Talent.com
serp_jobs.error_messages.no_longer_accepting
Sr Application Security Architect (Cary)

Sr Application Security Architect (Cary)

SASCary, NC, US
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
  • serp_jobs.job_card.part_time
job_description.job_card.job_description

Senior Application Security Architect

We're a leader in data and AI. Through our software and services, we inspire customers around the world to transform data into intelligence - and questions into answers.

We're also a debt-free multi-billion-dollar organization on our path to IPO-readiness. If you're looking for a dynamic, fulfilling career coupled with flexibility and world-class employee experience, you'll find it here.

About the Job

As a Senior Application Security Architect within the Product Security Organization (PSO), you will be a key contributor to SAS solution security. Successful candidates will partner with architecture, engineering, and cloud hosting helping to solve complex technical problems anywhere in the Software Development Lifecycle (SDLC) from design and development through to deployment and operations. Technical security breadth and depth as well as clear, concise and effective communications are key this role requires a diverse set of skills in systems architecture, software development, and cyber-security. Success will depend on your collaborative skills working toward the SAS goal of meeting legal, compliance, and customer security requirements as part of providing SAS customers with the most trustworthy solutions globally.

As a Senior Application Security Architect at SAS, you will :

  • Collaborate across R&D and cloud hosting teams to strategically improve the security posture of business-critical multi-tier solutions in legacy, hybrid cloud, and public cloud environments. Includes tactical refactoring, environment promotion, and Secure by Default deployment and configuration to maintain security consistency if not parity between all environments.
  • Collaborate in the planning of evolutionary paths for secure architectures and systems incorporating and aligning dependent third-party architectures as well as the adoption of new technologies while maintaining a robust and consistent security posture. Includes employing specific security compensating controls, defense in depth, and security posture aspects in support of Secure by Design, Secure by Default (deployment and configuration), and Zero Trust Architectural principles.
  • Work with development teams providing security assessment and hardening of products spanning the SDLC and development pipelines left / early-shifted wherever possible. Includes performing periodic secure design, threat modeling, code reviews, or direct verification to identify and triage issues assessing the security risk and recommending remediation steps for vulnerabilities and weaknesses.
  • Collaborate with Product Management stakeholders to ensure security implementations are consistent with business objectives, customer requirements, and applicable global regulations.
  • Identify, train, and partner with Security Champions in place with product R&D teams. Help champions assess and gauge risk to identify security gaps or seams in the products and integrated solutions.
  • Create and maintain secure engineering documentation, guidance, or training collateral supporting with PSO standards, policies, and procedures.
  • Collaborate with other teams within security to identify new tools and processes to integrate into the Secure SDLC. Recommend and promote software security policies, standards, and procedures that can improve the global SAS security posture. Mentor and coach within the Product Security Office and other Security Architects aligned with your security breadth and building depth via subject matter expertise.

Required Qualifications

  • 8+ years of secure software development, secure system architecture and design, or related experience.
  • 4+ years of demonstratable experience in developing or adopting software security best practices.
  • Bachelor's degree with major study in Computer Science, Electrical Engineering, or related. Possess relevant security certifications such as from SANS, GIAC, or ISACA CEH, for CCSP, CSSLP, CISM, or CISSP.
  • An equivalent combination of related education, training, or experience may be considered in place of any of the above qualifications.
  • Knowledge of current Global Enterprise security risks and attacker TTPs as published by MITRE.
  • Experience with programming languages such as C / C++, Java, Python, JavaScript, PHP, Golang, etc. allowing you to review code or logic and be confident in giving prescriptive guidance to R&D and hosting / ops in security patterns and best practices.
  • Expertise in securing enterprise web applications and familiarity with OWASP Top 10, CVSS, CWE and SANS-25.
  • Experience with security best practices for modern R&D such as micro-services and containers, Agentic AI, hyper-scale cloud hosting and operations, etc.
  • You're curious, passionate, authentic and accountable. These are our values and influence everything we do.
  • Preferred Qualifications

  • Experience with cloud hosting and operational security for public clouds (Azure, AWS, or GCP) and hybrids such as the domains and requirements in the Microsoft Cloud Security Benchmark (MCSB).
  • Experience with SAST tools, such as : Snyk, Black Duck, Sonar, etc.
  • Experience with DAST / IAST tools, such as : ZAP, BurpSuite, Kali, Nessus, etc.
  • Knowledge of and experience with auditing, implementing, and supporting Dev(Sec)Ops.
  • World-Class Benefits

    Highlights include...

