P

Principal Cybersecurity Architect

Providence Hyderabad, Telangana, India

Hospitals and Health Care · 1,001-5,000 employees

Jul 23
security Principal (10+ yrs) Full-time India
Log in to apply, save this posting, or score it against your profile with AI.

About the role

Lead enterprise-wide application security and DevSecOps programs while defining security architecture standards. Partner with engineering and business leaders to drive secure-by-design practices and manage technology risk throughout the software development lifecycle.

What they look for

Application Security DevSecOps Security Architecture Cloud Security Threat Modeling Secure SDLC Risk Management Governance CI/CD Security API Security Container Security SAST DAST SCA IAST Stakeholder Management

Requirements

Requires 12–15+ years of experience in cybersecurity, application security, or DevSecOps with strong expertise in secure engineering and cloud security. Candidates should possess excellent stakeholder management skills and the ability to influence strategic decisions across business and technology functions.

Full description

Security Architect – Application Security & DevSecOps

Location: Hyderabad, India | Experience: 12–15+ Years | Role Level: Principal Consultant / Security Architect

Role Summary

Seeking an experienced Security Architect to lead Application Security, Security Architecture, and DevSecOps initiatives across the enterprise. The role will drive secure-by-design practices, security governance, cloud and application security programs, and technology risk management while partnering with engineering and business leaders to strengthen security throughout the software development lifecycle.

Key Responsibilities

  • Lead enterprise Application Security and DevSecOps programs.
  • Define and implement security architecture standards and secure engineering practices.
  • Conduct architecture reviews, threat modeling, and application risk assessments.
  • Drive adoption of secure SDLC, CI/CD security, and shift-left security practices.
  • Integrate security testing tools such as SAST, DAST, SCA, and IAST into development pipelines.
  • Provide security guidance for cloud, API, container, and microservices architectures.
  • Establish governance, metrics, and remediation programs for application security risks.
  • Partner with engineering and leadership teams to develop security roadmaps and technology strategies.
  • Support compliance and regulatory requirements including HIPAA, HITRUST, SOC 2, NIST, and ISO 27001.
  • Mentor engineers and architects on secure development and security best practices.

Required Qualifications

  • 12–15+ years of experience in Cybersecurity, Application Security, Security Architecture, or DevSecOps.
  • Strong expertise in Secure SDLC, AppSec, Threat Modeling, Cloud Security, and DevSecOps.
  • Experience leading enterprise-scale security transformation and secure engineering initiatives.
  • Hands-on knowledge of CI/CD platforms, container security, API security, and cloud technologies.
  • Strong understanding of technology risk management and security governance.
  • Excellent stakeholder management, consulting, and communication skills.
  • Ability to influence strategic decisions across business and technology functions.

Preferred Certifications

CISSP, CSSLP, CCSP, AWS Security Specialty, Azure Security Engineer Associate, and TOGAF preferred.

Key Competencies

Security Architecture & Design, Application Security Leadership, DevSecOps Transformation, Cloud Security, Risk Management & Governance, Strategic Thinking, Executive Communication, Stakeholder Management, and Consulting Mindset.

Similar roles