Security Architect

HCLSoftware

Bengaluru

On-site

INR 4,500,000 - 7,000,000

Full time

6 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

HCL Software is seeking a Security Architect to define how security is designed into our enterprise and product platforms. This role sits in the Office of the CISO and carries technical authority across cloud, identity, network, data, and AI systems.

You will translate risk into architecture: reference designs, control patterns, and standards that engineering teams can adopt without needing to reinvent security decisions each time.

Qualifications

  • 10+ years in cybersecurity with 4+ years in a dedicated security architecture or senior design role.
  • Proven ownership of enterprise security architecture across at least two of: cloud, identity, network, data protection, or application platforms.
  • Deep, current cloud security expertise in at least one major provider and working fluency across the others.
  • Strong identity and access management architecture experience, including federation, privileged access, and workload identity.
  • Demonstrated threat modeling capability using STRIDE, PASTA, attack trees, or equivalent, applied to real systems.
  • Working knowledge of NIST CSF, NIST SP 800-53, ISO 27001, and SOC 2, with the ability to map controls to architecture without becoming compliance-driven.
  • Ability to write clear architecture documentation and defend design decisions in front of both engineers and executives.

Responsibilities

  • Define and maintain the target-state security architecture and the roadmap with clear sequencing and dependencies.
  • Publish reference architectures, control patterns, and secure design standards for direct implementation by engineering teams.
  • Set architectural guardrails for multi-cloud (AWS, Azure, GCP), SaaS, container, and hybrid.
  • Evaluate security technologies against requirements, run proofs of concept, and make evidence-based platform recommendations.
  • Lead threat modeling for major platforms and product architectures with a repeatable methodology.
  • Chair or contribute to architecture reviews, documenting risk acceptance decisions and compensating controls.
  • Translate findings into prioritized, costed remediation designs with accountable owners.
  • Build a design review process that scales through templates and self-service checklists.

Skills

Security Architecture
Cloud Security
IAM
Threat Modeling
Documentation
Compliance Knowledge

Job description

About the Role

HCL Software is seeking a Security Architect to define how security is designed into our enterprise

and product platforms rather than inspected afterwards. This role sits in the Office of the CISO and

carries technical authority across cloud, identity, network, data, and AI systems.

You will translate risk into architecture: reference designs, control patterns, and standards that

engineering teams can adopt without needing to reinvent security decisions each time.

You will partner with enterprise IT, cloud engineering, product engineering, GRC, and security

operations, and you will be measured on whether your designs actually get built.

Key Responsibilities:
Architecture and Standards
  • Define and maintain the target-state security architecture and the roadmap that gets us there, with clear sequencing and dependencies.
  • Publish reference architectures, control patterns, and secure design standards that engineering teams can implement directly.
  • Set architectural guardrails for multi-cloud (AWS, Azure, GCP), SaaS, container, and hybrid.
  • Evaluate security technologies against defined requirements, run proofs of concept, and make evidence-based platform recommendations.
Threat Modeling and Design Review
  • Lead threat modeling for major platforms, product architectures, and high-risk changes, using a repeatable methodology rather than ad hoc review.
  • Chair or contribute to architecture review, documenting risk acceptance decisions and compensating controls where full remediation is not viable.
  • Translate findings into prioritized, costed remediation designs with accountable owners.
  • Build a design review process that scales through templates, self-service checklists, and enablement rather than bottlenecking on one person.
Identity, Zero Trust, and Data Protection
  • Own the identity-centric access architecture: authentication, authorization, privileged access, workload identity, and lifecycle governance.
  • Advance segmentation and zero-trust access patterns across corporate, production, and.
  • Define encryption, key management, and data protection standards aligned to classification and regulatory obligations.
  • Design for resilience: assume compromise, and architect blast-radius containment into every.
AI and Emerging Technology Security
  • Define the security architecture for AI and agentic systems, covering model access, tool and connector governance, data flow controls, and monitoring.
  • Address AI-specific threat classes including prompt injection, data poisoning, model and prompt exfiltration, and unsafe autonomous action.
  • Set architectural requirements for AI integrations built by product and internal engineering teams.
  • Track emerging regulatory and customer expectations and fold them into design standards before they become audit findings.
Advisory and Influence
  • Advise engineering and executive stakeholders on security implications of architectural choices in business terms.
  • Support customer-facing security assurance activity where architecture questions arise.
  • Mentor engineers and analysts on secure design thinking, growing architectural capability beyond this role.
Required Qualifications
  • 10+ years in cybersecurity with 4+ years in a dedicated security architecture or senior design role.
  • Proven ownership of enterprise security architecture across at least two of: cloud, identity, network, data protection, or application platforms.
  • Deep, current cloud security expertise in at least one major provider and working fluency across the others.
  • Strong identity and access management architecture experience, including federation, privileged access, and workload identity.
  • Demonstrated threat modeling capability using a recognized methodology (STRIDE, PASTA, attack trees, or equivalent) applied to real systems.
  • Working knowledge of NIST CSF, NIST SP 800-53, ISO 27001, and SOC 2, with the ability to map controls to architecture without becoming compliance-driven.
  • Ability to write clear architecture documentation and defend design decisions in front of both engineers and executives.
Preferred Qualifications
  • Experience in a software or product company, including architecture for systems that ship to customers rather than only internal IT.
  • Hands-on background in engineering or development before moving into architecture.
  • Familiarity with AI and LLM security frameworks such as the OWASP LLM Top 10, MITRE ATLAS, and the NIST AI Risk Management Framework.
  • Experience with software supply chain security, SBOM practice, and build integrity controls.
  • Exposure to regulatory regimes affecting enterprise software, including the EU Cyber Resilience Act, and their architectural consequences.
  • Certifications valued but not required: CISSP, CCSP, SABSA, TOGAF, or major cloud security
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Architect
Security Architect

HCLTech • Jigani

Hybrid
INR 4,500,000 - 7,000,000
Security Architect
Security Architect

Tech Mahindra • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Security Architecture and ENGINEERING
Security Architecture and ENGINEERING

TOCUMULUS • Bengaluru

On-site
INR 1,600,000 - 2,400,000
Senior Manager - Information Security
Senior Manager - Information Security

Etenico Technologies • Bengaluru

On-site
INR 4,000,000 - 7,000,000
Security Architect
Security Architect

JUARA IT SOLUTIONS • Chennai District

On-site
INR 3,500,000 - 5,500,000
Security Architect
Security Architect

S&P Global Market Intelligence • Dadri, Gurugram District

On-site
INR 3,000,000 - 5,500,000
Security Architect – (Cloud & Enterprise Governance)
Security Architect – (Cloud & Enterprise Governance)

LTM • Bengaluru

On-site
INR 2,000,000 - 2,500,000
Security Solutions Architect (Enterprise, Cloud, OT & AI Security)
Security Solutions Architect (Enterprise, Cloud, OT & AI Security)

PeopleBridge Partners (PBP) • Mumbai

On-site
INR 2,500,000 - 3,500,000
Direct impact on enterprise architecture
Opportunities for professional growth
Blend of strategy and hands-on work
IT Security Architect
IT Security Architect

Lonza • Hyderabad

On-site
Confidential
Digital Information Security Architect
Digital Information Security Architect

PERSOL • Hyderabad

On-site
INR 1,800,000 - 3,600,000