Principal Systems Architect - Application Security
Job Description
Wells Fargo is seeking a Principal Systems Architect focused on Application Security to help set enterprise security strategy and architecture standards for secure software development. This hybrid role partners with senior technology and cybersecurity leaders to strengthen secure-by-design practices across modern application platforms, cloud-native environments, and AI-enabled capabilities.
The position centers on architecture leadership, security architecture reviews, and driving adoption of standards and technology approaches that improve security outcomes while supporting engineering productivity and operational efficiency.
Key Responsibilities
- Advise senior technology and cybersecurity leaders on application security strategy, architecture, and risk management.
- Define and drive enterprise security standards, including reference architectures, design patterns, and security requirements.
- Lead security architecture reviews, threat modeling, and risk assessments for strategic initiatives and emerging technologies.
- Champion secure-by-design practices across application development, APIs, cloud-native platforms, DevSecOps pipelines, and software supply chain ecosystems.
- Lead enterprise initiatives spanning secure software development, software supply chain security, developer security platforms, application security modernization, and secure AI adoption.
- Influence enterprise technology strategy, architectural direction, and investment decisions that advance secure software development and modernization.
- Evaluate technologies using architecture analysis, design reviews, prototyping, automation, and technical experimentation.
- Drive adoption of automation and AI-enabled capabilities to improve security outcomes, engineering productivity, and operational efficiency.
- Mentor architects and senior engineers to foster technical excellence and innovation.
Required Qualifications
- 7+ years of architecture experience, or equivalent demonstrated through work experience, training, military experience, or education.
- 7+ years of Architecture, Application Security, Software Security, or related cybersecurity experience.
- Deep expertise in application security architecture, secure software development, software supply chain security, threat modeling, and modern application architectures.
- Experience establishing enterprise security standards, architecture patterns, governance frameworks, or strategic initiatives adopted across multiple organizations.
- Experience leading enterprise-scale transformation initiatives involving application security, secure software development, software supply chain security, developer security platforms, or secure adoption of emerging technologies.
- Strong technical and engineering background to evaluate architectures, review technical designs, assess application code, and validate solutions through prototyping or proof-of-concept development.
- Experience securing modern application ecosystems, including APIs, cloud-native platforms, software delivery pipelines, open-source software, and distributed architectures.
- Proven ability to influence senior technology leaders, architects, engineering organizations, and cybersecurity stakeholders.
- Expertise in cloud-native security, API security, DevSecOps, and software supply chain security.
- Experience with modern application security capabilities, including SAST, DAST, SCA, secrets detection, infrastructure-as-code security, container security, SBOM management, and CI/CD security controls.
- Experience developing secure software, automation, security tooling, reusable frameworks, prototypes, or proof-of-concepts.
- Demonstrated engineering depth sufficient to engage credibly with software engineers and evaluate application code and development practices.
- Knowledge of secure AI development practices, AI-assisted development technologies, AI application architectures, and security approaches for AI-enabled systems.
- Ability to translate complex technical challenges into enterprise standards, architecture patterns, and strategic recommendations.
- Demonstrate proficiency in using AI-assisted development and analysis tools (e.g., GitHub Copilot and approved code-centric agents).
- Ability to leverage AI to accelerate system design, coding, testing, analysis, and troubleshooting, with strong technical judgment to validate and integrate AI-assisted outputs.
- Understanding of model limitations, security risks, and operational considerations.
- Ability to apply AI responsibly in development and production environments, ensuring AI usage aligns with security, compliance, privacy, and ethical standards.
Technologies
- AI-enabled systems
- APIs
- Cloud-native platforms
- DevSecOps and DevSecOps pipelines
- Software supply chain security
- Threat modeling
- Secure-by-design practices
- SAST, DAST, SCA
- Secrets detection
- Infrastructure-as-code security
- Container security
- SBOM management (including SBOM)
- CI/CD security controls (including CI/CD)
- GitHub Copilot
Location and Work Style
- Minneapolis, MN (hybrid)
Compensation
- Pay range: $159,000.00 - $279,000.00 annually
- Minneapolis, MN: $175,000 - $279,000
Benefits
- Health benefits
- 401(k) Plan
- Paid time off
- Disability benefits
- Life insurance, critical illness insurance, and accident insurance
- Parental leave
- Critical caregiving leave
- Discounts and savings
- Commuter benefits
- Tuition reimbursement
- Scholarships for dependent children
- Adoption reimbursement
Additional Job Details
- Hybrid work schedule
- Not eligible for Visa sponsorship
- Job posting may come down early due to volume of applicants
- Posting end date: 4 Oct 2026
- Third-Party recordings are prohibited unless authorized by Wells Fargo
- Drug free workplace: see Drug and Alcohol Policy
- Applicants with disabilities can request a medical accommodation during the application or interview process via Disability Inclusion at Wells Fargo
Similar Jobs
A