Senior Security Architect

Flipkart

Bengaluru

On-site

INR 5,500,000 - 7,500,000

Full time

9 days ago
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Flipkart is seeking an Associate Director/Senior Security Architect to be the core security partner for Platform Engineering, DevOps and Infrastructure, ensuring security is baked into the ecosystem.

Lead enterprise-wide initiatives across Perimeter and WAF standardization, API gateway security, vulnerability management, secure AI usage, and scalable logging, with influence across multi-brand teams and IaC/CI-CD pipelines.

Qualifications

  • Perimeter & WAF expertise on enterprise-grade solutions and automation.
  • API gateway architecture, OAuth2/OIDC, and OWASP API Top 10 risk mitigation.
  • Automated patching pipelines, golden image workflows, and VM tooling.
  • Large-scale telemetry/logging design with cost-aware retention.
  • Foundational knowledge of securing AI applications and LLMs.
  • Understanding of LLM architectures, RAG, and embeddings.
  • Experience with vector databases and semantic search tooling.
  • Hands-on experience with LangChain, LlamaIndex, Hugging Face ecosystems.

Responsibilities

  • Perimeter Security & WAF standardization across environments with 100% coverage.
  • Deploy Bot Management, dynamic rate limits, and reduce FP rates.
  • Oversee monthly DDoS simulations to uncover vulnerabilities.
  • Gateway-first API exposure via secure gateways with central AuthN/Z.
  • Implement centralized rate limiting and policy-based protections.
  • API discovery, TLS enforcement, and real-time observability.
  • Translate security requirements into IaC/CI-CD configurations.
  • Establish centralized vulnerability dashboards with 100% VM coverage.
  • Automate patching pipelines and golden image workflows.
  • Enforce remediation SLAs and lifecycle governance for infrastructure.
  • Design production logging strategy for high-volume data and cost control.
  • Define AI security guardrails and governance across the organization.
  • Collaborate with Platform Engineering for IaC/CI-CD integrations.

Skills

Perimeter & WAF
API Gateways
Vulnerability Mgmt
Logging Pipelines
Emerging Tech
LLM Architecture
Vector Databases
AI Frameworks

Tools

Akamai
Cloudflare
AWS WAF
Kong
Apigee
AWS API Gateway
Packer
Docker
ELK
Splunk
Datadog
LangChain
LlamaIndex
Hugging Face
Pinecone
Milvus
Chroma
Qdrant

Job description

We are seeking a highly strategic and technically proficient Associate Director / Senior Security Architect. In this role, you will act as the core security partner to our Platform Engineering, DevOps, and Infrastructure teams, ensuring that security is baked into our ecosystem.

Beyond foundational platform security, you will drive execution across critical enterprise domains: establishing a standardized Perimeter and WAF defense strategy across our major group platforms (including Flipkart, Myntra, Cleartrip, and SuperMoney), engineering multi-tenant API Gateway architectures , defining modern automated Vulnerability Management frameworks , and building frameworks for securing enterprise AI utilization. This is a high-impact leadership role requiring deep technical execution and the ability to influence cross-functional platform teams.

