Security Architect IV 4P/689
On-siteAtlanta, Georgia, United States
Job Summary
Design and implement enterprise Application Security and DevSecOps programs, integrating SAST, SCA, and DAST tools into CI/CD pipelines. Manage application vulnerabilities, remediation tracking, and security metrics while defining KPIs such as MTTR and SLA compliance. Build executive dashboards and perform risk assessments for modern application platforms, including APIs, microservices, and AI-enabled systems. Partner with developers, architects, and leadership to shift-left security and secure cloud environments. This role supports Southern Company Services in Atlanta on a two-year hybrid contract, requiring 10+ years of security architecture experience.
Required Qualifications
- 10+ years of information security or security architecture experience
- At least 5 years in application security, DevSecOps, or related roles
- Strong experience with SAST, SCA, DAST, CI/CD security integration, and vulnerability management
- Hands-on experience with tools such as GitHub Enterprise, Azure DevOps, Sonatype, Fortify, Snyk, JFrog, or similar platforms
- Experience with application and cloud security architecture, APIs, microservices, and secure coding practices
- Proficiency in one or more programming languages such as C#, Python, Java, or JavaScript
- Working knowledge of OWASP Top 10, NIST, ISO, and secure development standards
- Strong communication skills with the ability to translate technical risks into business impact
- Must pass Insider Threat Protection background checks
Desired Qualifications
- Security certifications such as CISSP, CSSLP, CCSP, CISA, GIAC, OSCP, or similar
- Experience securing AI-enabled applications and AI-generated code
- Experience creating executive dashboards and security metrics
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.