Security, Governance, and Data Foundations
We are seeking a Principal Security & Data Architect to design, govern, and continuously evolve the security, identity, data, and AI trust foundations of our SaaS platform. This role will ensure that security, privacy, and compliance are embedded by design, not retrofitted.
Role Overview
You will act as the final technical authority on platform security architecture, identity & access models, data governance & privacy, AI safety & compliance, and enterprise and regulatory readiness. This role partners closely with the Chief Product Platform Architect, Engineering Leaders, and Compliance teams to build a secure, scalable, and audit‑ready ecosystem.
Key Responsibilities
- Security & Identity Architecture
- Define end‑to‑end security architecture for multi‑tenant SaaS platforms.
- Design and govern IAM including RBAC, ABAC, policy‑based authorization, and tenant‑level isolation.
- Develop Zero‑Trust access models and authentication strategies such as OAuth2, OIDC, SAML, MFA, and passwordless.
- Establish secure API standards (JWT, mTLS, token lifecycles).
- Data Architecture & Governance
- Architect secure, scalable data platforms supporting transactional, analytical, and AI/ML pipelines.
- Define data classification, retention, encryption, and access policies with tenant isolation.
- Govern schema evolution, data lineage, and data quality, and lead privacy‑by‑design implementations.
- AI Security & Trust Foundations
- Define AI governance frameworks including model access controls, prompt security, and training data compliance.
- Design secure architectures for vector databases, feature stores, and model inference pipelines.
- Implement privacy‑preserving AI techniques such as masking, anonymization, and tokenization.
- Compliance, Risk & Governance
- Lead platform readiness for SOC 2, ISO 27001, GDPR, DPDP, and HIPAA where applicable.
- Define audit logging, traceability, and forensics standards.
- Own risk assessments, threat modeling, security reviews, and third‑party integration governance.
- Platform Resilience & Security Engineering
- Define security patterns for microservices, event‑driven architectures, and cloud‑native deployments.
- Lead secure SDLC practices: SAST, DAST, dependency scanning, secrets management, and CI/CD security controls.
- Define incident response, disaster recovery, and business continuity strategies.
- Leadership & Influence
- Serve as principal technical advisor on security and data, mentor architects and engineers, and drive security culture.
- Collaborate with Product, Platform, and Infrastructure leaders to align security strategy with product vision.
Required Experience & Skills
- Experience
- 12–18+ years in software architecture, security, and data platforms.
- Proven design of enterprise SaaS platforms.
- Hands‑on identity systems, access control, and policy engines.
- Experience supporting compliance audits for enterprise customers.
- Prior AI‑enabled or data‑intensive platform experience.
- Technical Expertise
- Security: IAM, OAuth2, OIDC, JWT, mTLS, Zero Trust.
- Data: PostgreSQL, NoSQL, Data Lakes, Warehouses.
- AI/Data: Vector DBs, ML pipelines, feature stores.
- Cloud: AWS/Azure/GCP security services.
- DevSecOps: CI/CD security, secrets management.
- Architecture: Microservices, event‑driven, API‑first systems.
- Soft Skills & Mindset
- Strong architectural judgment and risk‑based thinking.
- Excellent communication with technical and non‑technical stakeholders.
- Systems thinker with long‑term platform vision.
- Pragmatic balance between security and product velocity.
What Success Looks Like
- Security incidents are rare, contained, and well‑handled.
- Platform passes audits with minimal remediation.
- Developers build securely by default.
- Customers trust the platform with sensitive enterprise data.
- AI systems are explainable, compliant, and safe.
Nice to Have
- Experience in BFSI, HealthTech, or regulated industries.
- Contributions to security standards or open‑source.
- Prior role as Chief Security Architect or Principal Architect.
Seniority Level
Principal / Senior
Employment Type
Full‑time
Job Function
Information Technology / Security Architecture