Avalara - Product Security Architect - CISSP/CCSP Certified
1 day ago
Job description :
As a Product Security Architect at Avalara, you will be responsible for designing and implementing security frameworks and architectures that protect our SaaS product ecosystem. You will work closely with product development teams and DevOps teams to ensure security is built into our software from the ground up. This role focuses on safeguarding the entire product lifecycle, from design through deployment, ensuring that our customers data and our platform are secure from modern threats.
Key Responsibilities :
- Architect secure product environments that address security concerns across our SaaS offerings, ensuring the security of all product layers, including application, data, and infrastructure.
- Develop security standards, guidelines, and best practices for product development teams, ensuring security is integrated into the software development lifecycle (SDLC).
- Conduct threat modeling and risk assessments for new features and services to proactively identify and address potential security vulnerabilities.
- Collaborate with product managers, developers, and DevOps teams to define security requirements and ensure they are incorporated throughout the design and development process.
- Perform secure code reviews and work with development teams to establish secure coding practices, including automation of security testing in CI/CD pipelines.
- Oversee data security and privacy mechanisms, such as encryption, data masking, and anonymization, to ensure compliance with regulatory requirements like GDPR, HIPAA, and others.
- Lead vulnerability management efforts for products, including monitoring, identifying, and remediating security flaws across applications and services.
- Establish security monitoring and incident response processes for our SaaS platform, working with DevOps teams to monitor security events and respond to product security incidents.
- Stay up-to-date with the latest security threats and technologies that impact SaaS platforms, ensuring proactive measures are in place to address new risks.
- Lead security-related training and awareness initiatives within the product and engineering teams, helping build a security-first mindset across the organization.
What You'll Need to be Successful :
Education :
- 4 year Bachelors degree in Cybersecurity, Computer Science, Software Engineering, or related field.
- Masters degree or security certifications (e.g., CSSLP, CISSP, CCSP) are highly desirable.
Experience :
- 15+ years of experience in software engineering, with a focus on product security for SaaS platforms.
- Proven experience in secure software development and building security into product architectures from design to deployment.
- Hands-on experience with cloud environments (AWS, Azure, GCP) and securing cloud-native applications (e.g., microservices, containerized workloads, serverless).
Technical Skills :
- Strong understanding of secure coding practices, code review processes, and software vulnerability management.
- Expertise in security protocols and technologies such as OAuth, OpenID, JWT, encryption (TLS, AES), and API security.
- Experience with security tools for static code analysis (SAST), dynamic application security testing (DAST), and penetration testing tools.
- Knowledge of container security (e.g., Kubernetes, Docker) and cloud security best practices (IAM, network security, logging, monitoring).
- Familiarity with DevSecOps principles and the integration of security automation into CI/CD pipelines (e.g., Jenkins, GitLab, etc.).
Soft Skills :
- Strong collaboration and communication skills, with the ability to work cross-functionally with development, product management, and DevOps teams.
- Analytical mindset with the ability to assess risks and propose practical, scalable security solutions.
- Excellent problem-solving skills and attention to detail.
Preferred Certifications :
- Certified Secure Software Lifecycle Professional (CSSLP)
- Certified Information Systems Security Professional (CISSP)
- Certified Cloud Security Professional (CCSP)
- GIAC Cloud Security Automation (GCSA)
(ref:hirist.tech)-
Avalara - Manager - Product Security
1 day ago
Remote, India Avalara Technologies Pvt ltd Full timeJob description : What You'll Do : As the Manager of Product Security with a focus on Data Privacy, you will play a crucial role in ensuring that our products are designed, developed, and deployed with strong security and privacy controls. You will lead a team of security professionals, collaborate with cross-functional teams, and drive the...
-
Remote, India Avalara Technologies Pvt ltd Full timeJob description : What You'll Do : In this role you will have the opportunity to engage with the best and brightest engineers and architects as they build our future application and service capabilities, while ensuring our current generation solutions continue to deliver the trust and reliability our customers expect. If you want to make a big...
-
Remote, India Avalara Technologies Pvt ltd Full timeJob description : In this role you will have the opportunity to engage with the best and brightest engineers and architects as they build our future application and service capabilities, while ensuring our current generation solutions continue to deliver the trust and reliability our customers expect. If you want to make a big difference in a fast-moving...
-
Remote, India Avalara Technologies Pvt ltd Full timeJob description : What You'll Do : We are looking for a highly skilled and motivated Principal Engineer to join our development team and lead the design and implementation of integrations between enterprise resource planning (ERP) systems and eCommerce platforms for our cutting-edge tax compliance solutions. Here are some of the things we expect you...
-
Avalara - Automation Engineer - RPA
1 day ago
Remote, India Avalara Technologies Pvt ltd Full timeJob description : Avalara is looking for a Senior Automation Engineer who will help us to maintain automations for Tax Filing system. You'll deliver high quality process automations and practice industry best practices. You will join a team of seasoned engineers responsible for delivering solutions in an Agile environment. You will be reporting to...
