure that applications are resilient against cyber threats and comply with relevant security standards. Additionally, Software Security Architects often conduct security reviews, threat modeling, and provide guidance on secure coding practices.

What are the key skills and qualifications needed to thrive as a software security architect?

To thrive as a Software Security Architect, you need deep expertise in software development, cybersecurity principles, and threat modeling, usually backed by a degree in computer science or a related field. Familiarity with tools like static and dynamic code analyzers, SIEM systems, and certifications such as CISSP or CSSLP is typically expected. Strong problem-solving, communication, and leadership skills help you influence secure design decisions and collaborate across teams. These skills and qualities are vital to proactively identify vulnerabilities and ensure robust, secure software systems.

What is the difference between Software Security Architect vs Security Engineer?

AspectSoftware Security ArchitectSecurity Engineer
Primary FocusDesigning security architecture and strategies for software systemsImplementing and maintaining security measures and responding to security incidents
Required CredentialsSecurity certifications (e.g., CISSP, CSSLP), strong software development backgroundSecurity certifications (e.g., CompTIA Security+, CISSP), technical security skills
Work EnvironmentCollaborates with development teams, architects security into software designMonitors security systems, responds to threats, conducts security testing
Industry UsageUsed across software development, IT, and cybersecurity sectorsCommon in IT departments, cybersecurity firms, and enterprise security teams

While both roles focus on security, the Software Security Architect primarily designs security frameworks within software development, whereas the Security Engineer implements and manages security measures on a day-to-day basis. Both roles require relevant certifications and technical expertise, but their responsibilities differ in scope and focus.

What are some common challenges faced by software security architects when integrating security into the software development lifecycle?

One common challenge Software Security Architects face is balancing robust security requirements with development speed and usability. Ensuring that security controls are integrated early in the development process often requires close collaboration with developers, product managers, and IT teams. Additionally, staying updated on emerging threats and compliance requirements can be demanding, as threats evolve rapidly and regulations change. Effective communication and ongoing education are key to overcoming these challenges and ensuring security is a shared responsibility across the organization.
More about Software Security Architect jobs

What job categories do people searching Software Security Architect jobs look for?

The top searched job categories for Software Security Architect jobs are:

Infographic showing various Software Security Architect job openings in the United States as of August 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $133,233 per year, or $64.1 per hour.

