Talent.com
Arrive
Lead Application Security ArchitectArrive • England, United Kingdom
Lead Application Security Architect

Lead Application Security Architect

Arrive • England, United Kingdom
30+ days ago
Job type
  • Full-time
Job description
We’ve signed up for an ambitious journey. Join us! As Arrive, we guide customers and communities towards brighter futures and more livable cities, it isn’t a challenge just anyone could take on. Luckily, we have something to help us make it happen. Our people and our values. We Arrive Curious, Focused and Together. Just as our entire brand is inspired by the North Star, the shining light leading travelers to their destinations since time began, our values guide us. They help us be at our best. For our customers. For the cities and communities we serve. For ourselves. As a global team, we are transforming urban mobility. Let’s grow better together. Role Summary The Application Security Architect is a senior, influential role responsible for orchestrating and leading Arrive’s global application security strategy. As a core member of the Global Security Architecture & Engineering team, you will act as the central driver for how we securely design, build, and deploy software across the company. Your primary focus is to unite our efforts by creating, standardizing, and scaling our Secure Software Development Lifecycle (SSDLC) globally. This involves building upon the expertise and best practices that already exist within our teams and forging a powerful partnership with the Platform Security team in Engineering. You will lead by unifying—setting global standards that empower our developers and security engineers and ensuring the security of our next generation of products and platforms. Your Mission To elevate and unify our application security program at Arrive. Your mission is to be a force-multiplier for our engineering teams, fostering a secure development culture that is built on a foundation of clear global standards, strong partnerships, and modern security practices. You will ensure that security is a shared goal and a collective achievement. Key Responsibilities Application Security Strategy & Standards Champion and orchestrate the definition of Arrive’s global Secure Software Development Lifecycle (SSDLC), from threat modeling to secure release, in close partnership with key stakeholders across Engineering and IT. Develop and maintain a comprehensive set of global security standards, baselines, and guidelines for secure coding, vulnerability management, and secure architecture. Create and champion the strategy for our application security tooling, including SAST, DAST, IAST, and Software Composition Analysis (SCA). Define and manage the application security standards for Mergers & Acquisitions, establishing clear requirements and guiding the architectural integration of acquired technologies. Technical Partnership & Enablement Act as a lead security consultant and strategic partner for product and engineering teams, providing expert guidance on secure design patterns and vulnerability remediation. Forge a dynamic partnership with the Platform Security team: co-design the security tooling roadmap, consume their platforms where they meet global standards, and introduce new architectural patterns where needed. Lead security architecture reviews and threat modeling sessions for new applications and high-risk features. Act as a senior mentor and advocate for security engineers and champions across the organization, helping to grow our security talent. Emerging Threats & Innovation Stay at the forefront of emerging application security threats, with a particular focus on the risks associated with AI/ML systems. Collaborate with Data & AI teams to develop security principles and architectural patterns for securely integrating AI into our products. Drive innovation in our security practices, continuously seeking opportunities to automate and improve the effectiveness of our AppSec program. Lead the strategy for leveraging AI within the AppSec program, both to mature the SSDLC and to establish the secure-by-design principles required for our AI-first engineering landscape. What You Bring Deep AppSec Expertise: Extensive, hands-on experience in application security, with mastery of the SSDLC, secure coding principles, and common vulnerability classes (OWASP Top 10, etc.). A Builder of Standards: Proven experience creating, documenting, and rolling out security standards, patterns, and best practices in a complex engineering environment. A Unifier and Partner: Exceptional ability to foster collaboration and influence engineering teams without direct authority. You build bridges, operate "together," and break down silos. Strategic Thinker: Ability to see the big picture, define a long-term strategy for application security, and translate it into an actionable plan. Modern Technologist: Strong understanding of modern software development practices, including cloud-native architectures, CI/CD pipelines, containerization, and Infrastructure as Code. Qualifications 10+ years of experience in technology, with at least 7 years in a dedicated application security or product security role. Demonstrated experience designing and implementing a Secure SDLC in a cloud-native environment (GCP, AWS). Hands-on experience with the architecture and strategy of AppSec tools (e.g., Snyk, Checkmarx, Veracode,). Experience with securing microservices architectures, APIs, and modern web/mobile applications. Experience with securing AI/ML systems A Bachelor’s degree in a relevant field or equivalent professional experience. Why Join Arrive Be the global leader and define the future of application security at a mission-driven, transformative company. Operate as a senior expert within a strategic architecture team, with a broad mandate to influence security across all of Arrive’s products. Work at the cutting edge of securing technology, including multi-cloud and AI-driven mobility solutions.
Create a job alert for this search

Lead Application Security Architect • England, United Kingdom

Similar jobs

Senior Security Architect - Hybrid, Secure-by-Design Leader

Leonardo UK LtdEngland, GB
Full-time

A leading defense and security firm in the United Kingdom is seeking a Senior Cyber Security Architect to shape secure architectures for complex environments.You will build relationships with clien... Show more

