Security Architect

3 weeks ago


Hyderabad, Telangana, India Alignity Solutions Full time
Job Description
Do you love a career where you Experience, Grow & Contribute at the same time, while earning at least 10% above the market? If so, we are excited to have bumped onto you.

Learn how we are redefining the meaning of work, and be a part of the team raved by Clients, Job-seekers and Employees.
  • Jobseeker Video Testimonials 
  • Employee Glassdoor Reviews
If you are a Security Architect looking for excitement, challenge and stability in your work, then you would be glad to come across this page.

We are an IT Solutions Integrator/Consulting Firm helping our clients hire the right professional for an exciting long term project. Here are a few details.

Check if you are up for maximizing your earning/growth potential, leveraging our Disruptive Talent Solution.

Requirements
Role:Security Architect
Location: Hyderabad, Pune,Benguluru, Delhi,Mumbai,Kolkata,Chennai
Exp: 8+ Years 

Requirements

We are seeking a highly skilled Security Architect to assess, design, and implement security controls across various systems, applications, and cloud environments. The ideal candidate will have extensive experience in security architecture, risk management, cloud security, encryption, identity and access management (IAM), and API security. This role requires strong communication skills to convey security risks and solutions to both technical and non-technical stakeholders.

Key Responsibilities:

Security Architecture Review:
  • Assess system designs to identify deficiencies in security controls.

  • Evaluate risks related to confidentiality, integrity, and availability (CIA).

  • Propose actionable recommendations and design alternatives to address identified risks.

  • Clearly communicate risks, solutions, and design choices to technical and non-technical stakeholders.

Risk Management:
  • Perform structured risk assessments using methodologies such as OWASP Risk Rating or other qualitative frameworks.

  • Assess risks associated with systems, applications, and third-party services, qualifying them in terms of likelihood and impact.

  • Develop tactical and strategic recommendations to remediate identified risks.

  • Collaborate with stakeholders to prioritize risk mitigation efforts based on business objectives and technical feasibility.

  • Provide clear and concise reports on risk findings and remediation strategies to leadership and cross-functional teams.

Cloud Security:
  • Strong expertise in AWS services: IAM, KMS, RDS, S3, EC2, GuardDuty, CloudTrail, Security Hub, VPC, ECS, and EKS.

  • Familiarity with AWS Well-Architected Framework, CIS Benchmarks, and best practices for securing cloud environments.

  • Experience with M365 and Azure AD/Entra ID, including conditional access policies, Intune, and hybrid identity configurations.

  • Proficiency in encryption at rest and in transit, identity-based access controls, and monitoring for cloud services.

Networking:
  • In-depth knowledge of cloud networking architectures, including Direct Connect, VPC peering, hub-and-spoke design, mesh networking, and VPNs.

  • Expertise in network traffic controls: IDS/IPS, WAFs, TLS termination strategies (offload, passthrough, bridging), and load balancing.

  • Proficiency in certificate management, certificate-based authentication, and mutual TLS.

Encryption and Key Management:
  • Expertise in enterprise encryption best practices and secure key management.

  • Strong experience with AWS KMS, AWS CloudHSM, and other encryption solutions.

  • Proficiency with secrets management tools like HashiCorp Vault and CyberArk to secure sensitive credentials and encryption keys.

Identity and Access Management (IAM):
  • Strong understanding of Microsoft Active Directory, Azure AD/Entra ID, AWS IAM roles, Okta, PingFederate, Radius, and TACACS.

  • Proficiency in authentication mechanisms: SAML, OAuth, OIDC, FIDO, and MFA.

  • Expertise in managing human credentials and non-human credentials (e.g., machine/system accounts, service principals, application secrets).

  • Familiarity with token-based authentication methods, including JWT, OAuth tokens, and API keys.

  • Knowledge of entitlements management, including role-based and attribute-based access controls.

API Security:
  • Strong experience with API gateways like Apigee and AWS API Gateway.

  • Expertise with AWS-native API security tools: Amazon WAF, Lambda Authorizers, AWS Cognito, and AWS CloudFront.

  • Familiarity with advanced API security tools like Imperva and SALT Security.

  • Proficiency in token-based API security mechanisms, rate limiting, throttling, and mutual TLS.

Secure Software Development Lifecycle (SDLC):
  • Strong knowledge of the OWASP Web Top 10 and OWASP API Top 10 for identifying and mitigating vulnerabilities.

  • Ability to review application architectures for vulnerabilities, secure session management, and business logic flaws.

