Security Architect, Product Security

Humana

Confirmed live yesterday High trust
Remote

Quick summary

Work type
Remote
Location
Atlanta, GABoston, MACharlotte, NCChicago, ILDallas, TXWashington, DCFt. Lauderdale, FLLouisville, KYNashville, TNNew York, NYTampa, FL
Employment
Full-time
Posted
18 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

How this pay compares to similar roles

Similar $194k
$143k $252k
below market most similar roles pay here above market

This listing doesn't post a salary. Most similar roles pay $161,250–$226,300.

Based on 240 similar postings.

Employer

About Humana

Humana Inc. is a leading American for-profit health insurance company based in Louisville, Kentucky, specializing in Medicare Advantage plans.

Humana currently has 51 open roles on FindRole.

Listed pay typically runs $129,300–$177,800 across 30 roles with salary data.

Most-posted roles

View all roles at Humana

At a glance

TL;DR · Security Architect, Product Security

JOB TITLE: Security Architect, Product Security The Security Architect II supports the Product Security program by partnering with engineering, architecture, and security teams to identify and reduce security risks across enterprise applications. This role serves as a security subject matter expert, performing vulnerability triage, analyzing complex findings, and providing risk-based remediation guidance to technical teams. Day-to-day responsibilities include supporting secure software development lifecycle practices, adjudicating security tool results, and assisting with the development of runbooks and operational processes. The position requires practical experience with Static Application Security Testing, Software Composition Analysis, and secrets scanning. Candidates must demonstrate the ability to communicate actionable guidance to software engineers while addressing application security risks within a large enterprise environment to improve overall security outcomes and posture.

What you'll do

  • Analyze, investigate, and adjudicate complex vulnerability findings and security tool results.
  • Provide practical, risk-based remediation guidance to engineering teams.
  • Support secure software development lifecycle (SDLC) practices across enterprise technology initiatives.
  • Manage static application security testing (SAST), software composition analysis (SCA), and secrets detection.
  • Review security findings with development teams to improve application security posture.
  • Participate in security exception and risk acceptance workflows.
  • Develop and improve runbooks, knowledge articles, and operational processes.

What we're looking for

  • 2-5 years of relevant cybersecurity, application security, information security, product security, or security architecture experience.
  • Practical experience analyzing vulnerabilities and evaluating security risk.
  • Ability to provide clear, actionable remediation guidance to technical teams.
  • Working knowledge of SAST, SCA, secrets scanning, and secure SDLC practices.
  • Understanding of common application security and software security concepts.
  • Strong critical thinking, problem-solving, and analytical skills.
  • Demonstrated collaboration and communication skills with engineers, architects, and security professionals.
  • Bachelor's degree preferred; equivalent combination of education and relevant experience will be considered (preferred).

More like this

Similar roles

Senior Product Security Architect

Early Warning Services

Scottsdale, AZ +3 73 days ago
Application Security Security Architecture Threat Modeling CI/CD Cloud Security Microservices SAST Veracode Fortify AWS GCP Azure Kubernetes VMware OpenStack ISO PCI OWASP NIST 800-53 Linux Windows Relational Databases Cryptography Agile SDLC BSIMM Penetration Testing DevOps
10+ yrs exp Hybrid

Staff Product Security Architect

GitLab

Remote (Canada) +3 16 days ago $168,000–$238,000
Application Security Software Supply Chain Security Authentication Authorization Multi-tenant Isolation Distributed Systems Prototyping Security Architecture Risk Management Artifact Provenance
Remote

Senior Application Security Architect

State Street

Quincy, MA +4 94 days ago $120,000–$202,500
Application Security AI Security Kubernetes DevSecOps CI/CD Infrastructure as Code SAST DAST IAST Software Composition Analysis Threat Modeling Zero Trust API Security OWASP Top 10 RAG Cloud-Native Containers SaaS SSDLC
10+ yrs exp Hybrid

Application Security Engineer

Booz Allen Hamilton

Annapolis Junction, MD +1 21 days ago $86,900–$198,000
Secure SDLC DevSecOps SAST DAST SCA IaC Scanning Kubernetes Containers Microservices API Security Cryptography SBOM Threat Modeling OWASP SAMM BSIMM NIST SSDF NIST CSF ISO 27001 MITRE ATT&CK Vulnerability Management
5+ yrs exp

Product Security Architect

JPMorgan Chase

Plano, TX +2 17 days ago
System Design Java Python C# Cloud-native Architecture AWS Azure Software Development Life Cycle Artificial Intelligence Machine Learning Mobile Technologies
5+ yrs exp

Principal Product Security Architect

Danaher Corporation

Irvine, CA 9 days ago $170,000–$210,000
Cybersecurity Secure Software Design DevSecOps CI/CD Threat Modeling Vulnerability Assessment Cloud-Native Architecture Embedded Systems NIST ISO 27001 OWASP Risk Assessment Software Development Lifecycle Application Security
10+ yrs exp