Skill
Threat Modeling
Cybersecurity
Threat modeling is a structured process used in software and system design to identify potential security threats, vulnerabilities, and attack vectors before or during development. Security architects and developers use frameworks like STRIDE or PASTA to systematically analyze how a system could be attacked and design appropriate defenses. It is a proactive practice intended to reduce security risks early in the development lifecycle.
Threat Modeling in the job market
Last checked September 12, 2026
- Open roles
- 41
- Employers
- 31
- Median pay
- $229,000
- Disclose pay
- 85%
on Career App right now
hiring for it
from 35 roles
of these roles
Open roles requiring Threat Modeling (41)
Senior Security Engineer
Cohere
Full-time · New York, NY · CA$260,000 – CA$310,000 · Remote
This role leads security operations and application security practices across Cohere's AI products and infrastructure, integrating security throughout the development lifecycle. It suits experienced security engineers who can bridge technical security concerns with business priorities while collaborating across product and engineering teams.
Listed on Cohere’s careers site · Apply there ↗
AI Security Consulting Director
CNA Financial
Chicago, IL · $97,000 – $189,000
This role leads technical security reviews of AI and machine learning systems across an insurance enterprise, assessing architecture, threat modeling, and cloud deployments against security standards. It suits experienced security architects who want hands-on involvement in emerging AI risks and can guide engineering teams on secure AI practices.
Listed on CNA Financial’s careers site · Apply there ↗
Sr. Product Security Engineer
Medtronic
Full-time · $132,000 – $198,000
This is a product security engineer role focused on securing medical devices and embedded systems at a cardiac ablation device company. It suits someone with 4+ years of embedded or medical device security experience who can partner with engineering teams to integrate cybersecurity controls throughout the development lifecycle.
Listed on Medtronic’s careers site · Apply there ↗
API Security Engineer
Moderna
$145,900 – $234,200
This role involves securing APIs across Moderna's enterprise applications and AI platforms by designing controls, assessing risks, and collaborating with engineering teams to improve authentication, authorization, and data protection. It suits cybersecurity professionals with hands-on API security experience who can bridge technical implementation with strategic identity and access governance as the company scales AI-enabled systems.
Listed on Moderna’s careers site · Apply there ↗
Sr. Manager, Threat Engineering
Tory Burch
Jersey City, NJ · $165,000 – $200,000
This is a technical leadership role overseeing threat detection, identity security, and adversarial validation for a global luxury brand's security operations. It suits someone with deep expertise in cloud and identity threats who can bridge technical threat engineering with executive risk communication and incident readiness.
Listed on Tory Burch’s careers site · Apply there ↗
Intellectual Property Security Engineer
NVIDIA
Full-time · $184,000 – $356,500
NVIDIA is seeking a security engineer to protect hardware intellectual property by establishing secure workflows, investigating threats, and building policies across engineering teams. This role suits someone comfortable balancing hands-on technical work with cross-functional collaboration and organizational leadership in a fast-paced environment.
Listed on NVIDIA’s careers site · Apply there ↗
Principle, Vulnerability Analyst
Mastercard
Full-time · O Fallon, MO · $152,000 – $258,000
A Principal-level security analyst role focused on validating AI-generated vulnerability findings and driving their remediation across Mastercard's software environment. This position suits experienced security professionals who can bridge AI model outputs and engineering teams, making technical risk decisions and improving security processes at scale.
Listed on Mastercard’s careers site · Apply there ↗
Senior Vulnerability Management Engineer
LSEG
This role combines penetration testing expertise with remediation leadership, translating security findings into actionable fixes across enterprise teams. It suits experienced security engineers who can both understand complex vulnerabilities and drive organizational change at scale.
Listed on LSEG’s careers site · Apply there ↗
Sr. Security Architect
Intel
Full-time · $190,610 – $361,480
This role leads security architecture for Intel's client and data center processors, with a focus on using AI tools to discover firmware vulnerabilities and cross-layer attack paths. It suits experienced security architects who combine deep platform security knowledge with hands-on AI analysis capabilities and want to shape how AI transforms security discovery at scale.
Listed on Intel’s careers site · Apply there ↗
Strategic Advisory Services, AI Security Consultant (Remote)
CrowdStrike
Full-time · Remote · $95,000 – $140,000
This role supports CrowdStrike's customers in securing AI systems and applying AI to strengthen their security operations through technical analysis, threat modeling, and strategic recommendations. You'll work with organizations to mature their security posture and develop automation solutions, requiring a mix of cybersecurity expertise and the ability to grow your AI security knowledge.
Listed on CrowdStrike’s careers site · Apply there ↗
Asked for alongside Threat Modeling
Measured from the 41 open roles that name Threat Modeling — not from a curated list.
- Python16 roles39.0%
- Amazon Web Services (AWS)13 roles31.7%
- Cloud Security10 roles24.4%
- Go9 roles22.0%
- Kubernetes9 roles22.0%
- Microsoft Azure7 roles17.1%
- Identity And Access Management6 roles14.6%
- Rust6 roles14.6%
What employers state they pay
Median
$229,000
Middle half
$185,000 – $285,000
From 35 of 41 open roles — the 85% that publish a range, annualized to USD. Only some employers state pay, and the ones that do skew to California and New York, where the law requires it.
Who employers are hiring
- Mid11%
- Senior73%
- Lead / Staff / Principal14%
- Management3%
From 37 roles whose posting states a level.
Roles that use Threat Modeling
Employers hiring for Threat Modeling
31 in total, most open roles first.
- MPMenlo Ventures Portfolio5 roles
- AAstranis2 roles
- CCrowdStrike2 roles
- Expedia Group2 roles
- Moderna2 roles
- SSuno2 roles
Related skills
Curated neighbors in the taxonomy, whether or not employers ask for them together.