  • Proficiency with secure coding practices, token validation, and managing session lifecycles.

SaaS Security:
  • Expertise in assessing and securing SaaS and PaaS services with SSO integration, MFA, SIEM monitoring, and role-based access controls.

  • Ability to evaluate SaaS vendors' security posture by reviewing SOC reports, BCDR documentation, and ISO certifications.

  • Understanding of multi-tenancy vs. dedicated tenancy models and associated risks.

  • Experience implementing BYOK (Bring Your Own Key) and HYOK (Hold Your Own Key) models for SaaS services.

Streaming and Big Data Security:
  • Expertise in securing streaming solutions like Kafka, RabbitMQ, IBM MQ, AWS Kinesis, and Firehose.

  • Familiarity with big data solutions like Snowflake and Cassandra, including managed Cassandra instances.

  • Knowledge of Snowflake security best practices, including access controls, encryption, and data governance.

Database Security:
  • Expertise in database activity monitoring and security best practices for relational and non-relational databases.

  • Understanding of availability models such as log shipping, snapshots, and read-only replicas.

  • Proficiency in designing and reviewing secure database architectures using AWS RDS and other managed solutions.

Business Continuity and Disaster Recovery (BCDR):
  • Deep understanding of high availability, fault tolerance, and disaster recovery in cloud and traditional environments.

  • Proficiency in designing multi-AZ vs. multi-region architectures for disaster recovery and fault tolerance in AWS.

  • Expertise in backup, restore, and replication strategies for cloud and on-premises environments.

SIEM and Log Management:
  • Proficiency with SIEM platforms (e.g., Splunk) for log correlation, event monitoring, and actionable alerting.

Required Certifications:

  • CISSP (Certified Information Systems Security Professional) – Required



BenefitsVisit us at http://alignity.io/careers. Alignity Solutions is an Equal Opportunity Employer, M/F/V/D.

CEO Message: Click Here
Clients Testimonial: Click Here

Requirements
We are seeking a highly skilled Security Architect to assess, design, and implement security controls across various systems, applications, and cloud environments. The ideal candidate will have extensive experience in security architecture, risk management, cloud security, encryption, identity and access management (IAM), and API security. This role requires strong communication skills to convey security risks and solutions to both technical and non-technical stakeholders. Key Responsibilities: Security Architecture Review: Assess system designs to identify deficiencies in security controls. Evaluate risks related to confidentiality, integrity, and availability (CIA). Propose actionable recommendations and design alternatives to address identified risks. Clearly communicate risks, solutions, and design choices to technical and non-technical stakeholders. Risk Management: Perform structured risk assessments using methodologies such as OWASP Risk Rating or other qualitative frameworks. Assess risks associated with systems, applications, and third-party services, qualifying them in terms of likelihood and impact. Develop tactical and strategic recommendations to remediate identified risks. Collaborate with stakeholders to prioritize risk mitigation efforts based on business objectives and technical feasibility. Provide clear and concise reports on risk findings and remediation strategies to leadership and cross-functional teams. Cloud Security: Strong expertise in AWS services: IAM, KMS, RDS, S3, EC2, GuardDuty, CloudTrail, Security Hub, VPC, ECS, and EKS. Familiarity with AWS Well-Architected Framework, CIS Benchmarks, and best practices for securing cloud environments. Experience with M365 and Azure AD/Entra ID, including conditional access policies, Intune, and hybrid identity configurations. Proficiency in encryption at rest and in transit, identity-based access controls, and monitoring for cloud services. Networking: In-depth knowledge of cloud networking architectures, including Direct Connect, VPC peering, hub-and-spoke design, mesh networking, and VPNs. Expertise in network traffic controls: IDS/IPS, WAFs, TLS termination strategies (offload, passthrough, bridging), and load balancing. Proficiency in certificate management, certificate-based authentication, and mutual TLS. Encryption and Key Management: Expertise in enterprise encryption best practices and secure key management. Strong experience with AWS KMS, AWS CloudHSM, and other encryption solutions. Proficiency with secrets management tools like HashiCorp Vault and CyberArk to secure sensitive credentials and encryption keys. Identity and Access Management (IAM): Strong understanding of Microsoft Active Directory, Azure AD/Entra ID, AWS IAM roles, Okta, PingFederate, Radius, and TACACS. Proficiency in authentication mechanisms: SAML, OAuth, OIDC, FIDO, and MFA. Expertise in managing human credentials and non-human credentials (e.g., machine/system accounts, service principals, application secrets). Familiarity with token-based authentication methods, including JWT, OAuth tokens, and API keys. Knowledge of entitlements management, including role-based and attribute-based access controls. API Security: Strong experience with API gateways like Apigee and AWS API Gateway. Expertise with AWS-native API security tools: Amazon WAF, Lambda Authorizers, AWS Cognito, and AWS CloudFront. Familiarity with advanced API security tools like Imperva and SALT Security. Proficiency in token-based API security mechanisms, rate limiting, throttling, and mutual TLS. Secure Software Development Lifecycle (SDLC): Strong knowledge of the OWASP Web Top 10 and OWASP API Top 10 for identifying and mitigating vulnerabilities. Ability to review application architectures for vulnerabilities, secure session management, and business logic flaws. Proficiency with secure coding practices, token validation, and managing session lifecycles. SaaS Security: Expertise in assessing and securing SaaS and PaaS services with SSO integration, MFA, SIEM monitoring, and role-based access controls. Ability to evaluate SaaS vendors' security posture by reviewing SOC reports, BCDR documentation, and ISO certifications. Understanding of multi-tenancy vs. dedicated tenancy models and associated risks. Experience implementing BYOK (Bring Your Own Key) and HYOK (Hold Your Own Key) models for SaaS services. Streaming and Big Data Security: Expertise in securing streaming solutions like Kafka, RabbitMQ, IBM MQ, AWS Kinesis, and Firehose. Familiarity with big data solutions like Snowflake and Cassandra, including managed Cassandra instances. Knowledge of Snowflake security best practices, including access controls, encryption, and data governance. Database Security: Expertise in database activity monitoring and security best practices for relational and non-relational databases. Understanding of availability models such as log shipping, snapshots,
  • Solution Architect

