Talent.com
Application Security Architect
Application Security ArchitectWEX Inc • Boston, MA
Application Security Architect

Application Security Architect

WEX Inc • Boston, MA
16 days ago
Job type
  • Full-time
Job description

About the Team/Role
Wex, Inc. is looking for an Application Security Architect with broad software development and application security experience. This individual would be responsible for designing, guiding, and assessing security solutions in software projects to ensure that security is built in from the beginning. With the assistance of tools including SAST, DAST and SCA, perform assessments of software projects to identify security issues and guide teams to effective remediations.

We’re the Global Product Security Team at WEX, responsible for enabling a modern and effective Secure Software Development Lifecycle throughout WEX. We partner closely with internal teams and customers to assure WEX operates in a secure and compliant manner. Our team holds itself to a high-standard and we collaborate closely with one another to ensure strong, reliable and effective relationships. We own our results and we take pride of ownership in everything we do.

Experience you'll bring

  • A highly motivated security architect who loves working on small, high performing teams that interface with the entire enterprise

  • A collaborative, solid communicator who works well with your team and stakeholders to drive projects from inception to completion

  • Someone who cares deeply for team results but is able to work independently to deliver high quality solutions for projects and operational tasks

  • Comfortable balancing the need to move fast with the realities of working in a highly regulated organization

  • Passionate about security, but pragmatic about delivering business value

  • Customer focused - whether it’s internal teams that we’re supporting or the WEX partner, you prioritize ensuring they have a great experience with WEX and our team

  • A skilled worker that has the motivation, expertise, and work ethic to operate independently across global time zones, and who is able to complete tasks and deliverables with minimal oversight

  • A leader who builds consensus and drives change through buy-in and education rather than mandates

  • Work closely with development teams on securing Wex's applications

  • Able to mentor other engineers & architects on your team and other teams both technically and professionally

  • Champion of a shift-left and DevSecOps approach to security, but tenacious enough to build such a program from the ground up

  • A lifelong learner that is excited by new technologies and challenges

:

  • Are a Subject Matter Expert in software development and software security, particularly with web applications, APIs, mobile apps and enterprise applications delivered in a SaaS model.

  • Perform manual and automated secure code reviews, assisted with commercial static and dynamic application security scanning tools (SAST, DAST, SCA, etc)

  • Do web application and mobile app penetration testing

  • Deliver actionable security guidance to project teams

  • Analyzes security assessments and effectively communicates requirements to appropriate software development, network and configuration management teams;

  • Actively participates in Security Development Lifecycle efforts such as performing secure architecture reviews, secure code reviews, threat models and penetration testing through the software development lifecycle;

  • Keeps abreast of security industry best practices and OWASP recommendations utilizing knowledge to contribute to remediation efforts across the platform, as well as security policies and procedures;

  • Identifies and partners with security champions in the development organization to scale security expertise and awareness.

  • Write comprehensive reports including assessment-based findings, outcomes and recommendations for security enhancement.

  • Deep experience working with compliance and regulatory frameworks such as PCI-DSS, HIPAA/HITRUST, SOX, GDPR, NIST, etc.

  • Have 3-5+ years of progressive experience in software development. C#, Java, Go or Python preferred.

  • Have 3+ years experience with software security or information security

  • Have 2+ years experience with application and container security tools such as SAST, DAST, SCA, IaC scanning and container image scanning, including integrating them to build and ticketing tools.

  • Are very familiar with common application security issues, ie OWASP Top10, and appropriate mitigation strategies

  • Are able to troubleshoot security issues within a complex on-prem and multi-cloud environment

  • A degree in Business, Computer Science or equivalent combination of education and relevant experience.

  • Have experience working closely with many teams across departmental and business unit boundaries

  • Can commit and deliver on very specific project/delivery timelines with minimal supervision

  • Have excellent communication skills, both written and verbal

  • Security certifications such as CEH, OSCP, GWAPT or similar and cloud certifications

  • Have an understanding of modern CI/CD approaches and tooling, preferably with multiple toolsets such as Azure DevOps, GitHub Actions, Jenkins and others

  • Experience with designing and securing container technologies - Kubernetes, Docker, EKS, ECS, AKS, service mesh

  • 3+ years of cloud hosted applications and public cloud experience (IaaS, PaaS, FaaS, SaaS)

  • Experience working on agile teams

The base pay range represents the anticipated low and high end of the pay range for this position. Actual pay rates will vary and will be based on various factors, such as your qualifications, skills, competencies, and proficiency for the role. Base pay is one component of WEX's total compensation package. Most sales positions are eligible for commission under the terms of an applicable plan. Non-sales roles are typically eligible for a quarterly or annual bonus based on their role and applicable plan. WEX's comprehensive and market competitive benefits are designed to support your personal and professional well-being. Benefits include health, dental and vision insurances, retirement savings plan, paid time off, health savings account, flexible spending accounts, life insurance, disability insurance, tuition reimbursement, and more. For more information, check out the "About Us" section.Pay Range: $109,300.00 - $133,000.00
Create a job alert for this search

Application Security Architect • Boston, MA

Similar jobs

Global Security Co-Op

PTCBoston, MA, United States
Full-time

Global Security & Resilience Co-Op.Our world is transforming, and PTC is leading the way.Our software brings the physical and digital worlds together, enabling companies to improve operations, crea...Show more

