Principal Cybersecurity Architect
Security Architect – Application Security & DevSecOps
Location: Hyderabad, India | Experience: 12–15+ Years | Role Level: Principal Consultant / Security Architect
Role Summary
Seeking an experienced Security Architect to lead Application Security, Security Architecture, and DevSecOps initiatives across the enterprise. The role will drive secure-by-design practices, security governance, cloud and application security programs, and technology risk management while partnering with engineering and business leaders to strengthen security throughout the software development lifecycle.
Key Responsibilities
- Lead enterprise Application Security and DevSecOps programs.
- Define and implement security architecture standards and secure engineering practices.
- Conduct architecture reviews, threat modeling, and application risk assessments.
- Drive adoption of secure SDLC, CI/CD security, and shift-left security practices.
- Integrate security testing tools such as SAST, DAST, SCA, and IAST into development pipelines.
- Provide security guidance for cloud, API, container, and microservices architectures.
- Establish governance, metrics, and remediation programs for application security risks.
- Partner with engineering and leadership teams to develop security roadmaps and technology strategies.
- Support compliance and regulatory requirements including HIPAA, HITRUST, SOC 2, NIST, and ISO 27001.
- Mentor engineers and architects on secure development and security best practices.
Required Qualifications
- 12–15+ years of experience in Cybersecurity, Application Security, Security Architecture, or DevSecOps.
- Strong expertise in Secure SDLC, AppSec, Threat Modeling, Cloud Security, and DevSecOps.
- Experience leading enterprise-scale security transformation and secure engineering initiatives.
- Hands-on knowledge of CI/CD platforms, container security, API security, and cloud technologies.
- Strong understanding of technology risk management and security governance.
- Excellent stakeholder management, consulting, and communication skills.
- Ability to influence strategic decisions across business and technology functions.
Preferred Certifications
CISSP, CSSLP, CCSP, AWS Security Specialty, Azure Security Engineer Associate, and TOGAF preferred.
Key Competencies
Security Architecture & Design, Application Security Leadership, DevSecOps Transformation, Cloud Security, Risk Management & Governance, Strategic Thinking, Executive Communication, Stakeholder Management, and Consulting Mindset.