    4 weeks ago


    Hyderabad, Telangana, India Aqua Security Full time

    Job DescriptionAs part of the Digital Success team at Aqua Security, you will contribute to our goal of scaling customer adoption and success through a hybrid approach of direct customer engagement and automated, data-driven digital programs. This role focuses on providing technical enablement and guidance to customers through a combination of one-on-one...

  • Security Architect

    1 week ago


    Hyderabad, Telangana, India CyberArk Full time

    Job DescriptionCompany DescriptionAbout CyberArk:CyberArk (NASDAQ: CYBR), is the global leader in Identity Security. Centered on privileged access management, CyberArk provides the most comprehensive security offering for any identity human or machine across business applications, distributed workforces, hybrid cloud workloads and throughout the DevOps...


  • Hyderabad, Telangana, India Tata Consultancy Services Full time

    Role : Enterprise Security ArchitectExperience : 15+ years Location : Pan IndiaDesired Competencies :Experience – 15+ years' experience in Security Architect & Engineering Professional with architecture, design and engineering experience for enterprise security technologies (System & Network Security, Identity & Access Management, Data Security, Cloud...


  • Hyderabad, Telangana, India Versatile Commerce Full time

    About the JobWe're seeking an experienced Enterprise Security Architect to join our team at Versatile Commerce.In this role, you will be responsible for designing and implementing comprehensive security architectures for our enterprise clients.You will work closely with our operations and engineering staff to ensure seamless integration with existing systems...


  • Hyderabad, Telangana, India Tata Consultancy Services Full time

    Greetings From TCS Position : Enterprise Security Architect Location : PAN India Experience : 10+ years Job Description Experience – 15+ years' experience in Security Architect & Engineering Professional with architecture, design and engineering experience for enterprise security technologies (System & Network Security, Identity & Access Management, Data...

  • Security Architect

    3 weeks ago


    Hyderabad, Telangana, India Deliveroo Full time

    At Deliveroo, it is our mission to build the definitive food company. In order to do that, we're building a company where everyone can belong, grow and do the best work of their lives. As a Security Architect, you will have the opportunity to design, build, and implement various company wide security controls and technologies spanning 12 geographies. Working...

  • Security Architect

    3 weeks ago


    Hyderabad, Telangana, India Alignity Solutions Full time

    Do you love a career where you Experience, Grow & Contribute at the same time, while earning at least 10% above the market? If so, we are excited to have bumped onto you. Learn how we are redefining the meaning of work, and be a part of the team raved by Clients, Job-seekers and Employees.Jobseeker Video Testimonials Employee Glassdoor Reviews If you are...