-
Avalara - Technical Lead - Java/.Net
1 day ago
Remote, India Avalara Technologies Pvt ltd Full timeJob description : What You'll Do : Avalara is looking for a Technical Lead, You will be a well-rounded software engineer with experience delivering software at scale in an Agile environment, and excel. Avalara is the worldwide leader in sales and use tax calculation. We have fantastic culture focused on building great software and having the maximum...
-
Remote, India Avalara Technologies Pvt ltd Full timeJob description : What You'll Do : As a Software Development Engineer Test, you will design & code test automation/platform/framework of different parts of our compliance cloud applications. It will be up to you to convert product vision and requirements into the finished quality product. At Avalara, you will work on diverse projects that make tax...
-
Remote, India Avalara Technologies Pvt ltd Full timeJob description : What You'll Do : As a Software Engineer, you will design, code, and increase different parts (microservices) of our compliance cloud. It will be up to you to convert product vision and requirements into the finished product. At Avalara, you will work on diverse projects that make tax compliance less taxing and more efficient for...
-
Avalara - Senior Agile Coach
1 day ago
Remote, India Avalara Technologies Pvt ltd Full timeJob description : What You'll Do : As an Agile Coach, you will support the Technology group to ensure program teams adhere to the Agile Process and bring organizational structure, Agile disciplines, and daily operational management to the teams. You will also partner with multiple Agile teams on ensuring a smooth delivery of their release efforts. You...
-
Information Security
1 month ago
Remote, India MNR Solutions Full timeJob Description : We are looking for an experienced Information Security and Privacy Specialist to join our remote team. The candidate will be responsible for implementing and maintaining security protocols, ensuring data privacy, and managing security compliance for a SaaS-based organization. The ideal candidate will have a strong background in Information...
-
Azure Security
7 months ago
Remote, India Donyati Full time**About Donyati** Donyati was founded as a challenge to the status quo of business and technology consulting. At Donyati we leverage technology to solve business challenges and deliver innovative solutions with expertise, hard work, and passion. We listen, advise, and deliver on a continuous basis to achieve our client’s desired outcomes. We always have...
-
Agile Coach
4 weeks ago
Remote, India Avalara Full timeWhat You'll Do: **Job Summary** What Your Responsibilities Will Be: **Responsibilities** - Understand and implement Avalara SDLC in Delivery Teams (ARTs) - Understand Our goals and partner with RTEs in Lean Portfolio Management Roadmapping, within Teams and across multiple dependent teams - As a hands-on Agile Coach for 15+ teams and multiple ARTs, guide...
-
Lead Cyber Security Architect
1 month ago
Remote/Bangalore, India Georgia IT, Inc. Full timeLead Cyber Security Architect / Principal - 100% Remote. Location - India. Salary - DOE. Start Date - immediately. 12 Months plus Contract. Overview : The Lead Cyber Security Architect / Principal is a pivotal leadership role responsible for overseeing the efforts of the security development function, guiding a team of Security Developer Consultants, and...
-
Remote, India Avalara Technologies Pvt ltd Full timeJob description : Job Duties : Code, Review, Commit : - Become part of the team to deliver more than you ever thought possible. - Research,identify, and utilize appropriate tools, libraries, frameworks, and languages to solve problems and deliver results using the most effective methods document software functionality, including public APIs and...
-
Remote, India Avalara Technologies Pvt ltd Full timeJob description : What You'll Do : We are looking for a meticulous senior software developer with experience in building highly scalable systems to be part of one of Avalara's fastest growing platform initiatives : Workflow as a Service(WfaaS) which provides process orchestration capabilities to application teams. In this role, you will play a...
-
Security Architect
6 months ago
Remote, India Talent Corner HR Services Private Limited Full timeSecurity Architect (O-RAN) Lead the technical design and implementation of secure radio network elements, ensuring security requirements are integrated into initial design and build. Key Responsibilities: - Ensure security requirements are represented in initial design and build - Research and design security controls and test cases - Collaborate with...
-
Remote, India Avalara Technologies Pvt ltd Full timeJob description : What You'll Do : Join our dynamic team as a Engineer specializing in AI & Machine Learning, where you'll contribute to pioneering projects in computer vision and natural language processing under the document intelligence space. This role is crucial for automating workflows and enhancing the efficiency of partner teams at...
-
UX Researcher
3 months ago
Remote, India Avalara Full timeOverview: We are seeking an experienced **User Researcher** to join our team at Avalara. As a User Researcher, you will be responsible for understanding customer needs and pain points, gathering insights through various research methods, and translating those findings into actionable recommendations that drive our product strategy. Your work will influence...
-
Remote, India Avalara Technologies Pvt ltd Full timeJob description : What You'll Do : As the Director of AI & Machine Learning, you will spearhead the development and implementation of AI strategies that align with Avalaras business goals. You will lead a team of talented ML engineers to create scalable AI solutions that significantly enhance our core tax compliance product offerings. Key...
-
Remote, India Avalara Technologies Pvt ltd Full timeJob description : What You'll Do : As a Reliability Engineer, you will be part of a team responsible for the design, architecture, and operations of our next generation cross platform and multi cloud platform as a service. Our focus is to tap into the power of software engineering for solving technical and organizational problems that concern...