Application Security Architect

Application Security Architect

20 May 2024
Texas, Coppell, 75019 Coppell USA

Application Security Architect

Vacancy expired!

Application Security Architect - Tampa, Dallas, McLean, Jersey City, Boston - 204283

Are you ready to explore a world of possibilities?

Join our DTCC family, and you'll grow your expertise and become the best version of you. As you embark on a new journey, you'll be supported and surrounded by other professionals as you learn new skills, advance your career, and see the impact of your efforts every day.

Pay and Benefits:
  • Competitive compensation, including base pay and annual incentive
  • Comprehensive health and life insurance and well-being benefits, based on location
  • Retirement benefits
  • Paid Time Off and other leave of absence
  • Flexible/Hybrid Work Arrangements

Why You'll Love This Job

The Security Architecture role specializes in providing expert technical advice to support the design and development of information security systems and secure networks in compliance with security requirements. Conducts technical assessments of security architecture, evaluates existing and proposed technical architectures for security risks, and provides recommendations to mitigate those risks. Responsible for security protocol related to desktop applications, web applications, and cloud computing.

As an Application Security Architect in Cybersecurity Architecture, you will drive a comprehensive review of the existing application configuration (on-premises and cloud), influence change in controls standards, creation of IT security standards easily consumed by stakeholders, creation of application security patterns & diagrams, and ownership of the application security capability 3-year roadmap. This essential role will be key for the shift in the technology mindset at DTCC to a Security-First culture.

The primary focus areas for this position are the following:
  • Produce security architecture deliverables as part of initiatives related to application security
  • Partner with application development teams to improve application security services as part of CI/CD pipeline
  • Proactively identify security gaps, propose solutions, and follow through with engineering teams for implementation
  • Innovate and deliver creative solutions to complex issues

Your Primary Responsibilities
  • Create and drive the application security capability 3-year roadmap with within Cybersecurity Services & respective IT stakeholders
  • Influence change of control policies with Technology Risk Management & build strong partnerships with IT Architecture & DevSecOps partners
  • Create IT security standards easily consumed by IT stakeholders
  • Proactively identify application security gaps through discovery & partner with app dev teams for swift remediation
  • Build application security patterns and designs as part of initiatives to modernize the DTCC network security posture
  • Evaluate the existing application security controls, on-premises and cloud, identify improvements, and build plans into the application security capability roadmap for implementation
  • Mentor junior security engineers to enhance their security skills within Cybersecurity Services
  • Maintains professional and technical process knowledge by keeping abreast of the changing security landscape within the technology industry and changes in cybersecurity frameworks
  • Create white papers and present in industry conferences to present thought leadership in the security field
  • Aligns risk and control processes into day-to-day responsibilities to monitor and mitigate risk; escalates appropriately

Note: Responsibilities of this role are not limited to the details above

Qualifications
  • At least 7 years of related experience
  • Bachelor's degree preferred
  • Strong Cybersecurity experience across network, application (web, API) & public/private cloud security architecture (web application firewalls, containers, etc.)
  • Experience in ethical hacking or vulnerability assessment on web apps, mobile, and thick-client (fuzzers, scanners, debuggers, decompilers)
  • Experience in performing code review of popular web application programming languages (Java, JavaScript, C, Python, Perl, etc.)
  • Familiarity with common web stack technologies (HTTP, REST, etc) and platforms (e.g. AngularJS, Tomcat, .Net, MS SQL, etc.)
  • Understanding of core cryptography concepts
  • Experience with Information Security frameworks (e.g. ISO 27001 and NIST) & security architecture frameworks
  • Experience architecting automated data center processes, including provisioning, application, and patch management, monitoring and alerting, capacity monitoring and planning, leveraging execution and human approval workflow design and implementation
  • Experience in OS security (Windows, Linux) and RDMS is preferred
  • Strong communication skills and the ability to present in front of large audience


DTCC is the heart of the post-trade market infrastructure for the global financial services industry. From 21 locations all over the world, DTCC, through its subsidiaries, automates, centralizes and standardizes the processing of financial transactions, mitigating risk, increasing transparency and driving efficiency for thousands of broker/dealers, custodian banks and asset managers. In 2020, DTCC's subsidiaries processed securities transactions valued at more than U.S. $2.3 quadrillion.

We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.



About Us

About DTCC

DTCC safeguards the financial markets and helps them run efficiently, in times of prosperity and crisis. We are uniquely positioned at the center of global trading activity, processing over 100 million financial transactions every day, pioneering industry-wide, post-trade solutions and maintaining multiple data and operating centers worldwide. From where we stand, we can anticipate the industry's needs and we're working to continually improve the world's most resilient, secure and efficient market infrastructure. Our employees are driven to deliver innovative technologies that improve efficiency, lower cost and bring stability and certainty to the post-trade lifecycle.

DTCC proudly supports Flexible Work Arrangements favoring openness and gives people freedom to do their jobs well, by encouraging diverse opinions and emphasizing teamwork. When you join our team, you'll have an opportunity to make meaningful contributions at a company that is recognized as a thought leader in both the financial services and technology industries. A DTCC career is more than a good way to earn a living. It's the chance to make a difference at a company that's truly one of a kind.



About the Team

IT Architecture and Enterprise Services are responsible for enabling digital transformation of DTCC. The group manages complexity of the technology landscape within DTCC and enhances agility, robustness and security of the technology footprint. It does so by serving as the focal point for all technology architectural activities in the organization as well as engineering a portfolio of foundational technology assets to enable our digital transformation.

Job Details

  • ID
    JC41251970
  • State
  • City
  • Job type
    Permanent
  • Salary
    N/A
  • Hiring Company
    The Depository Trust & Clearing Corporation
  • Date
    2022-05-19
  • Deadline
    2022-07-18
  • Category

Jocancy Online Job Portal by jobSearchi.