Security Architect

HCLTech

Jigani

Hybrid

INR 4,500,000 - 7,000,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

HCL Software, part of the Office of the CISO, is seeking a Security Architect to define how security is integrated into enterprise and product platforms. You will set reference designs, guardrails for multi-cloud, and data protection standards while partnering with IT, cloud, and product teams to ensure secure builds.

The role emphasizes threat modeling, architecture governance, and advisory capacity, with responsibility for maintaining secure design standards and enabling scalable security

Qualifications

  • 10+ years in cybersecurity with 4+ years in security architecture or senior design
  • Ownership of enterprise security architecture across cloud, identity, network, data protection, or application platforms
  • Deep cloud security expertise across at least one major provider with fluency in others
  • Strong IAM architecture experience including federation, privileged access, and workload identity
  • Threat modeling capability using STRIDE/PASTA or equivalent on real systems
  • Knowledge of NIST CSF, NIST SP 800-53, ISO 27001, SOC 2 and mapping controls to architecture

Responsibilities

  • Define and maintain target-state security architecture and roadmap with sequencing
  • Publish reference architectures, control patterns, and secure design standards for direct implementation
  • Set guardrails for multi-cloud, SaaS, container, and hybrid environments
  • Evaluate security technologies and run proofs of concept with evidence-based recommendations
  • Lead threat modeling for major platforms and changes using repeatable methodology
  • Chair or contribute to architecture reviews and document risk decisions and compensating controls
  • Translate findings into prioritized remediation designs with accountable owners
  • Create scalable design review processes with templates and self-service checklists
  • Own identity-centric access architecture including authentication, authorization, and workload identity
  • Advance zero-trust segmentation across environments
  • Define encryption, key management, and data protection standards
  • Design for resilience with blast-radius containment across tiers
  • Define security architecture for AI and agentic systems including governance and monitoring
  • Address AI-specific threats and regulatory expectations in design standards
  • Track emerging regulatory expectations and fold into standards
  • Advise stakeholders on security implications of architectural choices
  • Support customer-facing security assurance activities
  • Mentor engineers on secure design thinking

Skills

Security architecture
Cloud security
Identity & access management
Threat modeling
Zero trust
Data protection
Architecture documentation

Tools

NIST CSF
NIST SP 800-53
ISO 27001
SOC 2

Job description

Security Architect

HCL Software | Office of the CISO

Location: India - Bangalore / Noida / Remote

About the Role

HCL Software is seeking a Security Architect to define how security is designed into our enterprise and product platforms rather than inspected afterwards. This role sits in the Office of the CISO and

carries technical authority across cloud, identity, network, data, and AI systems.

You will translate risk into architecture: reference designs, control patterns, and standards that engineering teams can adopt without needing to reinvent security decisions each time.You will partner with enterprise IT, cloud engineering, product engineering, GRC, and security

operations, and you will be measured on whether your designs actually get built.

Key Responsibilities:

Architecture and Standards

  • Define and maintain the target-state security architecture and the roadmap that gets us there,with clear sequencing and dependencies.
  • Publish reference architectures, control patterns, and secure design standards that engineering teams can implement directly.
  • Set architectural guardrails for multi-cloud (AWS, Azure, GCP), SaaS, container, and hybridenvironments.
  • Evaluate security technologies against defined requirements, run proofs of concept, and makeevidence-based platform recommendations.

Threat Modeling and Design Review

  • Lead threat modeling for major platforms, product architectures, and high-risk changes, using a repeatable methodology rather than ad hoc review.
  • Chair or contribute to architecture review, documenting risk acceptance decisions and compensating controls where full remediation is not viable.
  • Translate findings into prioritized, costed remediation designs with accountable owners.
  • Build a design review process that scales through templates, self-service checklists, and enablement rather than bottlenecking on one person.