 • Promoted

Solution Architect – SAP Procure-to-Pay (P2P)

Rizing Consumer IndustriesTaunton, Massachusetts, US
Full-time

Job Description: Solution Architect – SAP Procure-to-Pay (P2P).Like the look of this opportunity Make sure to apply fast, as a high volume of applications is expected Scroll down to read the comple...Show more

 • Promoted

Advanced Security Engineer, Enterprise Security

RelativityBoston, Massachusetts, United States
Full-time

As an Advanced Security Engineer focused on Endpoint Security, you will design, build, and operate security controls that protect Relativity's employee endpoints and the enterprise systems they acc...Show more

 • Promoted

Security Officer

DXLCanton, MA, US
Full-time

Schedule Monday through Friday - 10:30am - 7:00pm.At DXL, we are focused on empowering the Big + Tall guy to look good + feel good.By joining DXL, you’ll discover a passionate team all working toge...Show more

 • Promoted

Remote IAM Architect - Cloud Identity & Security

Public Consulting GroupBoston, MA, United States
Remote
Full-time

A public sector solutions provider is seeking an experienced professional to architect Next-Gen IAM Solutions.The role involves designing secure and scalable identity solutions, leveraging tools li...Show more

 • Promoted

Epic Application Analyst 2 (Security & Provider Management)-REMOTE Facility: Beth Israel Lahey Health - Non Executive Charlestown, MA 06/26/2025

Beth Israel Lahey Health - Non ExecutiveBoston, MA, United States
Remote
Full-time

Job Type :RegularTime Type :Full timeWork Shift :Day (United States of America)FLSA Status :ExemptWhen you join the growing BILH team, you're not just taking a job, you're making a difference in pe...Show more

 • Promoted

Solution Architect (Remote)

Gardner Resources ConsultingBoston, MA, United States
Remote
Full-time

SOLUTION ARCHITECTRole Focus :Senior Solution Architect responsible for owning the technical architecture and Fusion Cloud solution design , ensuring alignment across data conversion, integration, ...Show more

 • Promoted

Party Host

Urban Air Adventure ParkBrockton, MA, United States
Full-time

PARTY HOST JOB SUMMARY Like working with kids? Do you love being the life of the party? Do you have fun being the #HypeWoman/Man? Do you think it's an art executing the perfect party? Look no furth...Show more

 • Promoted

Environmental Compliance Project Manager

Civil & Environmental Consultants, Inc.Raynham, Massachusetts, United States
Full-time

Environmental Compliance Project Manager.We are seeking an experienced Environmental Compliance Project Manager to join our Boston, MA offices.As a Project Manager in the Environmental Practice for...Show more

 • Promoted

Cloud Security Engineer

Cornerstone ResearchBoston, Massachusetts, United States
Full-time

HYBRID) ALL US OFFICES - CHI, SF, LA, BOS, NYC, D.The Cloud Security Engineer is responsible for deploying, managing, and securing cloud solutions across AWS, Azure, and Google Cloud platforms.This...Show more

 • Promoted

TSA Security Inspector - No Experience Required

TSA Career PlacementAbington, Massachusetts, US
Full-time

Want to make an application Make sure your CV is up to date, then read the following job specs carefully before applying.TSA is hiring Security Inspectors to evaluate airport security systems in Ab...Show more

 • Promoted • New!

M4-14Lead Security Analyst 141809

FHREast Boston, MA, US
Full-time
Quick Apply

Our direct client has a new opening for a Lead Security Analyst 141809.This job is 14 months to start, and the client is located in Augusta, ME.Please send your rate and resume.Regulatory complianc...Show more

Security IT Business Analyst

KyybaQuincy, MA, United States
Full-time

Founded in 1998 and headquartered in Farmington Hills, MI, Kyyba has a global presence delivering high-quality resources and top-notch recruiting services, enabling businesses to effectively respon...Show more

 • Promoted

CyberSecurity Enterpise Solutions Architect - REMOTE

ReversingLabsCambridge, MA, United States
Remote
Full-time

CyberSecurity Enterprise Solutions Architect - RemoteSeeking a highly motivated individual to help expand our organization.Working with file analysis and / or malware analysis, reverse engineering ...Show more

 • Promoted

Usher

Showcase CinemasHanover, MA, US
Part-time

FREE Movies Tickets, Competitive Hourly Rates, Flexible Schedules, Advancement Opportunities!.Come be a part of our amazing Concession or Usher team and work in the best environment!.Full Job Descr...Show more

 • Promoted

Surveillance Investigator

Allied Universal SecurityTaunton, MA, United States
Full-time

Company Overview: Advance Your Career in Insurance Claims with Allied Universal Compliance and Investigation Services.Allied Universal Compliance and Investigation Services is the premier destinati...Show more

 • Promoted

SaaS Security Engineer

Tier4 GroupBoston, Massachusetts, United States
Part-time
Quick Apply

Hybrid out of Springfield, MA or Boston, MA OR New York City.Hybrid (3 days onsite per week).We are seeking a SaaS Security Engineer to support and strengthen the security of a modern SaaS‑based en...Show more

Senior Forensic Architect

The Vertex Companies, LLCBraintree, MA, US
Full-time +1

The Vertex Companies, LLC (VERTEX) is a $180M global consulting firm that integrates strategic advisory, project management, and dispute resolution services for organizations facing complex challen...Show more