Skip to main content
Tallo logoTallo logo
Apply for this opportunity

This job application is on an outside website. Be sure to review the job posting there to verify it's the same.

Lead Enterprise AppSec Architect

Job

100 Raymond James & Associates, Inc.

Remote

Full-Time

Posted 1 week ago (Updated 4 days ago) • Actively hiring

Expires 6/30/2026

Review key factors to help you decide if the role fits your goals.
Pay Growth
?
out of 5
Not enough data
Not enough info to score pay or growth
Job Security
?
out of 5
Not enough data
Calculating job security score...
Total Score
83
out of 100
Average of individual scores

Were these scores useful?

Skill Insights

Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.

Job Description

Job Description Summary The Raymond James Enterprise Application Security Architecture team is seeking a Lead Security Architect to strengthen our organization's security posture by focusing on secure design reviews, threat modeling, and vulnerability remediation. This role is integral to ensuring our applications and systems meet the highest security standards. The ideal candidate will be highly skilled in identifying, analyzing, and mitigating security risks, as well as collaborating with development teams to remediate vulnerabilities in both design and code effectively. Additionally, the position involves creating secure reference architectures informed by design reviews and industry best practices. Job Description This position will follow our hybrid work model, we expect the selected candidate to be in office 10 days a month at one of the following office locations: St. Petersburg, FL;
Memphis, TN, Southfield MI Responsibilities:
Lead secure design reviews and threat modeling exercises for new applications, features, and architectural changes, ensuring adherence to industry standards, regulatory requirements, and organizational security policies. Collaborate with development teams to identify and remediate vulnerabilities in application code and system designs, providing hands-on guidance and actionable recommendations. Create and maintain secure reference architectures to serve as a foundation for implementing secure systems, applications, and solutions aligned with the organization's specific needs and technologies. Act as a trusted advisor to development teams, integrating security considerations into the software development lifecycle and promoting secure coding practices. Assess conformance with architectural standards, focusing on reducing technical debt and optimizing enterprise assets such as systems, services, and information. Provide technical expertise on security matters, including encryption, identity and access management, and secure communication protocols. Stay current with emerging security threats, trends, and best practices, applying relevant insights to enhance the organization's security posture. Collaborate with cross-functional teams, including infrastructure, DevOps tooling, and compliance, to align security measures with organizational goals and ensure seamless integration. Support security incident response efforts by contributing architectural expertise and defense-in-depth strategies as needed. Perform other duties and responsibilities as assigned, including occasional non-standard shifts or on-call
Skills:
7+ years of experience in an application security engineering or architecture role, with a demonstrated focus on secure design reviews, threat modeling, and vulnerability management. In-depth knowledge of web application security principles, secure coding practices, and addressing common vulnerabilities (e.g., OWASP Top 10). Proficiency in designing secure architectures for on-premises and cloud (e.g. AWS, Azure) environments. Strong understanding of OAuth, authentication, and authorization mechanisms, including multi-factor authentication, single sign-on, and emerging technologies like password-less authentication. Experience in encryption technologies, such as certificate-based and token-based cryptography. Familiarity with network protocols, topologies, incident response, and defense-in-depth strategies. Understanding of SAST, DAST, and SCA scanning tool capabilities. Experience integrating application security controls into automated CI/CD pipelines. Exceptional communication skills, capable of bridging the gap between technical and business stakeholders. Financial services experience is a plus but not required. The ability to quickly acquire relevant business acumen is essential.
Education Bachelor's:
Computer and Information Science (Required),
Bachelor's:
Information Technology Work Experience General Experience - 6 to 10 years, Manager Experience - None Certifications Travel Less than 25% Workstyle Hybrid The total compensation for this position includes base salary or wages, and may include components such as additional compensation (cash or equity), discretionary bonuses, or commissions. This position is eligible for a benefits package that may include medical, dental, and vision; life insurance; critical illness insurance and accident insurance; disability benefits; retirement savings; paid time off (including vacation, holidays, and sick leave); and parental leave. Eligibility for benefits and specific offerings may vary based on position and employment status. To view more details of the benefits offered, visit Myrjbenefits.com. At Raymond James our associates use five guiding behaviors (Develop, Collaborate, Decide, Deliver, Improve) to deliver on the firm's core values of client-first, integrity, independence and a conservative, long-term view. We expect our associates at all levels to:
  • Grow professionally and inspire others to do the same
  • Work with and through others to achieve desired outcomes
  • Make prompt, pragmatic choices and act with the client in mind
  • Take ownership and hold themselves and others accountable for delivering results that matter
  • Contribute to the continuous evolution of the firm At Raymond James - as part of our people-first culture, we honor, value, and respect the uniqueness, experiences, and backgrounds of all of our Associates.
When associates bring their best authentic selves, our organization, clients, and communities thrive. The Company is an equal opportunity employer and makes all employment decisions on the basis of merit and business needs. #LI-SA1 Raymond James is a diversified financial services company providing wealth management, capital markets, asset management, banking and other services to individuals, corporations and municipalities. Founded in 1962 in St. Petersburg, Florida, rather than on Wall Street, we have always embraced being a different kind of financial services firm. Today, Raymond James has locations and subsidiaries across the United States, Canada, the United Kingdom and Germany, and is listed on the New York Stock Exchange under the symbol RJF. Thanks for your interest in working with Raymond James. While we might not have the perfect role for you today, we'd love to keep in touch. Join our Talent Network to stay up to date on career opportunities that may be a good fit for you. Our business is deeply focused on people and their financial well-being. We're committed to helping individuals, corporations and institutions achieve their goals, while also supporting successful professionals and helping our communities prosper. We believe doing well and doing good aren't mutually exclusive. As an established but ever-evolving company, you can start - or continue - growing your career here. We invest in you with wide-ranging benefits and the support of leaders and colleagues who care. From development opportunities and enriching networking groups to prioritizing diversity, inclusion and the power of different perspectives, Raymond James is where good people grow. Our people-first culture is outlined in our Culture Blueprint. Check it out to see why many choose to work at Raymond James - and why they stay.