This role is for a member of the CISO of America’s team and will provide collaboration and support within the team to ensure that applications have the appropriate level of controls defined in response to the established inherent risk profile CIA. This role is pivotal in defining security controls before application design begins, ensuring applications are secure by control design and compliant with regulatory mandates such as FFIEC, SOX, PCI-DSS, NIST CSF, CRI, and industry best practices (OWASP). The ideal candidate will proactively challenge architectural assumptions, interpret existing solution designs, and ensure that holistic, risk-informed controls are embedded across the application lifecycle. This role bridges the gap between information security risk governance and security architecture.