 • Promoted

Security Architect

Anson McCadeEngland, GB
Full-time

Up to £75,000 (depending on experience) + bonus.Due to the nature of this client's work, candidates must be eligible for UK DV Clearance.As a Security Architect, you will play a key role in shaping... Show more

 • Promoted

Cyber Security Architect & Advisory Expert

Sanderson Government & DefenceEngland, GB
Full-time

Sanderson Government & Defence is seeking a cybersecurity professional to identify and deploy secure solutions across industries, collaborating with clients and internal stakeholders to influence t... Show more

 • Promoted

Enterprise Cyber Security Architect

IBEX RECRUITMENT LTDNorth West England, United Kingdom
Permanent

Were working with a large organisation undergoing significant cyber and digital transformation to hire a Cyber Security Architect focused on Enterprise Architecture.This role sits within a dedicate... Show more

 • Promoted

Azure Entra ID Architect — Extranet & B2B Security Lead

RP InternationalEngland, GB
Full-time

A leading global technology consultancy is seeking an Azure Entra ID Architect for a major UK financial project.This position involves leading the design and configuration of external user access s... Show more

 • Promoted

Managing Security Architect

Sopra SteriaEngland, GB
Permanent

Do you want to help shape the future of our SOC? This is your chance to take ownership of the end-to-end SOC architecture, guiding how our platforms, detections and controls evolve to meet client, ... Show more

 • Promoted

Enterprise IT Solutions Architect - Cloud & Security

Genuit GroupEngland, GB
Full-time

Genuit Group, a FTSE 250 business focused on sustainable built environments, seeks a high-calibre IT Solution Architect to design and deliver enterprise-level technology solutions that improve effi... Show more

 • Promoted

Security Assurance Lead — ISO 27001, NIST, SOC2

TalentHawkEngland, GB
Full-time

A leading company in energy delivery is seeking an Information Security Assurance Manager to ensure security governance and control effectiveness across complex environments.You will manage securit... Show more

 • Promoted

Lead Security Architect: Drive Secure Transformation

Post Office LtdEngland, GB
Full-time

A community-focused organization in the UK seeks a Lead Security Architect to design and review security architectures.This role involves collaborating across functional areas to develop a cohesive... Show more

 • Promoted

Strategic Cyber Security Architect - Lead Secure Systems

BAE SystemsEngland, GB
Full-time

BAE Systems is seeking a Cyber Security expert responsible for providing advice and implementing strategies to support business goals.This role requires expertise in cybersecurity frameworks like N... Show more

 • Promoted

Principal Network & Security Architect (IaC & Cloud)

Places for PeopleEngland, GB
Full-time

Places for People is seeking a Principal Network and Security Engineer to join their Infrastructure Engineering team.This senior role involves overseeing network and security capabilities, ensuring... Show more

 • Promoted

Secure SDLC Lead – Application & Cloud Security (Contract)

Fruition GroupEngland, GB
Full-time

A leading technology firm in the United Kingdom is looking for a Mid-Senior level security expert to strengthen their Secure Software Development Lifecycle (SDLC) within a complex environment.The r... Show more

 • Promoted

Strategic IT Security Architect — Hybrid Contract

Public Sector Resourcing, managed by AMSEngland, GB
Temporary

The Nuclear Decommissioning Authority is seeking a Security Solutions Architect for a 9‑month contract (Inside IR35) on a hybrid basis across NDA offices in West Cumbria, Warrington, Harwell or Lon... Show more

 • Promoted

Remote Enterprise Security Architect | SC Cleared

BrightBox GroupEngland, GB
Remote
Full-time

BrightBox Group is seeking an experienced Enterprise Security Architect for a 5-month remote contract in the United Kingdom.This role requires Active SC clearance and deep expertise across security... Show more

 • Promoted

Senior Cloud DevOps & Security Architect

OfcomEngland, GB
Full-time

A leading communications regulator in the UK seeks a Senior Technology Recruitment Partner to enhance DevOps practices and integrate secure solutions.The role focuses on addressing cybersecurity ch... Show more

 • Promoted

Lead Security Systems Engineer: CCTV & Access Control

SSR C&TEngland, GB
Full-time

SSR C&T is seeking a Lead Security Systems Engineer to manage installation and commissioning of advanced security systems across commercial and high-end residential sites in Bedfordshire/Berkshire/... Show more

 • Promoted

Security Assurance Architect

Hamilton Barnes Associates LimitedEngland, GB
Full-time

A cyber security consultancy in the UK is looking for a professional to join their team in shaping cyber security strategy at the highest level.This position involves delivering security assurance ... Show more

 • Promoted

Protective Security Engineer - Lead Secure Infrastructure

The Manufacturing Technology CentreEngland, GB
Full-time

The Manufacturing Technology Centre in England is seeking a Protective Security Engineer to join their Secure Infrastructure Team.This role requires a solid engineering background and involves desi... Show more