Information Technology - Principal Technologist (Application Security Architect)
Job Description
We are seeking a Software Security Architect with a strong development and solution background to lead our internal security consulting team and design security solutions that enable business outcomes while maintaining robust security postures. This role reports to CISO.
Key Responsibilities
Application Security Reviews and Threat Modelling
• Lead a team of security architecture consultants, providing threat-driven architecture security reviews and threat modelling
• Architecture reviews include identity flows such as Oauth2, JWT, and AI deployments (MCP, RAG, Agent harness, Context engineering)
• Continually improve existing AI-enabled threat modelling and pilot new AI initiatives supporting Cybersecurity capabilities
Build Security In / Shift Left
• Drive strategic security architecture decisions across business units and technology domains
• Build security-by-design into development workflows
• Enhance CI/CD security tooling and automation and drive adoption and metrics reporting
• Reignite Security Champions initiative to improve shift left approach
Enterprise and Identity security architecture
• Design identity governance solutions for hybrid and multi-cloud environments
• Develop identity integration strategies for AI systems and automated decisioning
• Engage with platform and DevOps engineering teams to build secure infrastructure and technology foundations
• Build positive flywheel effect among stakeholders to enable security adoption and cultural transformation
Agentic and Gen AI Security
• Design and integrate security frameworks for Gen AI deployment, monitoring, and governance within AI risk framework
• Maintain security blueprints for (Gen) AI deployments, including MCP and AI guardrails
• Lead agentic AI security initiative with focus on authentication and authorization of AI agents
Requirements
• Bachelor’s degree in computer science, engineering, or related fields
• Strong software engineering background with more than 5 years of experience as a software engineer / developer.
• 3+ years of team or lateral leadership experience in technology architecture or security consulting teams
• Experienced in application security architecture/threat modelling.
• Led complex, multi-stakeholder security initiatives.
• Experience with AI/ML security challenges and solutions including Large Language Model (LLM), Model Context Protocols (MCP), Agentic AI
• Comprehensive knowledge of application security principles (OWASP, SANS, etc.)
• Experience with modern security tooling: SAST, DAST, SCA, container scanning, secrets management
• Relevant certifications (eg. SANS, AWS, Azure)
We thank all candidates for your interest in Singapore Airlines, and regret that only shortlisted candidates will be notified.