Application Security Architect
Listed on 2026-06-04
-
IT/Tech
Cybersecurity, IT Consultant
Job Title: Application Security Architect
Reports to: Security Officer
Classification:Exempt
Location: Evanston, IL
This position is designated as Hybrid - Fully Flexible and expected to work from our world headquarters office once per month to several times a week. The specific days in the office are determined by managers based on business requirements. Rotary is under the jurisdiction of Illinois employment laws; we require all employees to live within reasonable daily commuting distance to Evanston.
OrganizationOverview
Rotary is a membership organization that unites people from all continents and cultures who take action to deliver real, long-term solutions to pressing issues facing our communities and the world. Each year, Rotary members expand their networks, build lasting relationships, and invest more than $300 million and 16 million volunteer hours to improve lives and create positive change in the world.
In exchange for hard work and dedication in support of Rotary’s clubs, members and other participants, and their humanitarian service projects, our employees receive competitive salaries, flexible schedules, comprehensive benefits, and job enrichment.
As an Application Security Architect, you will be responsible for implementing a security application program, including implementing application security tools, determining application training requirements, and working with the architecture review board to ensure we have security best practices integrated into the software development lifecycle. In addition, you will be responsible for the overall security architecture and assisting the Information Security Officer in implementing the overall security strategy.
YouWill Have
- Bachelor’s degree in computer science, Information Security, or a related field preferred.
- Security related certifications preferred.
- 5+ years of experience in IT and application architecture and security technologies.
- Familiarity with security standards and frameworks such as NIST, CIS, GDPR, MITRE ATT&CK, etc.
- Experience with performing architecture reviews to steer projects in the right direction early, lead security reviews, and develop security ownership.
- Experience with application scanning tools (i.e. Snyk, Rapid7, Checkmarx, Sonar Qube) implementation and integration with CI/CD pipeline.
- Good understanding of Threat and Vulnerability Management, SIEM, EDR, DMARC, DKIM, DLP, and PKI.
- Knowledge of cyber risk quantification methodologies.
- Ability to collaborate with experienced and innovative leaders who share a clear vision and a track record of success.
- The ideal candidate will have hands‑on experience and a good understanding of security in data centers and in the cloud across networked infrastructure, application, and data.
- Lead security architecture direction for solutions as well as influence peers, cross‑functional partners, and IT leadership.
- Consult and lead the design of security best practices and implementation of solid security principles across the organization, to meet business goals along with customer and regulatory requirements.
- Review solution design for compliance to Information Security Standards.
- Design, build and implement enterprise‑class security systems for cloud and on‑prem production environments.
- Ensure the organization implements a security architecture that enables Rotary to grow but also keeps infrastructure and customer data secure.
- Design, implement and maintain application security architecture framework.
- Review application architecture diagrams, data flow diagrams, and network diagrams and advise on non‑compliance issues.
- Perform and document threat modeling and reviews.
- Support the security awareness program by providing documented examples and training sessions to developers and engineers.
- Coordinate with application teams to implement application security monitoring.
- Refine our Security efforts in further defining our processes, procedures, and controls for cloud‑based tolerant systems that require stringent data security.
- Effectively communicate…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).