  • Comprehensive medical, prescription, dental and vision plans.
  • Medical plan options include...
  • PPO with low annual deductible and copays.
  • HDHP combined with a health savings account with a contribution from SAS (no access to on-site health care center).
  • Onsite Health Care Center (HQ) that's free to employees and family members enrolled in the PPO plan. There's a pharmacy too! Not local to HQ? The pharmacy will ship prescriptions for no additional charge!
  • An industry-leading 401k plan.
  • Generous time away including vacation time, a variety of paid holidays, and our much-loved U.S. Winter Wellness Break between December 25 and January 1.
  • Volunteer Time Off, parental leave and unlimited paid sick days.
  • Generous childcare benefits for all full-time employees.
  • Diverse and Inclusive

    At SAS, it's not about fitting into our culture it's about adding to it. We believe our people make the difference. Our diverse workforce brings together unique talents and inspires teams to create amazing software that reflects the diversity of our users and customers. Our commitment to diversity is a priority to our leadership, all the way up to the top; and it's essential to who we are. To put it plainly : you are welcome here.

    Additional Information :

    To qualify, applicants must be legally authorized to work in the United States, and should not require, now or in the future, sponsorship for employment visa status. SAS is an equal opportunity / Affirmative Action employer. All qualified applicants are considered for employment without regard to race, color, religion, gender, sexual orientation, gender identity, age, national origin, disability status, protected veteran status or any other characteristic protected by law. Read more : Know Your Rights.

    Resumes may be considered in the order they are received. SAS employees performing certain job functions may require access to technology or software subject to export or import regulations. To comply with these regulations, SAS may obtain nationality or citizenship information from applicants for employment. SAS collects this information solely for trade law compliance purposes and does not use it to discriminate unfairly in the hiring process.

    SAS only sends emails from verified sas.com email addresses and never asks for sensitive, personal information or money. If you have any doubts about the authenticity of any type of communication from, or on behalf of SAS, please contact Recruitingsupport@sas.com.

    #SAS

    serp_jobs.job_alerts.create_a_job

    Application Architect • Cary, NC, US

    Job_description.internal_linking.related_jobs
    • serp_jobs.job_card.promoted
    Applications Systems Analyst Sr - Epic Beaker

    Applications Systems Analyst Sr - Epic Beaker

    UNC Health CareMorrisville, NC, United States
    serp_jobs.job_card.full_time
    Become part of an inclusive organization with over 40,000 teammates, whose mission is to improve the health and well-being of the unique communities we serve. The responsibilities of this role will ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    M4-14Lead Security Analyst 141809

    M4-14Lead Security Analyst 141809

    FHRMorrisville, NC, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Our direct client has a new opening for a Lead Security Analyst 141809.This job is 14 months to start, and the client is located in Augusta, ME. Please send your rate and resume.Regulatory compli...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Junior Security Analyst - 3rd Shift

    Junior Security Analyst - 3rd Shift

    VaronisMorrisville, NC, US
    serp_jobs.job_card.full_time
    Junior Security Analyst- 3rd Shift.Nasdaq : VRNS) is a leader in data security, fighting a different battle than conventional cybersecurity companies. Our cloud-native Data Security Platform continuo...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Security Solutions Executive - Raleigh, NC

    Security Solutions Executive - Raleigh, NC

    CDWRaleigh, NC, US
    serp_jobs.job_card.full_time
    At CDW, we make it happen, together.Trust, connection, and commitment are at the heart of how we work together to deliver for our customers. It's why we're coworkers, not just employees.Coworkers wh...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Sr. Information Security Governance Analyst- Bridgewater, NJ or Morrisville, NC (Hybrid)

    Sr. Information Security Governance Analyst- Bridgewater, NJ or Morrisville, NC (Hybrid)

    Syneos Health / inVentiv Health Commercial LLCMorrisville, NC, United States
    serp_jobs.job_card.full_time
    Information Security Governance Analyst- Bridgewater, NJ or Morrisville, NC (Hybrid).Syneos Health is a leading fully integrated biopharmaceutical solutions organization built to accelerate custome...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Applications Systems Analyst Sr - Epic - Credentialing

    Applications Systems Analyst Sr - Epic - Credentialing

    UNC Health CareMorrisville, NC, United States
    serp_jobs.job_card.full_time
    Become part of an inclusive organization with over 40,000 teammates, whose mission is to improve the health and well-being of the unique communities we serve. Provides a high level of technical supp...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    IT Analyst Sr - Application Development Analyst

