
Principal Cybersecurity Architect – Application & Data
Posted Jul 9

Posted Jul 9
This is a fully remote position, open to applicants in United States.
• Act as a senior technical leader responsible for securing enterprise applications, data platforms, and digital services across both cloud and hybrid environments.
• Collaborate with application teams, data engineering, and platform teams to ensure that security is integrated into application design, development, and data lifecycle management from the very beginning.
• Spearhead the development of security strategies for enterprise applications, APIs, SaaS platforms (including M365), and data platforms like Databricks.
• Ensure compliance with enterprise policies, regulatory requirements, and Zero Trust principles.
• Oversee security architecture reviews for enterprise applications, APIs, and SaaS integrations to guarantee alignment with security standards and policies.
• Identify risks, control gaps, and non-compliance patterns within application and integration architectures.
• Establish necessary application security controls throughout the SDLC.
• Provide architecture approvals, conditional approvals, and remediation guidance.
• Publish Risk Assessment Reports that detail threats and mitigating controls in accordance with GEV policies and standards.
• Define security architecture for data platforms (e.g., Databricks), data lakes, and analytics environments.
• Set up controls for data classification, encryption, access governance, and secure data sharing.
• Collaborate with data engineering teams to implement secure data pipelines and controls.
• Lead threat modeling and risk analysis for applications, APIs, and data platforms using industry frameworks (e.g., MITRE ATT&CK, OWASP).
• Define and enforce secure design patterns for applications and integrations.
• Ensure that security controls are integrated early in the architecture and design phases.
• Define secure integration patterns for M365, Microsoft Graph API, and SaaS platforms.
• Review application permissions, identity models, and data access controls for SaaS integrations.
• Ensure compliance with enterprise identity, access management, and governance standards.
• 10+ years of experience in cybersecurity with a strong emphasis on application and data security architecture.
• 3+ years in senior or principal-level architecture roles within large enterprise settings.
• Profound expertise in application security (AppSec), including secure SDLC, API security, and microservices security.
• Experience in securing data platforms (e.g., Databricks, data lakes, analytics platforms).
• Strong understanding of SaaS security (M365, APIs, Graph integrations).
• Familiarity with threat modeling frameworks (MITRE ATT&CK, OWASP).
• Knowledge of identity and access management (IAM), SSO, and federation.
• Demonstrated experience in defining enterprise security standards, patterns, and architectures.
• Excellent communication and stakeholder influence abilities.
• Medical, dental, vision, and prescription drug coverage.
• Access to Health Coach from GE Vernova, a 24/7 nurse-based resource.
• Access to the Employee Assistance Program, offering 24/7 confidential assessment, counseling, and referral services.
• GE Vernova Retirement Savings Plan.
• Tax-advantaged 401(k) savings opportunity with company matching contributions and company retirement contributions.
• Access to Fidelity resources and financial planning consultants.
• Tuition assistance.
• Adoption assistance.
• Paid parental leave.
• Disability benefits.
• Life insurance.
• 12 paid holidays.
• Flexible time off.
Lime
Threatscape
GFT Technologies
BeyondTrust
Get handpicked remote jobs straight to your inbox weekly.