Epicareer Might not Working Properly
Learn More

API Senior Architect - Remote

  • Full Time, remote
  • Computer Enterprises, Inc.
  • Hybrid, United States of America
Salary undisclosed

Apply on


Original
Simplified

Job Title: API Security Architect
W2 only. No 3rd party applicants can be considered.

Location: Fully Remote (East Coast Preferred)

We are seeking an experienced API Security Architect to join our dynamic team, with a particular focus on application security in a regulated industry environment. If you're passionate about API security and enjoy collaborating with diverse stakeholders to design and implement secure solutions, this role is for you.

Key Responsibilities:

  • Participate in team and weekly Security Steering Group (SSG) meetings to discuss project roadmaps, build security programs, and develop key dashboards.
  • Collaborate with cross-functional teams to define a comprehensive API security strategy that aligns with business goals.
  • Lead the design of secure API architecture, leveraging secure design patterns, encryption methods, and strong authentication/authorization frameworks.
  • Develop an API security framework to address threat modeling, vulnerability assessments, and penetration testing procedures.
  • Configure and manage API gateways to enforce security policies, including rate limiting, access control, and other critical security measures.
  • Design and implement robust authentication/authorization mechanisms (e.g., OAuth, OpenID Connect, API key management) to ensure secure access based on roles and permissions.
  • Create actionable insights into API security, including detecting suspicious activity, preventing attacks, and mitigating API misuse.
  • Provide ongoing education to developers on API security best practices to ensure secure coding and deployment processes.
  • Communicate potential risks and security concerns effectively to both technical and non-technical stakeholders, including developers, product managers, and business leaders.

Qualifications:

  • Experience in API security within heavily regulated industries such as finance, healthcare, or government is highly preferred.
  • Strong background in security protocols, API threat modeling, and vulnerability assessments.
  • Hands-on experience with API gateway configuration, security automation, and industry-standard authorization methods (OAuth, OpenID Connect, etc.).
  • Excellent communication skills, capable of translating technical risks and solutions into business terms.
  • Ability to work independently in a fully remote environment, collaborating with teams across various time zones.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
Report this job