Lead Security Architect (Application Security)
Job Description
Wells Fargo is seeking a Lead Security Architect (Application Security) to help shape secure-by-design solutions at enterprise scale. This hybrid role focuses on security architecture leadership across application development, APIs, DevSecOps, and emerging technologies, with an emphasis on threat modeling, architecture reviews, security assessments, and practical guidance on security controls and standards.
Why this role at Wells Fargo
- Hybrid work schedule based in Irving, TX
- Competitive base pay with a range of USD 119,000 - 206,000 per year
- Impact across the enterprise through architecture patterns, standards, and security requirements that influence strategic technology decisions
- Modern security practices spanning secure software development lifecycle (SSDLC), application security testing, and software supply chain security
- AI-enabled development workflows using AI-assisted development and analysis tools, with responsible integration and validation
Responsibilities
- Lead the implementation of complex projects and initiatives with companywide scope
- Drive secure-by-design practices across applications, APIs, cloud-native platforms, and AI-enabled solutions
- Create architectural artifacts such as standards, reference architectures, design patterns, and security requirements
- Participate in future technology architecture definition and Application Security strategy
- Identify medium to high architectural impact projects and provide security architecture guidance across the project lifecycle
- Conduct complex technology, security, and system assessments for architecture solutions
- Perform threat modeling, architecture reviews, and risk assessments for critical applications and platforms
- Provide guidance on DevSecOps, software supply chain security, CI/CD security, and application security testing
- Make decisions in the development and maintenance of security architectures and controls
- Understand compliance and risk management requirements for supported areas
- Ensure applications adhere to Wells Fargo standards, policies, methodologies, and industry best practices
- Collaborate with peers, colleagues, and managers to resolve issues and achieve goals
- Demonstrate proficiency using AI-assisted development and analysis tools (including GitHub Copilot and approved code-centric agents)
- Use AI to accelerate system design, coding, testing, analysis, and troubleshooting, while validating and integrating AI outputs with strong technical judgment
- Account for model limitations, security risks, and operational considerations, and ensure AI usage aligns with security, compliance, privacy, and ethical standards
- Serve as a trusted security architecture advisor for application and platform teams
- Partner with engineering, architecture, risk, and cybersecurity teams to drive secure technology adoption
- Deliver architecture reviews, threat models, and security recommendations for strategic initiatives
- Support and enhance enterprise Application Security standards and secure-by-design practices
- Mentor architects and engineers on application security and emerging technology risks
- Operate effectively in a highly regulated and risk-driven environment, influencing security strategy and enterprise technology decisions
Requirements
- 5+ years of Architecture experience, or equivalent demonstrated through one or a combination of: work experience, training, military experience, education
- 5+ years of Information Security, Security Architecture, Application Security, or Software Security experience
- Experience performing threat modeling, architecture reviews, and security assessments
- Knowledge of secure software development lifecycle (SSDLC) and secure coding practices
- Experience securing cloud-based applications, APIs, and modern application architectures
- Strong knowledge of application security principles, OWASP Top 10, API Security, and common attack vectors
- Experience with SAST, DAST, SCA, IaC scanning, and software supply chain security controls
- Experience with cloud-native architectures, containers, Kubernetes, microservices, and APIs
- Knowledge of Azure, AWS, or Google Cloud security architectures
- Experience developing security standards, patterns, and reference architectures
- Familiarity with AI/GenAI security risks and mitigation strategies
- Strong verbal, written, and stakeholder management skills
Technologies
- GitHub Copilot
- AI-assisted development and analysis tools
- OWASP Top 10
- SAST, DAST, SCA, IaC scanning
- Cloud-native architectures, containers, Kubernetes, microservices, APIs
- Azure, AWS, Google Cloud
- CI/CD
Benefits
- Health benefits
- 401(k) Plan
- Paid time off
- Disability benefits
- Life insurance, critical illness insurance, and accident insurance
- Parental leave
- Critical caregiving leave
- Discounts and savings
- Commuter benefits
- Tuition reimbursement
- Scholarships for dependent children
- Adoption reimbursement
Job expectations
- Hybrid work schedule
- This position is not eligible for Visa sponsorship
Posting end date: 24 Sep 2026. Job posting may come down early due to volume of applicants.
Salary information
- $119,000 - $187,000 - Charlotte, NC
- $119,000 - $187,000 - Irving, TX
- $119,000 - $187,000 - Columbus, OH
- $131,000 - $206,000 - Minneapolis, MN
Pay range: Reflected is the base pay range offered for this position. Pay may vary depending on factors including demonstrated examples of prior performance, skills, experience, or work location. Employees may also be eligible for incentive opportunities.
Additional information
- Applicants with disabilities: To request a medical accommodation during the application or interview process, visit Disability Inclusion at Wells Fargo.
- Drug and alcohol policy: Wells Fargo maintains a drug free workplace. Please see the Drug and Alcohol Policy to learn more.
- Third-party recordings are prohibited unless authorized by Wells Fargo.
- Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.