What are the responsibilities and job description for the Security Architect IV 4P/689 position at 4P Consulting Inc.?
Location: Atlanta, GA
Contract : 2 Years
Schedule: Hybrid – 4 days onsite, 1 day remote
Client- Southern Company Services.
Job Summary
We are seeking an experienced Security Architect IV with strong expertise in Application Security, DevSecOps, cloud security architecture, vulnerability management, and secure software development. This role will help design and implement enterprise application security programs, integrate security tools into CI/CD pipelines, and support secure development practices across modern application environments.
The ideal candidate will have hands-on experience with SAST, SCA, DAST, vulnerability management, application risk assessments, AI-enabled applications, APIs, microservices, and cloud security.
Key Responsibilities
-
Design and implement Application Security and DevSecOps programs.
-
Integrate security testing tools into CI/CD pipelines.
-
Support secure development practices and shift-left security.
-
Manage application vulnerabilities, remediation tracking, and security metrics.
-
Define and report KPIs such as MTTR, severity trends, and SLA compliance.
-
Build dashboards and executive-level security reports.
-
Perform security risk assessments and recommend mitigation strategies.
-
Secure APIs, microservices, cloud applications, and modern application platforms.
-
Evaluate security risks related to AI-enabled applications, LLM integrations, AI-driven APIs, and AI-generated code.
-
Partner with developers, architects, product teams, and leadership to improve application security.
Required Qualifications
-
10 years of information security or security architecture experience.
-
At least 5 years in application security, DevSecOps, or related roles.
-
Strong experience with SAST, SCA, DAST, CI/CD security integration, and vulnerability management.
-
Hands-on experience with tools such as GitHub Enterprise, Azure DevOps, Sonatype, Fortify, Snyk, JFrog, or similar platforms.
-
Experience with application and cloud security architecture, APIs, microservices, and secure coding practices.
-
Proficiency in one or more programming languages such as C#, Python, Java, or JavaScript.
-
Working knowledge of OWASP Top 10, NIST, ISO, and secure development standards.
-
Strong communication skills with the ability to translate technical risks into business impact.
-
Must pass Insider Threat Protection background checks.
Preferred Qualifications
-
Security certifications such as CISSP, CSSLP, CCSP, CISA, GIAC, OSCP, or similar.
-
Experience securing AI-enabled applications and AI-generated code.
-
Experience creating executive dashboards and security metrics.
Key Skills
Application Security, DevSecOps, SAST, SCA, DAST, CI/CD, Vulnerability Management, Cloud Security, API Security, Microservices, AI Security, Secure Coding, OWASP, NIST, ISO, Risk Assessment, GitHub Enterprise, Azure DevOps, Fortify, Snyk, Sonatype, JFrog.