Principal Cybersecurity Architect

Location
Hyderabad
Workplace
On-site

About this role

Security Architect – Application Security & DevSecOps

Location: Hyderabad, India  |  Experience: 12–15+ Years  |  Role Level: Principal Consultant / Security Architect

Role Summary

Seeking an experienced Security Architect to lead Application Security, Security Architecture, and DevSecOps initiatives across the enterprise. The role will drive secure-by-design practices, security governance, cloud and application security programs, and technology risk management while partnering with engineering and business leaders to strengthen security throughout the software development lifecycle.

Key Responsibilities

  • Lead enterprise Application Security and DevSecOps programs.
  • Define and implement security architecture standards and secure engineering practices.
  • Conduct architecture reviews, threat modeling, and application risk assessments.
  • Drive adoption of secure SDLC, CI/CD security, and shift-left security practices.
  • Integrate security testing tools such as SAST, DAST, SCA, and IAST into development pipelines.
  • Provide security guidance for cloud, API, container, and microservices architectures.
  • Establish governance, metrics, and remediation programs for application security risks.
  • Partner with engineering and leadership teams to develop security roadmaps and technology strategies.
  • Support compliance and regulatory requirements including HIPAA, HITRUST, SOC 2, NIST, and ISO 27001.
  • Mentor engineers and architects on secure development and security best practices.

Required Qualifications

  • 12–15+ years of experience in Cybersecurity, Application Security, Security Architecture, or DevSecOps.
  • Strong expertise in Secure SDLC, AppSec, Threat Modeling, Cloud Security, and DevSecOps.
  • Experience leading enterprise-scale security transformation and secure engineering initiatives.
  • Hands-on knowledge of CI/CD platforms, container security, API security, and cloud technologies.
  • Strong understanding of technology risk management and security governance.
  • Excellent stakeholder management, consulting, and communication skills.
  • Ability to influence strategic decisions across business and technology functions.

Preferred Certifications

CISSP, CSSLP, CCSP, AWS Security Specialty, Azure Security Engineer Associate, and TOGAF preferred.

Key Competencies

Security Architecture & Design, Application Security Leadership, DevSecOps Transformation, Cloud Security, Risk Management & Governance, Strategic Thinking, Executive Communication, Stakeholder Management, and Consulting Mindset.

Tired of cold applications?

Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.

Know someone who'd be great for this?