SISA Information Security - Senior/Principal Architect - Endpoint Detection & Response

SISA

Mumbai

On-site

INR 3,500,000 - 5,500,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

SISA in Mumbai, India, is seeking a Senior/Principal Architect to own end-to-end architecture for a distributed endpoint security platform across on-prem, cloud, and agent components. This hands-on role requires reviewing code and low-level design, not just diagrams.

You will lead security-focused architecture decisions, drive multi-tenant, outbound-only deployments with mTLS/IPSec, and mentor engineers while engaging with enterprise client InfoSec teams.

Qualifications

  • Extensive experience in distributed systems architecture.
  • Hands-on review of code and low-level design.
  • Strong knowledge of kernel-level development and OS internals.
  • Experience with PCI-DSS or ISO/SOC2 implications on network/data.
  • Proven ability to lead architecture reviews with enterprise clients.

Responsibilities

  • Own end-to-end architecture across endpoint, on-prem, and cloud backend.
  • Define control-plane and data-plane transport strategies (gRPC/Protobuf, HTTP/2).
  • Design multi-tenant, outbound-only, secure deployment topologies with mTLS.
  • Mentor engineers and drive technical roadmap and debt prioritization.
  • Represent the company in architecture/security review calls with clients.

Skills

Go
C/C++
Linux kernel
Windows kernel
gRPC
Protocol Buffers
HTTP/2
PKI/mTLS
IPSec/VPN
Multi-tenant SaaS

Education

Bachelor's or Master's degree in Computer Science or related field

Tools

Kubernetes
AWS/GCP/Azure
Docker
Linux
eBPF

Job description

About The Role

We build a distributed, agent-based endpoint security platform for the payment ecosystem, combining an endpoint agent (a core runtime plus pluggable security modules, built entirely in Go), an on-premise management component deployed at the customer site, a local telemetry relay component, and a cloud backend.

About The Role

Kernel-level components that hook into the OS are written in C/C++, as is standard for driver-level development.

We're looking for a Senior/Principal Architect to own end-to-end architecture across this stack from the control-plane protocol on the endpoint, through on-premise components, to secure egress into the cloud backend.

This is a hands-on architecture role: you will be expected to review code and low-level design, not just produce diagrams.

