06 Aug
|
HCLTech
|
Toronto
We are seeking a highly skilled Application Security Architect to join our Application Security team. This role will be responsible for driving enterprise threat modeling initiatives, defining security architecture patterns, supporting development teams with secure design decisions, and contributing to security engineering efforts including API development and security enablement.
The ideal candidate combines solid security architecture expertise with hands‑on application security experience and the ability to influence engineering teams across the organization.
Experience: 7+ Years
Location: Hybrid / Remote
Key Responsibilities
Partner with application teams to conduct and complete threat models for recent and existing applications.
Lead threat modeling workshops and identify risks, attack vectors, and mitigation strategies.
Develop and maintain reusable security architecture patterns and secure design standards.
Provide on‑demand security architecture support and guidance to development teams.
Research, document, and maintain Architecture Decision Records (ADRs).
Review application, API, and database designs from a security perspective.
Design and develop APIs as needed to support security initiatives.
Analyze vulnerabilities and provide risk‑based remediation recommendations.
Required Skills
Application Security
Threat Modeling (STRIDE, PASTA preferred)
Security Architecture & Design
Threat & Vulnerability Management
REST APIs / Web Services
API Security
GitHub, GitLab, Bitbucket, or SVN
JIRA
Technical Documentation & ADRs
AI / GenAI Security Awareness
Preferred Skills
OWASP Top 10
Secure SDLC (SSDLC)
Cloud Security (Azure, AWS, GCP)
DevSecOps
Security Certifications (CISSP, CSSLP, CCSP, TOGAF)
📌 Application Security Architect Threat Modeling & Security Architecture Toronto
🏢 HCLTech
📍 Toronto