    IT Analyst Sr - Application Development Analyst

    Duke Clinical Research InstituteDurham, NC, United States
    serp_jobs.job_card.full_time
    Established in 1930, Duke University School of Medicine is the youngest of the nation's top medical schools.Ranked sixth among medical schools in the nation, the School takes pride in being an incl...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    1-20-Infrastructure Security SME

    1-20-Infrastructure Security SME

    Focused HR SolutionsRaleigh, North Carolina, United States
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    A-8 / 9 - 716542 - Infrastructure Security SME - Remote & Raleigh, NC.Candidates will be allowed to work remotely.At times Candidate may be required to work onsite or attend meetings in Raleigh, ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Cleared Security Professional - Secret Clearance

    Cleared Security Professional - Secret Clearance

    Clearance JobsDurham, NC, US
    serp_jobs.job_card.full_time
    Security Professional - Aerospace Patrol.Allied Universal, North America's leading security and facility services company, provides rewarding careers that give you a sense of purpose.While working ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Military Intelligence Systems Maintainer / Integrator

    Military Intelligence Systems Maintainer / Integrator

    United States ArmyRaleigh, North Carolina, US
    serp_jobs.job_card.full_time
    As a Military Intelligence (MI) Systems Maintainer / Integrator, you’ll make sure we can always find, know, and never lose the enemy by making sure the equipment used by the Military Intelligence S...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    SAP Security Analyst / Admin

    SAP Security Analyst / Admin

    The Maven Group, LLCRaleigh, NC, US
    serp_jobs.job_card.permanent
    REMOTE but must reside within 3 hours of Raleigh.US Citizens, Green Card, Perm Resident (no sponsorship).This primarily remote role involves. Currently on ECC, and should be moving to S4 Hana in the...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Security Engineer

    Security Engineer

    SilverSkyRaleigh, NC, US
    serp_jobs.job_card.full_time
    We know your time is valuable so we will get right to it.We've amassed some of the best and brightest minds in cyber security who are passionate about protecting the digital world.Our team blen...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Security Professional - Healthcare Facility - Part Time

    Security Professional - Healthcare Facility - Part Time

    Allied UniversalClayton, NC, US
    serp_jobs.job_card.full_time +1
    Security Professional - Healthcare Facility - Part Time.As a Security Professional in Clayton, NC, you will serve and safeguard clients in a range of industries such as Healthcare and more.Join a l...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Security Professional - Healthcare Site - Weekends

    Security Professional - Healthcare Site - Weekends

    Clearance JobsDurham, NC, US
    serp_jobs.job_card.full_time +1
    Security Professional - Healthcare Site - Weekends.Allied Universal, North America's leading security and facility services company, provides rewarding careers that give you a sense of purpose.Whil...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Applications Systems Analyst Sr - Epic Ambulatory - Beacon

    Applications Systems Analyst Sr - Epic Ambulatory - Beacon

    UNC Health CareMorrisville, NC, United States
    serp_jobs.job_card.full_time
    Become part of an inclusive organization with over 40,000 teammates, whose mission is to improve the health and well-being of the unique communities we serve. Provides a high level of technical supp...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    Security Specialist 8-11

    Security Specialist 8-11

    Focused HR SolutionsRaleigh, North Carolina, United States
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    This job is remote and has been since 2020 and has not changed.All work will be completed onsite at the manager's discretion. Our client has an opening for a Security Specialist - Sr (719317).This p...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    UiPath Architect

    UiPath Architect

    RST Solutions Inc.Raleigh, NC, US
    serp_jobs.job_card.full_time
    ERP, Business Process Automation (BPA), and Supply Chain Management Solutions.By aligning your technology roadmap with your business goals and objectives, RST Solutions provides a thorough 360-degr...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    SAP Security PM

    SAP Security PM

    Tech DigitalRaleigh, NC, US
    serp_jobs.job_card.full_time
    Looking for a resource who started as an hands on SAP Security resource who moved their way up into program management.serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Security Professional - Healthcare Facility - Part Time

    Security Professional - Healthcare Facility - Part Time

    Clearance JobsClayton, NC, US
    serp_jobs.job_card.full_time +1
    Security Professional - Healthcare Facility - Part Time.Allied Universal, North America's leading security and facility services company, provides rewarding careers that give you a sense of purpose...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    AFSO / CSSO (CI Poly)

    AFSO / CSSO (CI Poly)

    Clearance JobsRaleigh, NC, US
    serp_jobs.job_card.full_time
    Zachary Piper is seeking an AFSO / CSSO (CI Poly) in the Raleigh, North Carolina area.The AFSO / CSSO (CI Poly) will support personnel and industrial security programs, including clearance processi...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days