Application Security Architect

CYNET SYSTEMS
  • Richmond, VA
  • $90–$95 Per Hour
  • Temporary
  • Contractor
  • Part-time
  • Instant Apply
1 day ago

Job Description

Job Overview:

Pay Range: $90.00hr - $95.00hr

Requirement/Must Have:

  • Software engineering, application security, security engineering, or related technical roles.
  • Experience in designing and implementing security architecture for IT systems.
  • Secure software-development principles and common risks, including the OWASP Top 10, insecure authorization, injection, deserialization and API abuse.
  • Design and implement end-to-end security architectures for data-at-rest, in-transit, and in-use for full MS stack (Azure, O365, Power Platform, D365).
  • Demonstrated experience with threat modeling and security architecture reviews.
  • Experience securing APIs, web applications, distributed systems, cloud platforms, CI/CD pipelines, and containerized workloads.
  • Experience with identity, OAuth 2.0, OpenID Connect, SAML, JWTs, authorization design, PKI/TLS, encryption, and secrets-management practices.
  • Strong written communication skills, including ability to create architecture diagrams, standards, risk assessments, and actionable remediation plans.
  • Experience in a regulated environment such as financial services, healthcare, government, or payments.
  • Experience conducting or coordinating penetration testing and translating results into durable architectural improvements.
  • Experience implementing DevSecOps programs and security automation at scale.
  • Familiarity with privacy engineering, data classification, and compliance frameworks.
  • Experience with security architectures in Esri's ArcGIS platform.
  • Working knowledge of secure coding in one or more common ecosystems, such as Java, .NET, JavaScript/TypeScript, Python platforms.
  • Ability to explain technical risks and tradeoffs clearly to engineers, product managers, executives, and nontechnical stakeholders.

Responsibilities:

  • Define application-security architecture principles, standards, patterns, reference implementations, and guardrails for web, mobile, API, microservice, and cloud-native systems.
  • Perform architecture and design reviews, identify trust boundaries, attack paths, data flows, security gaps, and compensating controls.
  • Lead or facilitate threat modeling for new applications, major features, integrations, and high-risk changes.
  • Establish repeatable security requirements for authentication, authorization, session management, encryption, secrets management, logging, privacy, API protection, and data protection.
  • Partner with software engineers to integrate security throughout the SDLC, including code review, CI/CD pipelines, infrastructure as code, testing, release approval, and production monitoring.
  • Evaluate and guide use of security tools such as SAST, DAST, software composition analysis, container/image scanning, API security testing, secret scanning, and runtime protection.
  • Define a vulnerability-management approach for applications and dependencies, including severity criteria, remediation SLAs, exception processes, and verification of fixes.
  • Assess third-party libraries, open-source dependencies, SaaS integrations, and vendor-provided components for security risk.
  • Design identity and access-control patterns, including least privilege, MFA/SSO integration, service-to-service authentication, RBAC/ABAC, and privileged-access controls.
  • Work with cloud and platform teams to secure application hosting environments, including Kubernetes, serverless, containers, CI/CD, cloud IAM, network segmentation, and secrets storage.
  • Advise incident-response teams on application-layer threats and contribute to root-cause analysis and security improvements after incidents.
  • Maintain architecture documentation, security decision patterns, risk registers, and exception documentation.
  • Lead the data protection strategy, data governance frameworks, and privacy posture across the organization.
  • Define how structured, unstructured, and spatial data (GIS) are classified, encrypted, stored, and accessed across cloud data platforms.
  • Support architecture, development, and cybersecurity teams to perform threat modeling, secure architectural designs and ensure compliance with security standards.
  • Enforce granular data access controls including RBAC, Row-Level Security, Column-Level Encryption, and dynamic masking.
  • Establish centralized database audit logging and activity monitoring pipelines to ensure strict alignment with security standards.

Nice to Have:

  • Certifications such as CISSP, CSSLP, CCSP, GIAC, cloud-security certifications, or relevant vendor credentials.

Skills:

  • Azure.
  • O365.
  • Power Platform.
  • Dynamics 365.
  • ArcGIS.
  • SQL Server.
  • OWASP Top 10.
  • OAuth 2.0.
  • OpenID Connect.
  • SAML.
  • JWT.
  • PKI/TLS.
  • SAST.
  • DAST.
  • CI/CD.
  • Kubernetes.
  • Java.
  • .NET.
  • JavaScript.
  • TypeScript.
  • Python.

Qualification And Education:

  • Bachelor's degree in computer science, cybersecurity, engineering, or a related field or equivalent practical experience.
  • 10+ years in software engineering, application security, security engineering, or related technical roles.
  • 2+ years designing security architecture for systems.

