Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
EXL

AVP, Cyber Application Security Architect

EXL

. Serve as the security architecture authority within the architecture organization .

Posted 10/4/2026full-timeRemote • New Jersey • United StatesLead💰 $160,000 - $195,100 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates extensive expertise in security architecture, including threat modeling, secure coding practices, and application security reviews. Proficient in integrating security controls into cloud environments and CI/CD pipelines while providing actionable guidance to engineering teams.

Highest-signal resume keywords
Security Architecture AuthorityThreat Modeling ExpertiseCI/CD Pipeline SecurityApplication Security ToolsCloud Environment Security

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Secure Coding PracticesApplication Security ReviewsSAST/SCA/DAST ScanningCloud Security (AWS, Azure, GCP)Data Protection ControlsAccess ControlSecrets ManagementArtifact IntegrityAutomation in SecurityAI/ML Security Risks
Soft Skills
Collaborative SkillsConsulting SkillsInfluencing Without AuthorityClear CommunicationPragmatic Recommendations
Tools & Technologies
CNAPPCWPPWAFService Mesh SecurityAPI GatewaysSIEM/SOARCloud-Native Telemetry
Certifications & Qualifications
Bachelor's Degree
Industry Keywords
FedRAMPSOC2ISO 27001NIST SP 800-53CSA CCMSOXSupply Chain ControlsVulnerability Management

Tech Stack

Tools & technologies
AWSAzureCloudGoogle Cloud PlatformSDLC

About the role

Key responsibilities & impact
  • Serve as the security architecture authority within the architecture organization
  • Partner with product architects, principal engineers, cloud partners, and business leaders to embed secure-by-design principles into hardware appliances, multi-tenant SaaS platforms, and globally distributed cloud infrastructure
  • Coach and support developers in writing secure code and using secure patterns, frameworks, and libraries
  • Provide architecture, implementation, and operational guidance and promote secure-by-default approaches
  • Triage SAST, SCA, DAST, container, and IaC scanning findings; validate and resolve false positives; and help prioritize true risk
  • Tune security tools, reduce noise, and improve signal quality through rules, suppressions, baselines, and exception processes
  • Drive adoption of CNAPP, CWPP, WAF, service mesh security, API gateways, SIEM/SOAR, and cloud-native telemetry
  • Conduct Secure by Design reviews for new applications and material changes
  • Lead threat modeling workshops, identify abuse cases and attack paths, and document mitigations and residual risk
  • Review authentication/authorization, data flows, secrets handling, logging/monitoring, and resiliency controls
  • Provide recommendations and track follow-through with engineering teams
  • Translate FedRAMP, SOC2, ISO 27001, NIST SP 800-53, CSA CCM, and SOX requirements into measurable security architecture controls
  • Advise on CI/CD pipeline hardening, least privilege, artifact integrity, signing, provenance, and secure deployment patterns
  • Advise on third-party dependency security, supply chain controls, SCA governance, and patch/vulnerability management
  • Integrate security controls into developer workflows with automation and self-service
  • Provide security architecture guidance for AI/ML and GenAI-enabled applications
  • Help implement data protection, access control, monitoring, and abuse-prevention controls for AI/ML features
  • Act as a trusted partner to product, engineering, and leadership
  • Create and maintain secure coding guidance, reference architectures, and reusable patterns
  • Contribute to incident root cause analysis and preventative design improvements

Requirements

What you’ll need
  • 8+ years related IT experience
  • 5+ years' experience in security application tools
  • 6+ years' experience in application security reviews of new architecture
  • 5+ years of experience with public and hybrid cloud environments (AWS, Azure and GCP)
  • Strong software development background with the ability to read, understand, and advise on production code and design decisions
  • Demonstrated expertise in threat modeling and secure architecture review for modern web and API-based applications
  • Expertise securing CI/CD and SDLC processes, including pipeline security, secrets management, artifact integrity, build/release controls, and automation
  • Experience with application security tooling and processes, including SAST/SCA/DAST and related scanning in pipelines
  • Working knowledge of AI/ML security risks and mitigations for applications using ML models or GenAI components
  • Strong collaborative and consulting skills; ability to influence without authority, communicate clearly, and deliver pragmatic, developer-friendly recommendations
  • Bachelor's Degree