Logo for Molina Healthcare

Architect, Information Security - DevSecOps/Application Security - Remote

Role overview

Qualifications

  • 3+ years experience in application security, software security, or DevSecOps
  • Knowledge of secure SDLC practices, threat modeling, and secure design principles
  • Experience with application security testing tools (SAST, DAST, SCA)
  • Understanding of OWASP Top 10, API security risks, and secure coding practices

Responsibilities

  • Partner with application teams to evaluate application security risks across the SDLC
  • Conduct or support threat modeling, secure design reviews, and architecture reviews
  • Define and promote secure architectural patterns, guardrails, and reusable controls
  • Provide guidance on integration and usage of AppSec tools within CI/CD pipelines

About the company

Molina Healthcare logo

Molina Healthcare

Health Insurance (Payers)

Molina Healthcare is a FORTUNE 500 company that is focused exclusively on government-sponsored health care programs for families and individuals who qualify for government sponsored health care. Molina Healthcare contracts with state governments and serves as a health plan providing a wide range of quality health care services to families and individuals. Molina Healthcare offers health plans in Arizona, California, Florida, Idaho, Illinois, Kentucky, Massachusetts, Michigan, Mississippi, Nevada, New Mexico, New York, Ohio, South Carolina, Texas, Utah, Virginia, Washington and Wisconsin. Molina also offers a Medicare product and has been selected in several states to participate in duals demonstration projects to manage the care for those eligible for both Medicaid and Medicare.

Company details

Company typeXLarge
IndustryHealth Insurance (Payers)
Company size10001

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

JOB DESCRIPTION 

Provides application security architecture and governance support within the Application Security Center of Excellence (AppSec CoE). Responsible for identifying, assessing, and managing application and software supply chain risks, and defining secure-by-design patterns that enable development teams to deliver secure applications at scale.
 

Partners with development teams, solution architects, DevOps teams, and security stakeholders to embed security controls across the Software Development Lifecycle (SDLC) and support a shift-left DevSecOps model

Essential Job Duties 
 

  • Partners with application teams to evaluate application security risks across the SDLC (design, build, test, deploy)
  • Conducts or supports threat modeling, secure design reviews, and architecture reviews for applications, APIs, and cloud-native systems
  • Defines and promotes secure architectural patterns, guardrails, and reusable controls aligned with AppSec standards
  • Provides guidance on integration and usage of AppSec tools (e.g., SAST, DAST, SCA) within CI/CD pipelines
  • Supports enforcement of security requirements, standards, and control gating within SDLC processes
  • Identifies application security gaps and works with teams to define actionable risk mitigation strategies
  • Assists in tracking vulnerabilities, exceptions, and risk acceptances (RARE/SRA) in alignment with governance processes
  • Collaborates with Security Champions and development teams to improve application security maturity and adoption
  • Contributes to AppSec awareness, training, and enablement initiatives
  • Acts as a subject matter expert for application security and DevSecOps practices

     

Job Requirements 

  • 3+ years experience in application security, software security, or DevSecOps
  • Knowledge of secure SDLC practices, threat modeling, and secure design principles
  • Experience with application security testing tools (SAST, DAST, SCA)
  • Understanding of OWASP Top 10, API security risks, and secure coding practices
  • Familiarity with CI/CD pipelines and DevOps tooling
  • Ability to translate technical risks into business context

Preferred Qualifications

  • CISSP, CISM, CCSP, or equivalent
  • Experience implementing OWASP SAMM or NIST SSDF-aligned programs
  • Experience leading AppSec or DevSecOps transformation initiatives



    To all current Molina employees. If you are interested in applying for this position, please apply through the Internal Job Board. 

    Molina Healthcare offers a competitive benefits and compensation package. Molina Healthcare is an Equal Opportunity Employer (EOE) M/F/D/V

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Security Architect Related jobs

Other jobs at Molina Healthcare

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.