Benefits:

Our Benefits Include:

  • Medical, Dental, and Vision Insurance
  • 401(k) Retirement Plan
  • Health Savings Account (HSA)
  • Disability Insurance (Short-Term and Long-Term)
  • Life and AD&D Insurance
  • Paid Sick Leave (where required by applicable state or local law)
  • Supplemental Insurance Plans
  • Identity Theft Protection
  • Pet Insurance
  • Employee Wellness Programs
  • Employee Assistance Program (EAP)
  • Career Growth and Professional Development Opportunities

Disclaimer: Benefits eligibility, accrual rates, and usage limits may vary based on employment status, length of service, and work location. Paid Sick Leave is provided in strict accordance with applicable state and municipal mandates. Cynet Systems Inc. reserves the right to modify, amend, or terminate any benefit plans at any time in accordance with applicable laws.


About Cynet Systems


Founded in 2010 and headquartered in the Washington, DC metro area, Cynet Systems Inc. is a leading technology staffing and workforce solutions company serving Fortune 500 companies, government agencies, and enterprise organizations across the United States and Canada. We deliver agile, scalable talent solutions across IT, engineering, life sciences, clinical, and professional staffing, powered by a high-performing recruitment engine operating across North America and Asia.

As a nationally and locally certified Minority Business Enterprise (MBE), Cynet Systems is committed to helping organizations build high-performing teams while empowering professionals to grow rewarding careers. Our organization is certified to ISO 9001, ISO 14001, ISO 27001, and SOC 2 Type II standards, reflecting our commitment to quality, security, operational excellence, and customer success.

Numbers & Facts

LocationRichmond, VA
Job TypeTemporary, Contractor, Part-time
Salary$90–$95 Per Hour
HeadquartersRichmond, VA, US

Skills

  • Access Controlunmatched
  • Accidental Death and Dismemberment (AD&D)unmatched
  • Analysis Skillsunmatched
  • Application Hostingunmatched
  • Application Programming Interface (API)unmatched
  • Applications Securityunmatched
  • ArcGISunmatched
  • Architectural Servicesunmatched
  • Authenticationunmatched
  • Automationunmatched
  • Biologyunmatched
  • CCSP - Cisco Certified Security Professionalunmatched
  • CISSP - Certified Information Systems Security Professionalunmatched
  • Cloud Computingunmatched
  • Code Reviewsunmatched
  • Communication Skillsunmatched
  • Compensation and Benefitsunmatched
  • Computer Scienceunmatched
  • Computer Securityunmatched
  • Continuous Deployment/Deliveryunmatched
  • Continuous Integrationunmatched
  • Cryptographyunmatched
  • Dental Insuranceunmatched
  • Disability Insuranceunmatched
  • Distributed Computingunmatched
  • Ecosystemsunmatched
  • Employee Assistance Planunmatched
  • Financial Servicesunmatched
  • Fortune 500 Customersunmatched
  • GIAC - Global Information Assurance Certificationunmatched
  • Governmentunmatched
  • Healthcareunmatched
  • ISO (International Organization for Standardization)unmatched
  • ISO 14001unmatched
  • ISO 9001unmatched
  • Information Technology & Information Systemsunmatched
  • Information/Data Security (InfoSec)unmatched
  • Injectionsunmatched
  • Insuranceunmatched
  • Internet Applicationunmatched
  • Internet Securityunmatched
  • Javaunmatched
  • JavaScriptunmatched
  • Maintain Complianceunmatched
  • Microservicesunmatched
  • Microsoft .NETunmatched
  • Microsoft SQL Serverunmatched
  • Microsoft Windows Azureunmatched
  • Multiplatform/Cross-Platformunmatched
  • OAuthunmatched
  • Open Sourceunmatched
  • OpenIDunmatched
  • Penetration Testingunmatched
  • Privacy Controlsunmatched
  • Production Controlunmatched
  • Public Key Infrastructure (PKI)unmatched
  • Python Programming/Scripting Languageunmatched
  • Regulatory Complianceunmatched
  • Riskunmatched
  • Risk Analysisunmatched
  • SSL-TLS (Secure Socket Layer - Transport Layer Security)unmatched
  • Secure Codingunmatched
  • Security Architectureunmatched
  • Security Assertion Markup Language (SAML)unmatched
  • Security Complianceunmatched
  • Security Softwareunmatched
  • Security System Designunmatched
  • Service Level Agreement (SLA)unmatched
  • Single Sign-On (SSO)unmatched
  • Software Developmentunmatched
  • Software Development Lifecycle (SDLC)unmatched
  • Software Engineeringunmatched
  • Software as a Service (SaaS)unmatched
  • Spatial Dataunmatched
  • State Laws and Regulationsunmatched
  • System Architectureunmatched
  • Technical Recruitingunmatched
  • Testingunmatched
  • Threat Modelingunmatched
  • Unstructured Dataunmatched
  • Vision Planunmatched
  • Writing Skillsunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder