×
Register Here to Apply for Jobs or Post Jobs. X

VDOT Application Security Architect

Job in Richmond, Henrico County, Virginia, 23214, USA
Listing for: TOMORROW HIRE
Full Time position
Listed on 2026-09-20
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 81 - 101 USD Hourly USD 81.00 101.00 HOUR
Job Description & How to Apply Below
  • Job Title: VDOT Application Security Architect
  • Work Type: Hybrid
  • Location: Richmond, VA
  • Salary: $81–$101/hour
  • Start Date: September 21, 2026
  • End Date: June 30, 2027
  • Industry Category: Information Technology / Cybersecurity
  • Employment Type: 1099 Contract
  • Requisition : 810287
Overview:
  • VDOT is seeking an experienced Application Security Architect to define, implement, and oversee application security architecture across enterprise IT environments.
  • The role will establish security principles, standards, patterns, reference implementations, and technical guardrails across complex applications and technology platforms.
  • The position will support secure software development, cloud-native applications, GIS solutions, low-code/no-code platforms, Agentic AI, APIs, data platforms, and enterprise applications.
  • The Application Security Architect will work closely with architecture, development, cybersecurity, and technology teams to identify and reduce security risks.
  • The role will also support data protection, data governance, privacy, threat modeling, secure design, and compliance with Commonwealth of Virginia and VITA security requirements.
Application:
  • Interested candidates should submit an updated resume for consideration.
  • Candidates must be local to the Richmond, Virginia area.
  • Candidates must physically reside within the United States for the duration of the assignment.
  • Candidates must be legally authorized to work in the United States without employer sponsorship, now or in the future.
  • Candidates must provide a valid email address.
  • Candidates must provide their permanent city and state of residence.
  • Candidates must confirm their ability to meet the required onsite schedule.
  • Candidates should indicate how soon they can start after receiving an offer.
Job Description:
  • Define, implement, and oversee application security architecture across VDOT's enterprise IT environment.
  • Establish application security principles, standards, patterns, reference implementations, and technical guardrails.
  • Embed security throughout the Secure Software Development Lifecycle (SSDLC), from requirements and architecture through development, testing, deployment, and production monitoring.
  • Develop secure architecture patterns for complex web applications, APIs, distributed systems, cloud-native workloads, GIS applications, low-code/no-code platforms, and Agentic AI solutions.
  • Lead application security architecture activities involving Azure, SQL Server, Microsoft Dynamics 365, Microsoft Power Platform, ArcGIS, and other enterprise technologies.
  • Define and implement security controls for data at rest, data in transit, and data in use.
  • Support data classification, encryption, Data Loss Prevention (DLP), privacy, data governance, and Data Protection Impact Assessments (DPIAs).
  • Design granular access-control models using Role-Based Access Control (RBAC), Row-Level Security, Column-Level Encryption, dynamic data masking, and centralized database audit and activity monitoring.
  • Align application security architecture and controls with VITA security requirements, including VITA SEC 530.
  • Conduct threat modeling and security architecture reviews to identify vulnerabilities and security risks early in the development lifecycle.
  • Define security requirements for authentication, authorization, session management, encryption, secrets management, logging, privacy, APIs, and data protection.
  • Integrate application security practices into CI/CD pipelines, Infrastructure as Code (IaC), development workflows, testing processes, and release management.
  • Evaluate and support security tools including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), container scanning, API security testing, secret…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary