Senior Cybersecurity Architect - Application Security

American Bureau of Shipping (ABS)

Houston, Texas

JOB DETAILS
SKILLS
Analysis Skills, Application Programming Interface (API), Applications Security, Artificial Intelligence (AI), Business Architecture, Business Processes, Business Skills, Cloud Applications, Cloud Computing, Code Reviews, Computer Science, Computer Security, Continuous Deployment/Delivery, Continuous Integration, Cross-Functional, Emerging Technology, Enterprise Architecture, Enterprise Protection, Financial Services, Incident Response, Industry Standards, Information Technology Software, Information/Data Security (InfoSec), Internet Security, Leadership, Mentoring, Multicultural, Open Source, People Management, Quality Assurance Methodology, Regulations, Regulatory Requirements, Requirements Management, Risk, Risk Analysis, Risk Management, Secure Coding, Security Architecture, Security Design, Security Monitoring, Security Software, Software Administration, Software Development, Software Development Lifecycle (SDLC), Software Engineering, Software Testing, Software as a Service (SaaS), Supply Chain, Team Player, Technical Leadership, Technical Strategy, Thought Leadership, Threat Modeling, Vulnerability Scanners
LOCATION
Houston, Texas
POSTED
1 day ago
The Cybersecurity Architect is a senior member of the ABS IT Cyber Security Team responsible for designing, implementing, and evolving enterprise-wide security architectures that safeguard ABS's digital assets, data, systems, and applications. This role serves as a strategic advisor and technical leader, ensuring that security solutions are aligned with ABS's business objectives, regulatory requirements, and risk management practices.

The role has a strong focus on application security and secure software development, including code security, software development security practices, and DevSecOps integration across the software development lifecycle (SDLC). The ideal candidate will bring deep technical expertise, business acumen, and a collaborative approach to partner with IT, business leaders, architects, engineers, and development teams in building a resilient and future-ready security posture.

What You Will Do:
  • Architecture & Design: Define and maintain the enterprise security architecture, standards, and reference models to ensure consistent, secure, and scalable solutions across ABS, including cloud, on-premise, hybrid, and application environments. Review application, infrastructure, SaaS, cloud, and other designs and architectures from a cybersecurity perspective, leading to a risk and compliance-based architecture review outcome
  • Application Security Leadership: Establish and promote application security architecture principles, secure design patterns, and security requirements for internally developed and third-party applications. Work with enterprise architecture to ensure secure, functional foundational platforms for application development.
  • Secure SDLC Enablement: Embed security throughout the software development lifecycle by partnering with development and engineering teams to integrate secure coding, code review, threat modeling, and security testing practices.
  • DevSecOps Integration: Drive the adoption of DevSecOps practices by integrating security controls, automated code scanning, vulnerability detection, and policy enforcement into CI/CD pipelines.
  • Code Security Oversight: Provide guidance on code security practices, including static application security testing (SAST), dynamic application security testing (DAST), software composition analysis (SCA), secrets detection, and remediation of vulnerabilities in source code and open-source dependencies.
    Strategic Alignment: Partner with IT and business leaders to embed security into technology roadmaps, digital transformation initiatives, and software product delivery.
  • Risk Management: Identify, assess, and mitigate cybersecurity risks associated with applications, APIs, cloud platforms, development pipelines, and business processes.
  • Governance & Compliance: Ensure alignment with regulatory frameworks, industry standards, secure development requirements, and ABS security policies.
    Technology Leadership: Evaluate, recommend, and implement emerging security technologies and practices related to application security, cloud security, and software assurance.
  • Collaboration & Influence: Provide guidance to engineering, operations, platform, and development teams to integrate security into solution design, development, deployment, and ongoing support.
  • Incident Preparedness: Contribute to security incident response planning and support investigations involving application-layer threats, software vulnerabilities, and code-related security issues.
  • Thought Leadership: Serve as a subject matter expert, mentor team members, and represent ABS in internal and external cybersecurity forums as required.

What You Will Need:

Education and Experience
  • 8+ years of progressive experience in cybersecurity, with at least 3 years in an architecture or senior security engineering role, including meaningful experience in application security, secure software development, or DevSecOps.
  • Minimum: Bachelor's degree in Computer Science, Information Security, Software Engineering, or a related field, or equivalent experience.
  • Preferred: Master's degree in Cybersecurity, Information Technology, Software Engineering, or related discipline.
  • Experience in regulated industries such as maritime, energy, or financial services.
  • Familiarity with Zero Trust architecture, advanced threat detection, software supply chain security, and emerging technologies including AI/ML in security and OT/ICS security.
  • Demonstrated leadership in cross-functional teams and global, multicultural e

About the Company

A

American Bureau of Shipping (ABS)