Identity, Zero Trust, and Data Protection

  • Own the identity-centric access architecture: authentication, authorization, privileged access,workload identity, and lifecycle governance.
  • Advance segmentation and zero-trust access patterns across corporate, production, and development environments.
  • Define encryption, key management, and data protection standards aligned to classification and regulatory obligations.
  • Design for resilience: assume compromise, and architect blast-radius containment into every tier.

AI and Emerging Technology Security

  • Define the security architecture for AI and agentic systems, covering model access, tool and connector governance, data flow controls, and monitoring.
  • Address AI-specific threat classes including prompt injection, data poisoning, model and prompt exfiltration, and unsafe autonomous action.
  • Set architectural requirements for AI integrations built by product and internal engineering teams.
  • Track emerging regulatory and customer expectations and fold them into design standards before they become audit findings.

Advisory and Influence

  • Advise engineering and executive stakeholders on security implications of architectural choice in business terms.
  • Support customer-facing security assurance activity where architecture questions arise.
  • Mentor engineers and analysts on secure design thinking, growing architectural capability beyond this role.

Required Qualifications

  • 10+ years in cybersecurity with 4+ years in a dedicated security architecture or senior design role.
  • Proven ownership of enterprise security architecture across at least two of: cloud, identity,network, data protection, or application platforms.
  • Deep, current cloud security expertise in at least one major provider and working fluencyacross the others.
  • Strong identity and access management architecture experience, including federation, privileged access, and workload identity.
  • Demonstrated threat modeling capability using a recognized methodology (STRIDE, PASTA,

attack trees, or equivalent) applied to real systems.

  • Working knowledge of NIST CSF, NIST SP 800-53, ISO 27001, and SOC 2, with the ability to

map controls to architecture without becoming compliance-driven.

  • Ability to write clear architecture documentation and defend design decisions in front of both

engineers and executives.

Preferred Qualifications

  • Experience in a software or product company, including architecture for systems that ship to customers rather than only internal IT.
  • Hands-on background in engineering or development before moving into architecture.
  • Familiarity with AI and LLM security frameworks such as the OWASP LLM Top 10, MITRE ATLAS, and the NIST AI Risk Management Framework.
  • Experience with software supply chain security, SBOM practice, and build integrity controls.
  • Exposure to regulatory regimes affecting enterprise software, including the EU Cyber Resilience Act, and their architectural consequences.
  • Certifications valued but not required: CISSP, CCSP, SABSA, TOGAF, or major cloud security certifications.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Architect
Security Architect

HCLSoftware • Bengaluru

On-site
INR 4,500,000 - 7,000,000
Security Architecture and ENGINEERING
Security Architecture and ENGINEERING

TOCUMULUS • Bengaluru

On-site
INR 1,600,000 - 2,400,000
Security Architect
Security Architect

S&P Global Market Intelligence • Dadri, Gurugram District

On-site
INR 3,000,000 - 5,500,000
Senior Cybersecurity Architect
Senior Cybersecurity Architect

Aarushi Infotech • Hyderabad

On-site
INR 3,500,000 - 6,000,000
Senior Cybersecurity Architect
Senior Cybersecurity Architect

Aarushi Infotech • Maharashtra

On-site
INR 900,000 - 1,260,000
Senior Cybersecurity Architect
Senior Cybersecurity Architect

Aarushi Infotech • Mumbai

On-site
INR 4,200,000 - 7,000,000
Senior Cybersecurity Architect
Senior Cybersecurity Architect

Aarushi Infotech • Bengaluru

On-site
INR 4,000,000 - 7,500,000
Senior Cybersecurity Architect
Senior Cybersecurity Architect

Aarushi Infotech • Chennai District

On-site
INR 3,500,000 - 7,000,000
Security Architect
Security Architect

JUARA IT SOLUTIONS • Chennai District

On-site
INR 3,500,000 - 5,500,000
Security Architect
Security Architect

Tech Mahindra • Bengaluru

On-site
INR 4,000,000 - 7,000,000