FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Senior Manager – Security Architecture, Application Security
BBVA. Perform security architecture reviews and threat modeling for applications, APIs, cloud services, infrastructure, and third-party solutions .
Posted 9/30/2026full-timeNew York City • New York • United StatesSenior💰 $185,000 - $200,000 per yearWebsite
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates extensive expertise in Security Architecture, Application Security, and Cybersecurity Engineering, with a strong focus on risk assessments, regulatory compliance, and security controls implementation. Proficient in collaborating with cross-functional teams to ensure alignment with security standards and best practices in the financial services sector.
Highest-signal resume keywords
Security ArchitectureApplication SecurityCloud Security (Azure, AWS, GCP)NIST CSF, NIST 800-53, ISO 27001CISSP, CCSP, GCSA, CCSK
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Information SecuritySecurity Risk AssessmentIdentity and Access ManagementNetwork SecurityInfrastructure SecurityThreat ModelingEncryptionData ProtectionSecure Software Development PracticesThird-Party Risk Management
Soft Skills
Excellent Written CommunicationExcellent Verbal CommunicationInfluencing Cross-Functional Teams
Certifications & Qualifications
CISSPCCSPGCSACCSKCSSLPSANS Certifications (GWEB)
Industry Keywords
Financial ServicesRegulatory ComplianceU.S. Regulatory RequirementsCybersecurity FrameworksBanking Security Standards
Tech Stack
Tools & technologiesAWSAzureCloudCyber SecurityGoogle Cloud PlatformSwift
About the role
Key responsibilities & impact- Perform security architecture reviews and threat modeling for applications, APIs, cloud services, infrastructure, and third-party solutions
- Evaluate architecture patterns covering authentication and authorization, IAM, encryption, secrets/key management, APIs, network segmentation, data protection, cloud security, and secure integration patterns
- Validate that approved architecture and security controls have been implemented as designed before production deployment
- Own the security workstream for multiple concurrent technology initiatives, establishing security deliverables, dependencies, priorities, and milestones
- Manage a portfolio of security engagements simultaneously and prioritize activities based on business criticality, architecture complexity, security risk, and delivery timelines
- Identify security-related project risks and dependencies early, escalate blockers, and ensure security activities do not become late-stage impediments
- Participate in project governance meetings and provide security guidance to project teams
- Review Security Models produced by Corporate Security Architecture
- Assess proposed architectures for alignment with BBVA security standards and U.S. regulatory requirements
- Provide delegated Security Architecture and Application Security support for local initiatives
- Identify security gaps and recommend compensating controls
- Review initiatives outside the standard lifecycle process, including third-party platforms, trading venues, and standalone SaaS solutions
- Serve as the primary security advisor for assigned projects
- Collaborate with Corporate Security Architecture, Enterprise Architecture, Technology Engineering, Application Development, Infrastructure, Risk, Compliance, and business stakeholders
Requirements
What you’ll need- Bachelor's degree in Information Security, Computer Science, Information Technology, Engineering, or related field (or equivalent experience)
- 10+ years of experience in Information Security, Security Architecture, Application Security, Infrastructure Security, or Cybersecurity Engineering
- Experience participating in technology projects and implementing security controls
- Strong understanding of network security, cloud security, identity and access management, application security, and infrastructure security
- Experience performing security risk assessments and architecture reviews
- Familiarity with financial services security requirements and regulatory expectations
- Excellent written and verbal communication skills
- Ability to influence cross-functional teams without direct authority
- Experience in banking or financial services
- Knowledge of NIST CSF, NIST 800-53, ISO 27001, CIS Controls, New York DFS Cybersecurity Regulation, SEC cybersecurity requirements, NFA cybersecurity requirements, FFIEC Guidelines, EU DORA, SWIFT CSCF, FedLine security requirements, CHIPS-related security requirements, and CRI Profile, or similar frameworks
- Experience reviewing cloud architectures (Azure, AWS, or GCP)
- Knowledge of AI security, third-party risk, and secure software development practices
- Professional certifications such as CISSP, CCSP, GCSA, CCSK, CSSLP, SANS certifications (GWEB) and others
- Spanish proficiency is a plus
- Employment eligibility to work with BBVA in the U.S. is required; BBVA will not pursue visa sponsorship
Benefits
Comp & perks- Generous employee benefits package
- Discretionary bonus