SECURITY ARCHITECT

Zermount, Inc

Arlington, VA โ€ข Remote

$66.50 - $86/hr

Full-time

Re-posted 13 days ago


Job description

Cybersecurity Architecture SummaryZermount Inc. is seeking a Cybersecurity Architect who can create government solutions that will withstand even the most complex of IT and Cyber threats. As a Lead in our project, you will lead the architecture and design of innovative solutions and services to secure federal networks. You will coordinate with a dynamic team of thought leaders and experts to determine the right tools and methods to translate your client's IT needs and future goals into a plan that delivers secure and efficient solutions. We need to find the best solution for you to explore new methods, break free from the outdated model and go where the industry is heading. You will guide the team through a critical approach to network design, suggesting alternatives and tweaking solutions to maintain a balance between security and mission needs. Your technical expertise will be vital as you help clients overcome their toughest challenges with cutting-edge technologies and cybersecurity domains. Join our team as we address cybersecurity challenges and build capabilities to deliver solutions and service offerings using investments and proven capabilities. Duties and ResponsibilitiesRoadmap and StrategyProvide input to the Cybersecurity roadmap and strategy for key organization strategic initiatives for the following and related areas:Security Architecture: Develop and Recommend Security Architecture and Standards including Cloud Security for government approval.Cybersecurity Operations: Improve Cloud monitoring, detection, and response; Improve Security Operations (SOC) operations.Privacy & Continuous Monitoring: Improve Vulnerability Assessment program; Integrate security scanning in Cloud Pipeline; Improve Cloud vulnerability coverage and scanning.Cybersecurity Authorizations and Compliance: Reduce time to ATO through continuous ATO; Improve Cloud Compliance.Executive Order (EO) 14028 "Improving the Nation's Cybersecurity" in terms of: Implementing Zero Trust; Enhancing Supply Chain Risk Management (SCRM); Addressing critical software; and Developing secure Cloud adoption.Security Architecture ReviewsDevelop, and integrate with other Cybersecurity workflow to include: ATO Intake, assessment, and Vulnerability Scanning process.Integrate with Enterprise Architecture (EA) review process.Perform security reviews based on RMF controls compliance, clients, and security best practices.Develop security architectural patterns to enable faster ATO or assessment process by creating architectural designs that already meet compliance controls.Develop Security Architecture Standards in Cybersecurity SharePoint site and cross-link with Cloud Operations (SSB) and Enterprise Architecture (EA) sites.Provide security input on Cloud Center of Excellence (CCOE) and Cloud Advisory Council (CAC) agenda items by participating in technical working groups, providing security analysis, and providing recommendations.Provide security architecture input for DevSecOps security strategy and roadmap including application and infrastructure vulnerability scanning, automated assessments, and security controls.Research, document, and publish a Cloud Security Codex to include security best practices based on security architecture patterns or Cloud services guidance's such as security configuration or use-cases and design.Recommends security requirements, architectural direction, and assists in pilot testing of key enterprise-wide initiatives to include:Zero Trust Architecture (ZTA),Secure Access Service Edge (SASE) including Cloud Access Security Broker (CASB),Zero Trust Network Access (ZTNA),Secure Web Gateway (SWG)Trusted Internet Connection (TIC) 3.0Identity, Credential, and Access Management (ICAM) - OKTAConfiguration Management Database (CMDB).Evaluate a subset of the agency's High Value Asset (HVA) security posture to determine whether the agency has properly architected its cybersecurity solutions and provides agency leadership the risks inherent in the implemented cybersecurity solution.Performs architecture design reviews including configuration and log reviews and perform network traffic analyses.Produces a SAR Report to include HVAs architecture strengths and findings.Cloud Security EngineeringDrive the pilot and adoption of Cloud Security Posture Management (CSPM).Design and deploy native Cloud security services in AWS, Microsoft Azure, and Google Cloud.Perform proof of value of Cloud-native, COTS, 3rd party, or opensource security capabilities by hands-on deploying and evaluating against security requirements.Lead the development of scripts or code to perform Cloud Security assessments through Cloud native API or SDK.Lead the development of enterprise cloud security blueprints to include security in Infrastructure as Code (IaC templates).Research new and emerging security practices and capabilities such as AI/ML to address compliance and mitigate security risk.System Security Engineering (SSE)Collaborate with the CyberOps Branch to improve Cloud Security monitoring to include ingestion of logs such as: API, application/database, and flow logs into SIEM; and improve Cloud SME on Cloud log analysis to analyze, create, and tune Cloud events to increase coverage and alerting in the Cloud.Collaborate with the Privacy and Continuous Monitoring Branch to increase Cloud vulnerability coverage in the areas of Operating System (OS), application code, and Infrastructure level; and develop architecture for integrating findings into a centralized dashboard that allows product owners direct access to team's specific systems or cloud account findings.Collaborate with the Cybersecurity Authorizations and Compliance Branch to provide input on designing compliance systems that perform continuous ATO process to decrease the processing lead times of current ATO process; provide responses on data calls; and participate in working groups in order to collaborate and share technical knowledge.Identify security vulnerabilities and minimizes or contains risks associated with these vulnerabilities spanning the Systems Development Life Cycle.Ensure the team provides system engineering and architectural design support services to include Studies and analysis of proposed operations modifications; End-to-end architecture tradeoff assessment; Development of strategic and tactical plans; Evaluation of new program requirements; and Investigation and development of new technologies for possible operations modifications.RequirementsHigh level of attention to detail, needs minimal guidance, effective verbal, and written communications.Equally adept at strategic planning and operational/technical level.Able to adapt to new and changing requirements or priorities and manage work and resources accordingly.At least 5 years (preferred 10 years) of network, systems, applications:LAN/WAN, WAF/CDN/DDOS, Network Firewalls, IDS/IPS.Virtualization, hypervisor security, container security.Application development, serverless security, microservices, CICD.At least 5 years of designing and/or implementing security in Cloud (AWS required, Azure or GCP optional):Multi-Cloud, Hybrid Cloud, IaaS, PaaS, SaaS, shared responsibility model.AWS IAM, KMS, S3, RDS, SNS/SQS, Organization, Guard Duty, Security Hub, Detective, Config, CloudTrail, CloudWatch, Lambda.Azure E3/E5, Active Directory, Blob, Azure Security Center, Key Vault, SSE, Monitor, Log Analytics, Policy.Experience with DevSecOps strategy and implementation and designing architecture in accordance to RMF, CSF, FISMA, and Fedramp.Familiarity with: ZTNA and SASE Framework, ICAM (OKTA), CWPP, SOC Operations, Vulnerability Threat Management, and Compliance.At least 2 years working in or managing Agile Devops, Scrum, Kanban.EducationCandidate must have a Bachelor of Science (or higher) in one of the following:Computer engineeringComputer scienceInformation Technology (IT), orCybersecurityThe resume may reference another major, so long as the resume is clear that the degree addressed at a minimum one of the following: cyber security engineering, systems administration, information systems security, software development security, systems engineering, information systems or IT.CertificationsThe candidate must have a:Certified Information Systems Security Professional (CISSP), andAt least one of the following, or equivalent:Certified Cloud Security Professional (CCSP),AWS Certified Solutions Architect Associate,AWS Certified Security Specialist,Microsoft Azure Solutions Architect,Google Professional Cloud Architect.ClearancePublic TrustLOCATION & HoursHybrid - primarly Remote, however, there maybe occasional times that the team could be asked to report to the office.locations are as follows:USPTO HQ:600 Dulany Street, Alexandria, Virginia 22314Zermount HQ:2111 Wilson Blvd, Ste 200, Arlington, VA 22201Hours of Operation8:00 am EDT - 4:30 pm EDT