Key Responsibilities
  • Define the architecture for kernel-level components on the endpoint (drivers/kernel modules used for real-time monitoring, hooking, or enforcement), including their interaction with and isolation from the user-mode agent runtime and its modules.
  • Own architectural decisions across the full platform: the endpoint agent (core runtime + pluggable security modules), the on-premise management component, the on-premise telemetry relay component, and the cloud backend.
  • Define and evolve the control-plane (gRPC/Protobuf) and data-plane transport strategy between the endpoint agent, the on-premise management component, and the telemetry relay component.
  • Own version compatibility strategy across independently-versioned components (agent, core runtime, modules, management component, cloud backend).
  • Design secure, outbound-only, multi-tenant deployment topology mTLS and certificate lifecycle management, IPSec/VPN egress design suitable for PCI-regulated payment industry clients.
  • Own the client-facing security architecture narrative: per-hop network/port/protocol documentation, PCI-DSS scoping discussions, and direct engagement with client InfoSec/audit teams.
  • Architect the security-module lifecycle: subscription entitlement enforcement, binary distribution, staged/canary rollout and rollback, resource governance across concurrently running modules, and failure isolation so a single module cannot take down the core agent runtime.
  • Define HA/DR strategy for on-premise components deployed inside customer environments that are not directly operated by us.
  • Evaluate and decide on the design of any bi-directional channel between the cloud backend and on-premise components, ensuring it doesn't undermine the outbound-only security posture documented to clients.
  • Run architecture reviews, mentor senior and mid-level engineers, and own technical roadmap and tech-debt prioritization.
  • Represent the company in high-stakes architecture and security review calls with enterprise client stakeholders.
Required Technical Skills
  • 1520+ years in software engineering, including 8+ years in architecture or senior technical leadership roles.
  • Deep expertise in distributed systems design; direct experience with agent-based security products (EDR/XDR, endpoint protection, DLP, or similar) is strongly preferred.
  • Strong hands-on background in Go the agent runtime and its modules are built entirely in Go plus working proficiency in C/C++ for reviewing and guiding kernel-level driver work.
  • Able to review code and low-level design in depth, not just at a diagram level.
  • Solid understanding of kernel-level/OS-internals development (e.g., Windows kernel drivers/minifilters, Linux kernel modules/eBPF) sufficient to architect and review how endpoint agents hook into the OS for real-time monitoring or enforcement, and to reason about the security and stability risks that come with it.
  • Expert-level knowledge of gRPC, Protocol Buffers, and HTTP/2, including streaming and multiplexing trade-offs at scale.
  • Strong grasp of mTLS/PKI design: certificate issuance, rotation, and revocation for large, distributed fleets.
  • Solid understanding of network security fundamentals: IPSec/VPN tunnel design, NAT/firewall traversal, and outbound-only architecture patterns for customer-premise deployments.
  • Experience architecting multi-tenant SaaS products with components deployed partially on customer premises, not just in a vendor-controlled cloud.
  • Working knowledge of PCI-DSS (or equivalent frameworks such as ISO 27001/SOC 2) and their direct implications on network and data-flow architecture.
Preferred / Nice To Have
  • Prior architecture role at a cybersecurity product company (EDR, XDR, SIEM, DLP, or breach-and-attack simulation).
  • Direct exposure to active security-testing or breach-and-attack simulation style products.
  • Cloud infrastructure experience (AWS/Azure/GCP) for the backend/cloud side of the platform.
  • Track record presenting architecture directly to enterprise client security/audit teams.
What Success Looks Like In This Role
  • A documented, defensible security architecture narrative that survives client InfoSec audits without surprises.
  • A version compatibility and module-lifecycle strategy that prevents fleet-wide breakage from a single bad rollout.
  • A mentored engineering team capable of making sound architectural trade-offs Bachelor's or Master's degree in Computer Science, Engineering, or a related field.
  • Equivalent hands-on experience will be given full weight over formal qualifications.

(ref:hirist.tech)

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Software- Security Agent Architect
Senior Software- Security Agent Architect

SISA • Mumbai

On-site
INR 350,000 - 650,000
Senior Software- Security Agent Architect
Senior Software- Security Agent Architect

Sisainfosec • Mumbai

On-site
INR 500,000 - 900,000
Principal Software Engineer- Agent Developer
Principal Software Engineer- Agent Developer

SISA • Delhi

On-site
INR 4,000,000 - 6,500,000
Security Architecture and ENGINEERING
Security Architecture and ENGINEERING

TOCUMULUS • Bengaluru

On-site
INR 1,600,000 - 2,400,000
Security Solutions Architect
Security Solutions Architect

Mahindra And Mahindra Ltd. • Maharashtra

On-site
INR 3,000,000 - 6,000,000
Cyber Security Architect
Cyber Security Architect

Good co India • India

On-site
INR 2,400,000 - 4,800,000
Security, governance, and data foundations
Security, governance, and data foundations

iTCart • Bengaluru

On-site
INR 2,500,000 - 3,500,000
Security Solutions Architect (Enterprise, Cloud, OT & AI Security)
Security Solutions Architect (Enterprise, Cloud, OT & AI Security)

PeopleBridge Partners (PBP) • Mumbai

On-site
INR 2,500,000 - 3,500,000
Direct impact on enterprise architecture
Opportunities for professional growth
Blend of strategy and hands-on work
Staff Security Architect
Staff Security Architect

KFC Corporation • Gurgaon

Hybrid
INR 1,800,000 - 2,500,000
Senior Enterprise Security Architect
Senior Enterprise Security Architect

AlphaSense Oy • Pune District

On-site
INR 4,000,000 - 7,000,000