Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
L
Leoforce
Sr. Application Security Architect - .NET / Secure SDLC
Career Insights for Software Architect (General)
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on California data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Software Architect develops and defines the architecture for computer software and applications projects. Oversees the entire software development process; may manage projects for multiple clients. Analyzes customer or user needs, defines system architecture, and leads team of software developers to design programs and build applications.
$157,699 / year median in California
-6% projected decline
Job Description
Sr. Application Security Architect
- .NET / Secure SDLC Leoforce
- 3.0 Milpitas, CA Job Details $180,000
- $200,000 a year 1 day ago Benefits Unlimited paid time off Dental insurance 401(k) Tuition reimbursement Paid time off Family leave Vision insurance 401(k) matching Gym membership Volunteer time off Qualifications Authentication Secure web application development .
Web Application Security Testing Full Job Description Experience:
Senior Level Salary:
$180,000- $200,000 per year Job Details
- We're looking for a Senior Application Security Architect to own and advance application security across our engineering organization.
What You'll Do:
Lead application security architecture reviews and threat modeling using STRIDE, PASTA, attack trees, or similar methodologies. Own and mature our Secure SDLC (SSDLC) and security-by-design standards. Secure modern C#/.NET and ASP.NET Core applications, APIs, microservices, and supporting technologies. Embed SAST, DAST, SCA, secrets scanning, SBOM/SLSA, and ASPM into CI/CD pipelines. Establish secure authentication and authorization patterns using OAuth/OIDC, SAML, FIDO2, and mTLS. Perform secure code reviews and partner directly with developers on remediation. Prioritize application vulnerabilities using CVSS, EPSS, exploitability, and business risk. Help strengthen security across GitHub/Azure DevOps/GitLab and the broader software supply chain. Champion secure engineering practices and mentor developers on application security.What We're Looking For:
8+ years of Application Security / Product Security / Secure SDLC experience. 8+ years of hands-on C#/.NET development experience, including modern .NET and ASP.NET Core. Deep knowledge of OWASP Top 10, OWASP ASVS, CWE, secure coding, and threat modeling. Strong hands-on experience with SAST, DAST, SCA, DevSecOps, and CI/CD security automation. Strong understanding of OAuth, OIDC, SAML, APIs, microservices, authentication, and authorization. Experience building or significantly maturing an enterprise Secure SDLC/AppSec program. Experience withNIST, PCI DSS, ISO
27001, or other regulated security frameworks. FinTech, payments, financial services, healthcare, or other regulated-industry experience is a plus. CSSLP, CISSP, OSWE, GWAPT, or similar certifications are a plus. If you're an Application Security leader who still enjoys getting into the architecture and code—and wants real ownership rather than simply running security tools—we'd love to hear from you.A bit about us:
- We're a mission-driven fintech company building technology that helps millions of workers access the money they've already earned
- when they need it most.
- Company sponsored Health, Dental, and Vision insurance Health, Dental and Vision Reimbursement account 401K, traditional, and Roth with a company match Tuition Assistance or Tuition Reimbursement Unlimited Paid Time off Monthly Gym Reimbursement Paid time off to volunteer Paid Family Leave Complimentary office lunches Opportunity to work with a great team committed to making a difference #techservices #asp-net-core #vulnerability-management #8-years-in-a-dedicated-application-security-secure-sdlc-role #penetration-testing-ethical-hacking-soc-siem-network-security-cloud-security-iam-grc-vulnerability-scanning #tier3
Benefits
- Paid Time Off (PTO)
- Volunteer Time Off (VTO)
- Financial Aid/Assistance
- 401(k) Plans