  • Hyderabad, Telangana, India Live Connections Full time

    At Live Connections, we are seeking a highly skilled IT Security Architect Specialist to join our team. This role will lead the design and implementation of security solutions for our infrastructure, ensuring all systems meet our security requirements.The ideal candidate will have 10-15 years of experience in infrastructure security, with a minimum of 5...


  • Hyderabad, Telangana, India Ryan Full time

    Why Ryan? Global Award-Winning Culture Flexible Work Environment Generous Paid Time Off World-Class Benefits and Compensation Rapid Growth Opportunities Company Sponsored Two-Way Transportation Exponential Career Growth The Cloud Security Architect is a vital role responsible for designing, implementing, and managing robust security...


  • Hyderabad, Telangana, India Wipro Full time

    Job OverviewWe are seeking an experienced Cyber Security Architect to join our team at Wipro. This role is responsible for designing and developing enterprise cyber security strategy and architecture.


  • Hyderabad, Telangana, India SRINAV INFO SYSTEMS PRIVATE LIMITED Full time

    Role : Security Architect (MCE)Client : CGIRole : Security Architect (MCE)Experience : 12-16 yearsLocation : Hyderabad, Chennai, Bangalore, Mumbai, Pune, IndiaShift : Night (USA/Canada)Notice Period : Immediate Joiners or those serving notice period onlyRole Description : The Security Architect (MCE) will be responsible for designing, implementing, and...

  • Security Architect

    2 weeks ago


    Hyderabad, Telangana, India Amgen Full time

    **Join Amgen's Mission of Serving Patients**At Amgen, if you feel like you're part of something bigger, it's because you are. Our shared mission-to serve patients living with serious illnesses-drives all that we do.Since 1980, we've helped pioneer the world of biotech in our fight against the world's toughest diseases. With our focus on four therapeutic...

  • Security Architect

    2 weeks ago


    Hyderabad, Telangana, India Amgen Full time

    **Join Amgen's Mission of Serving Patients**At Amgen, if you feel like you're part of something bigger, it's because you are. Our shared mission-to serve patients living with serious illnesses-drives all that we do.Since 1980, we've helped pioneer the world of biotech in our fight against the world's toughest diseases. With our focus on four therapeutic...


  • Hyderabad, Telangana, India NopalCyber Full time

    About UsNopalCyber makes cybersecurity manageable, affordable, reliable, and powerful for companies of all sizes. Our MXDR, ASM, BAS, and advisory services fortify your cybersecurity across both offense and defense.We are looking for a results-oriented Cybersecurity Solutions Architect to join our team. As a key advisor for our clients, you will analyze...


  • Hyderabad, Telangana, India UnitedHealth Group Full time

    Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by diversity and inclusion,...


  • Hyderabad, Telangana, India NopalCyber Full time

    About the JobThe Cybersecurity Solutions Architect will play a critical role in developing and writing technical cybersecurity solutions for complex proposals. This involves demonstrating a high degree of ingenuity, creativity, and resourcefulness in designing and implementing security measures for cloud-based environments. The ideal candidate will have...


  • Hyderabad, Telangana, India Novartis India Full time

    Company OverviewNovartis India is a leading pharmaceutical company dedicated to improving and extending people's lives. Our mission is to reimagine medicine by leveraging innovative science, technology, and collaboration.Job DescriptionWe are seeking an Associate Director for Cloud Security to join our team. The ideal candidate will have a strong background...


  • Hyderabad, Telangana, India FedEx Full time

    Job OverviewAt FedEx, we are committed to delivering exceptional experiences for our customers and employees alike. As a Cyber Security Analyst II, you will play a critical role in ensuring the security of our enterprise systems and data.The Global InfoSec team is responsible for protecting the enterprise from cyber threats, securing business operations, and...


  • Hyderabad, Telangana, India The Depository Trust & clearing Corporation Full time

    About UsThe Depository Trust & Clearing Corporation (DTCC) is a leading provider of clearing and settlement services for the financial markets. We're committed to helping our employees grow and succeed.We're seeking a Senior IT Security Architect to join our team. In this role, you will be responsible for designing and implementing secure solutions that meet...


  • Hyderabad, Telangana, India Arrise Solutions (India) Pvt. Ltd. Full time

    Job DescriptionWe are seeking a highly skilled Network Security Architect to design, implement, and maintain secure network infrastructures. This role involves developing robust security frameworks, integrating advanced security tools and ensuring compliance with security best practices. The ideal candidate will have extensive experience in firewalls,...