Key Responsibilities
1. Perimeter Security & WAF Standardization
  • Group-Wide WAF Framework: Standardize and implement an enterprise-grade WAF architecture across multiple environments, ensuring 100% security coverage across all public-facing endpoints.
  • Advanced Bot Management: Deploy and manage an effective Bot Management (BOTM) solution across all public endpoints; architect dynamic and static rate limits and continuously improve bot identification accuracy to eliminate false positives (FPs).
  • DDoS Resilience & Simulation: Orchestrate and oversee monthly DDoS simulations to rigorously test and identify application flaws as well as gaps in the BOTM solution.
2. API Security Architecture
  • Gateway-First Architecture: Partner with the Platform Engineering team to ensure all internal and external APIs are exposed strictly through secure API Gateways.
  • Access Control & Rate Limiting: Architect and enable centralized Authentication & Authorization (AuthN/Z) and dynamic rate-limiting capabilities leveraging multiple parameters (e.g., IP addresses, User IDs, Account IDs).
  • Core Protection Capabilities: Define gateway policies to defend against top web vectors and custom parameter blocking (Client ID, Account ID).
  • Discovery & Visibility: Implement comprehensive API discovery and inventory features , govern TLS version enforcement , and build real-time observability to immediately identify and mitigate API abuse.
  • Platform Collaboration: Act as the primary technical point of contact to translate security requirements into developer-friendly configurations (Infrastructure-as-Code, CI/CD integrations) for the Platform Engineering team.
3. Vulnerability Management (VM) Transformation
  • Centralized Dashboarding: Establish an enterprise-wide centralized dashboard providing an accurate, single pane of glass for vulnerability monitoring with 100% VM coverage.
  • Developer Enablers: Architect and implement automated patching pipelines to assist developer workflows and streamline remediation.
  • SLA Enforcement & Triage: Standardize vulnerability criticality criteria to eliminate noise and reduce false positives ; drive strict adherence to remediation SLAs.
  • Lifecycle & Baseline Governance: Design End-of-Life (EOL) infrastructure strategies and secure stakeholder buy-in for seamless migration; implement and mandate a "Golden Image" strategy across the Flipkart group.
  • Production Logging Strategy: Architect a resilient production logging strategy capable of handling high-volume ingestion while optimizing storage structures and maintaining strict cost efficiency.
  • Securing AI Usage: Establish security guardrails, architectural governance patterns, and policy frameworks to ensure safe, secure, and compliant adoption of AI technologies across the organization.
  • Platform Collaboration: Act as the primary technical point of contact to translate security requirements into developer-friendly configurations (Infrastructure-as-Code, CI/CD integrations) for the Platform Engineering team.
5. AI Security
  • Strategise the security for AI based assets - LLM, Agents, MCPs, SLMs etc.
  • Solve complex hybrid environment challenges while implementing security controls across the AI landscape
  • Ideate and implement guardrails to safeguard underlying infrastructure.
  • Discovery and Inventory of AI usage
Required Qualifications & Skills
Technical Expertise
  • Perimeter & WAF Specialist: Deep, hands-on experience managing and scaling enterprise-grade WAF/CDN solutions (e.g., Akamai, Cloudflare, AWS WAF) and deploying advanced Bot Management systems.
  • API Security & Gateways: Strong architectural grasp of API Gateway configurations (e.g., Kong, Apigee, AWS API Gateway), OAuth2/OIDC protocols , and mitigation of OWASP API Top 10 risks.
  • Vulnerability & Baseline Management: Proven track record building automated patching pipelines , implementing golden image workflows (Packer, Docker), and orchestrating enterprise vulnerability scanning tools.
  • Infrastructure & High-Ingestion Logging: Experience designing large-scale telemetry or logging pipelines (e.g., ELK, Splunk, Datadog) factoring in ingestion velocity and data storage retention/costs.
  • Emerging Tech: Foundational knowledge of securing LLM/AI applications (e.g., OWASP Top 10 for LLMs).
  • LLM Architecture Understanding: Deep understanding of Large Language Models (LLMs), Transformers, Retrieval-Augmented Generation (RAG) architectures, and fine-tuning methodologies.
  • Vector Databases: Experience securing vector databases (e.g., Pinecone, Milvus, Chroma, Qdrant) and managing semantic search embeddings.
  • AI Frameworks: Hands-on experience with AI orchestration frameworks like LangChain, LlamaIndex, and Hugging Face ecosystem.
Leadership & Experience
  • Experience: 15+ years in Cybersecurity, Infrastructure, or Platform Security, with 4+ years in a dedicated Security Architect or technical leadership capacity.
  • Scale Capability: Prior experience working across large, multi-brand e-commerce or digital ecosystem entities (such as managing security baselines across distributed units/subsidiaries) is highly preferred.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Lead Security Engineer
Lead Security Engineer

Flipkart • Bengaluru

On-site
INR 2,500,000 - 4,000,000
Director security engineering
Director security engineering

Confidential Jobs • Bengaluru

On-site
INR 5,000,000 - 8,000,000
Sr. AI Developer Engineer – Lead/Backend/Cloud (L4)
Sr. AI Developer Engineer – Lead/Backend/Cloud (L4)

TOCUMULUS • Mumbai

On-site
INR 4,000,000 - 6,000,000
AI Security Architect
AI Security Architect

TE Connectivity • Bengaluru

Hybrid
INR 2,800,000 - 4,800,000
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

Cornerstone • Mumbai, Pune District

On-site
INR 2,000,000 - 4,000,000
Senior Security Engineer - Perimeter Security Operations
Senior Security Engineer - Perimeter Security Operations

Fanatics • Hyderabad

Hybrid
INR 4,000,000 - 6,000,000
Enterprise Security Architect - Agentic AI Platform Security
Enterprise Security Architect - Agentic AI Platform Security

NTT DATA, Inc. • Bengaluru

On-site
INR 4,000,000 - 7,000,000
AI Security Architect
AI Security Architect

RealPage, Inc. • Hyderabad

On-site
INR 4,000,000 - 6,000,000
Sr. AI Developer Engineer – Lead/Backend/Cloud (L4)
Sr. AI Developer Engineer – Lead/Backend/Cloud (L4)

Theomnihire • Mumbai

On-site
INR 3,000,000 - 5,500,000
Security Architect
Security Architect

JUARA IT SOLUTIONS • Chennai District

On-site
INR 3,500,000 - 5,500,000