remote
Application & Platform Security Architect - AbbVie
Software Engineer
Design and implement secure application and platform architectures, integrating cloud services, threat modeling, and DevSecOps practices to protect critical business systems.
About the role
Key Responsibilities
- Define and enforce security architecture standards for web, mobile, and cloud‑native applications.
- Lead threat modeling and risk assessments across the software development lifecycle.
- Collaborate with engineering and DevOps teams to embed security controls into CI/CD pipelines.
- Design secure configurations and hardening guidelines for AWS and other cloud platforms.
- Provide guidance on identity and access management, encryption, and secure API design.
- Mentor technical staff and conduct security reviews of third‑party components.
Requirements
- 5+ years of experience in application security architecture and cloud security, preferably with AWS.
- Strong knowledge of threat modeling methodologies (e.g., STRIDE, PASTA) and secure coding practices.
- Hands‑on experience with DevSecOps tools such as SAST, DAST, IaC scanning, and container security.
- Proficiency in identity and access management concepts, including IAM, RBAC, and federation.
- Relevant certifications (e.g., CISSP, AWS Certified Security – Specialty, CSSLP) are a plus.